GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,714
Erlang
34
GitHub Actions
28
Go
2,298
Maven
5,000+
npm
3,942
NuGet
708
pip
3,711
Pub
12
RubyGems
920
Rust
959
Swift
38
Unreviewed advisories
All unreviewed
5,000+
469 advisories
Filter by severity
Incorrect default permissions in some Intel(R) Gaudi(R) software installers before version 1.18...
Moderate
Unreviewed
CVE-2024-45067
was published
May 15, 2025
Liferay Portal and Liferay DXP Fails to Properly Check User Permissions
Moderate
CVE-2021-33334
was published
for
com.liferay.portal:release.dxp.bom
(Maven)
May 24, 2022
Liferay Portal and Liferay DXP Fails to Check Permissions
Moderate
CVE-2021-29052
was published
for
com.liferay.portal:release.dxp.bom
(Maven)
May 24, 2022
Incorrect Default Permissions for some Intel(R) RealSense™ SDK software before version 2.56.2 may...
Moderate
Unreviewed
CVE-2025-20095
was published
May 13, 2025
Incorrect default permissions for some Intel(R) Graphics Driver installers may allow an...
Moderate
Unreviewed
CVE-2024-28954
was published
May 13, 2025
Incorrect default permissions for some Endurance Gaming Mode software installers may allow an...
Moderate
Unreviewed
CVE-2024-47550
was published
May 13, 2025
AsusSoftwareManager.exe in ASUS System Control Interface on ASUS personal computers (running...
Moderate
Unreviewed
CVE-2022-36439
was published
Oct 18, 2022
Permission control vulnerability in the contacts module
Impact: Successful exploitation of this...
Moderate
Unreviewed
CVE-2025-46586
was published
May 6, 2025
Permission control vulnerability in the media library module
Impact: Successful exploitation of...
Moderate
Unreviewed
CVE-2025-46587
was published
May 6, 2025
Incorrect default permissions for the Intel(R) RXT for Chromebook application, all versions, may...
Moderate
Unreviewed
CVE-2021-33166
was published
Feb 11, 2022
Incorrect default permissions in the firmware for some Intel(R) Processors may allow a privileged...
Moderate
Unreviewed
CVE-2021-0093
was published
Feb 11, 2022
In dismiss and related functions of KeyguardHostViewController.java and related files, there is a...
Moderate
Unreviewed
CVE-2022-20465
was published
Nov 9, 2022
In buzzBeepBlinkLocked of NotificationManagerService.java, there is a possible way to share data...
Moderate
Unreviewed
CVE-2022-20448
was published
Nov 9, 2022
There is a vulnerability in permission verification during the Bluetooth pairing process....
Moderate
Unreviewed
CVE-2022-44548
was published
Nov 10, 2022
Incorrect Default Permissions in Liferay Portal
Moderate
CVE-2022-42130
was published
for
com.liferay.portal:release.portal.bom
(Maven)
Nov 15, 2022
Incorrect Default Permissions in Liferay Portal
Moderate
CVE-2022-42127
was published
for
com.liferay.portal:release.portal.bom
(Maven)
Nov 15, 2022
In getNearbyAppStreamingPolicy of DevicePolicyManagerService.java, there is a missing permission...
Moderate
Unreviewed
CVE-2022-20511
was published
Dec 20, 2022
fal_sftp extension for TYPO3 uses weak permissions for sFTP driver files and folders
Moderate
CVE-2014-8327
was published
for
co-stack/fal_sftp
(Composer)
May 17, 2022
snowflake-connector-python vulnerable to insecure cache files permissions
Moderate
CVE-2025-24795
was published
for
snowflake-connector-python
(pip)
Jan 29, 2025
Incorrect default permissions issue exists in Unifier and Unifier Cast Version.5.0 or later, and...
Moderate
Unreviewed
CVE-2024-23847
was published
May 31, 2024
The Simple Membership plugin for WordPress is vulnerable to Sensitive Information Exposure in all...
Moderate
Unreviewed
CVE-2024-11088
was published
Apr 5, 2025
The WatchGuard Mobile VPN with SSL Client on Windows does not properly configure directory...
Moderate
Unreviewed
CVE-2025-2781
was published
Mar 29, 2025
The WatchGuard Terminal Services Agent on Windows does not properly configure directory...
Moderate
Unreviewed
CVE-2025-2782
was published
Mar 29, 2025
In wlan driver, there is a possible missing permission check. This could lead to local...
Moderate
Unreviewed
CVE-2022-47450
was published
Feb 12, 2023
Bypass of GACS Policy Configuration settings in Citrix Workspace app for HTML5
Moderate
Unreviewed
CVE-2024-6148
was published
Jul 10, 2024
ProTip!
Advisories are also available from the
GraphQL API