GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,743
Erlang
35
GitHub Actions
29
Go
2,318
Maven
5,000+
npm
3,950
NuGet
711
pip
3,729
Pub
12
RubyGems
920
Rust
965
Swift
38
Unreviewed advisories
All unreviewed
5,000+
635 advisories
Filter by severity
When the installation directory does not have sufficiently restrictive file permissions, an...
High
Unreviewed
CVE-2022-43701
was published
Jul 28, 2023
NGINX Management Suite default file permissions are set such that an authenticated attacker may...
High
Unreviewed
CVE-2023-28724
was published
Jul 6, 2023
Incorrect directory permissions for the shared NI RabbitMQ service may allow a local...
High
Unreviewed
CVE-2024-1156
was published
Feb 20, 2024
Incorrect permissions in the installation directories for shared SystemLink Elixir based services...
High
Unreviewed
CVE-2024-1155
was published
Feb 20, 2024
Incorrect default permissions in the AMD Integrated Management Technology (AIM-T) Manageability...
High
Unreviewed
CVE-2023-31360
was published
Feb 11, 2025
An issue found in DUALSPACE Lock Master v.2.2.4 allows a local attacker to cause a denial of...
High
Unreviewed
CVE-2023-27647
was published
Apr 14, 2023
An issue was discovered in TigerGraph Enterprise Free Edition 3.x. It creates an authentication...
High
Unreviewed
CVE-2023-22951
was published
Apr 13, 2023
pgAdmin has Incorrect Default Permissions
High
CVE-2023-1907
was published
for
pgadmin4
(pip)
Jan 9, 2025
An issue was discovered in the controller unit of the OpenRISC mor1kx processor. The read/write...
High
Unreviewed
CVE-2021-41614
was published
Apr 18, 2023
Omnissa Horizon Client for macOS contains a Local privilege escalation (LPE) Vulnerability due to...
High
Unreviewed
CVE-2024-11468
was published
Feb 5, 2025
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS...
High
Unreviewed
CVE-2025-24107
was published
Jan 28, 2025
A sandboxing issue in Odoo Community 15.0 and earlier and Odoo Enterprise 15.0 and earlier allows...
High
Unreviewed
CVE-2021-23166
was published
Apr 25, 2023
A vulnerability was found in Unbound due to incorrect default permissions, allowing any process...
High
Unreviewed
CVE-2024-1488
was published
Feb 15, 2024
A vulnerability in the NetExtender Windows client log export function allows unauthorized access...
High
Unreviewed
CVE-2025-23007
was published
Jan 30, 2025
The Download Manager WordPress plugin before 6.3.0 leaks master key information without the need...
High
Unreviewed
CVE-2023-1809
was published
May 2, 2023
A use after free issue was addressed with improved memory management. This issue is fixed in...
High
Unreviewed
CVE-2025-24085
was published
Jan 28, 2025
A permissions issue was addressed with improved validation. This issue is fixed in macOS Ventura...
High
Unreviewed
CVE-2025-24176
was published
Jan 28, 2025
Local privilege escalation in G DATA Security Client due to incorrect assignment of privileges to...
High
Unreviewed
CVE-2025-0543
was published
Jan 25, 2025
In multiple locations, there is a possible bypass of user consent to enabling new Bluetooth HIDs...
High
Unreviewed
CVE-2024-34730
was published
Jan 22, 2025
In applyTaskFragmentOperation of WindowOrganizerController.java, there is a possible way to...
High
Unreviewed
CVE-2024-49737
was published
Jan 22, 2025
Foxit PDF Reader (12.1.1.15289 and earlier) and Foxit PDF Editor (12.1.1.15289 and all previous...
High
Unreviewed
CVE-2023-33240
was published
May 19, 2023
The Settings module has the file privilege escalation vulnerability.Successful exploitation of...
High
Unreviewed
CVE-2023-1693
was published
May 20, 2023
The Lock Master app 2.2.4 for Android allows unauthorized apps to modify the values in its...
High
Unreviewed
CVE-2023-29733
was published
May 30, 2023
Vulnerability of improper permission control in the window management module
Impact: Successful...
High
Unreviewed
CVE-2024-56447
was published
Jan 8, 2025
Vaultwarden vulnerable to user impersonation
High
CVE-2024-55225
was published
for
vaultwarden
(Rust)
Jan 9, 2025
ProTip!
Advisories are also available from the
GraphQL API