GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,224
Erlang
31
GitHub Actions
19
Go
1,990
Maven
5,000+
npm
3,706
NuGet
661
pip
3,336
Pub
11
RubyGems
884
Rust
845
Swift
36
Unreviewed advisories
All unreviewed
5,000+
105 advisories
Filter by severity
A permission leak could have occurred from a trusted site to an untrusted site via `embed` or ...
High
Unreviewed
CVE-2024-10458
was published
Oct 29, 2024
A cross-origin iframe referencing an XSLT document would inherit the parent domain's permissions ...
High
Unreviewed
CVE-2022-38473
was published
Dec 22, 2022
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS...
High
Unreviewed
CVE-2024-44149
was published
Sep 17, 2024
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS...
High
Unreviewed
CVE-2024-40770
was published
Sep 17, 2024
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS...
High
Unreviewed
CVE-2024-27795
was published
Sep 17, 2024
Podman publishes a malicious image to public registries
High
CVE-2022-1227
was published
for
github.com/containers/podman/v3
(Go)
Apr 30, 2022
Improper Preservation of Permissions in xxl-job
High
CVE-2024-42681
was published
for
com.xuxueli:xxl-job-core
(Maven)
Aug 15, 2024
Grafana folders admin only permission privilege escalation
High
CVE-2022-36062
was published
for
github.com/grafana/grafana
(Go)
May 14, 2024
In certain cases, Zscaler Internet Access (ZIA) can be disabled by PowerShell commands with admin...
High
Unreviewed
CVE-2024-23464
was published
Aug 6, 2024
An access issue was addressed with additional sandbox restrictions. This issue is fixed in macOS...
High
Unreviewed
CVE-2024-40821
was published
Jul 30, 2024
A permissions issue was addressed by removing vulnerable code and adding additional checks. This...
High
Unreviewed
CVE-2024-27888
was published
Jul 30, 2024
The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.6. An app...
High
Unreviewed
CVE-2024-40811
was published
Jul 30, 2024
A permissions issue was addressed with additional restrictions. This issue is fixed in watchOS 10...
High
Unreviewed
CVE-2024-40805
was published
Jul 30, 2024
This issue was addressed through improved state management. This issue is fixed in watchOS 10.6,...
High
Unreviewed
CVE-2024-40824
was published
Jul 30, 2024
An input validation issue was addressed with improved input validation. This issue is fixed in...
High
Unreviewed
CVE-2024-40800
was published
Jul 30, 2024
The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.6, macOS...
High
Unreviewed
CVE-2024-40828
was published
Jul 30, 2024
There is an unauthorized access vulnerability in ZTE H388X. If H388X is caused by brute-force...
High
Unreviewed
CVE-2023-25646
was published
Jun 20, 2024
When installing Nessus Agent to a directory outside of the default location on a Windows host,...
High
Unreviewed
CVE-2024-3291
was published
May 17, 2024
When installing Nessus to a directory outside of the default location on a Windows host, Nessus...
High
Unreviewed
CVE-2024-3289
was published
May 17, 2024
A flaw was found in the 9p passthrough filesystem (9pfs) implementation in QEMU. When a local...
High
Unreviewed
CVE-2023-1386
was published
Jul 24, 2023
A software vulnerability has been identified in the U-Boot Secondary Program Loader (SPL) before...
High
Unreviewed
CVE-2023-39902
was published
Oct 17, 2023
IBM Security Guardium 11.3 could allow a local user to escalate their privileges due to improper...
High
Unreviewed
CVE-2022-43910
was published
Jul 19, 2023
A vulnerability exists in Trellix Agent for Windows version 5.7.8 and earlier, that allows local...
High
Unreviewed
CVE-2023-0975
was published
Jul 6, 2023
An incorrect TLB flush issue was found in the Linux kernel’s GPU i915 kernel driver, potentially...
High
Unreviewed
CVE-2022-4139
was published
Jul 6, 2023
If temporary "one-time" permissions, such as the ability to use the Camera, were granted to a...
High
Unreviewed
CVE-2023-28161
was published
Jun 2, 2023
ProTip!
Advisories are also available from the
GraphQL API