GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,237
Erlang
31
GitHub Actions
21
Go
2,003
Maven
5,000+
npm
3,713
NuGet
661
pip
3,386
Pub
11
RubyGems
885
Rust
851
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
354 advisories
Filter by severity
Incorrect access control in QuickHeal Antivirus Pro 24.1.0.182 and earlier allows authenticated...
Moderate
Unreviewed
CVE-2024-48293
was published
Nov 18, 2024
A security vulnerability has been identified in HPE Data Management Framework (DMF) Suite (CXFS)....
Moderate
Unreviewed
CVE-2024-51764
was published
Nov 16, 2024
A security vulnerability has been identified in HPE Cray Data Virtualization Service (DVS)....
Moderate
Unreviewed
CVE-2024-51765
was published
Nov 16, 2024
Incorrect default permissions in the Intel(R) SDP Tool for Windows software all versions may...
Moderate
Unreviewed
CVE-2024-35201
was published
Nov 13, 2024
Incorrect default permissions in some Intel(R) Distribution for Python software before version...
Moderate
Unreviewed
CVE-2024-29083
was published
Nov 13, 2024
Incorrect default permissions for some Intel(R) Binary Configuration Tool software for Windows...
Moderate
Unreviewed
CVE-2024-25647
was published
Nov 13, 2024
In validateAccountsInternal of AccountManagerService.java, there is a possible way to leak...
Moderate
Unreviewed
CVE-2024-43086
was published
Nov 13, 2024
A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 3). The affected...
Moderate
Unreviewed
CVE-2024-46894
was published
Nov 12, 2024
SAP NetWeaver Application Server ABAP allows an unauthenticated attacker with network access to...
Moderate
Unreviewed
CVE-2024-47593
was published
Nov 12, 2024
Incorrect default permissions in Crane prior to SMR Nov-2024 Release 1 allows local attackers to...
Moderate
Unreviewed
CVE-2024-34679
was published
Nov 6, 2024
VINCE versions before 3.0.9 is vulnerable to exposure of User information to authenticated users.
Moderate
Unreviewed
CVE-2024-10469
was published
Oct 28, 2024
A vulnerability in Jamf Pro's Jamf Remote Assist tool allows a local, non-privileged user to...
Moderate
Unreviewed
CVE-2024-10183
was published
Oct 22, 2024
A vulnerability in the NuPoint Messenger (NPM) component of Mitel MiCollab through version 9.8...
Moderate
Unreviewed
CVE-2024-35287
was published
Oct 21, 2024
Dell Secure Connect Gateway (SCG) 5.24 contains an Incorrect Default Permissions vulnerability. A...
Moderate
Unreviewed
CVE-2024-47240
was published
Oct 18, 2024
There exists an insecure default user permission in Google Cloud Migrate to containers from...
Moderate
Unreviewed
CVE-2024-9858
was published
Oct 16, 2024
A potential information disclosure vulnerability was reported in Lenovo's packaging of Dolby...
Moderate
Unreviewed
CVE-2024-5474
was published
Oct 11, 2024
An Incorrect Default Permissions vulnerability in the command line interface (CLI) of Juniper...
Moderate
Unreviewed
CVE-2024-39544
was published
Oct 11, 2024
PAX Android based POS devices allow for escalation of privilege via improperly configured scripts...
Moderate
Unreviewed
CVE-2023-42133
was published
Oct 11, 2024
Incorrect Default Permissions vulnerability in Apache Tomcat Connectors allows local users to...
Moderate
Unreviewed
CVE-2024-46544
was published
Sep 23, 2024
In the Linux kernel, the following vulnerability has been resolved:
selinux,smack: don't bypass...
Moderate
Unreviewed
CVE-2024-46695
was published
Sep 13, 2024
Microsoft Edge (Chromium-based) Information Disclosure Vulnerability
Moderate
Unreviewed
CVE-2024-38222
was published
Sep 12, 2024
Improper Handling of Insufficient Permissions in KnoxMiscPolicy prior to SMR Sep-2024 Release 1...
Moderate
Unreviewed
CVE-2024-34648
was published
Sep 4, 2024
Improper handling of insufficient permissions in Samsung Assistant prior to version 9.1.00.7...
Moderate
Unreviewed
CVE-2024-34661
was published
Sep 4, 2024
Sensitive information disclosure due to insecure folder permissions. The following products are...
Moderate
Unreviewed
CVE-2024-34018
was published
Aug 29, 2024
Incorrect default permissions for some Intel(R) Advisor software before version 2024.1 may allow...
Moderate
Unreviewed
CVE-2024-26025
was published
Aug 14, 2024
ProTip!
Advisories are also available from the
GraphQL API