GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,722
Erlang
35
GitHub Actions
29
Go
2,306
Maven
5,000+
npm
3,947
NuGet
711
pip
3,727
Pub
12
RubyGems
920
Rust
964
Swift
38
Unreviewed advisories
All unreviewed
5,000+
85 advisories
Filter by severity
A vulnerability has been found in Wing FTP Server up to 7.4.3 and classified as critical....
High
Unreviewed
CVE-2025-5196
was published
May 26, 2025
IBM i 7.2, 7.3, 7.4, 7.5, and 7.6 product IBM TCP/IP Connectivity Utilities for i contains a...
High
Unreviewed
CVE-2025-33103
was published
May 17, 2025
BrightSign players running BrightSign OS series 4 prior to v8.5.53.1 or
series 5 prior to v9.0...
High
Unreviewed
CVE-2025-3925
was published
May 7, 2025
Tesla Model S oFono Unnecessary Privileges Sandbox Escape Vulnerability. This vulnerability...
High
Unreviewed
CVE-2024-6030
was published
Apr 30, 2025
CWE-250: Execution with Unnecessary Privileges
High
Unreviewed
CVE-2025-23180
was published
Apr 29, 2025
CWE-250: Execution with Unnecessary Privileges
High
Unreviewed
CVE-2025-23181
was published
Apr 29, 2025
IBM Hardware Management Console - Power Systems V10.2.1030.0 and V10.3.1050.0 could allow a local...
High
Unreviewed
CVE-2025-1951
was published
Apr 22, 2025
A vulnerability with a privilege management mechanism in the Palo Alto Networks GlobalProtect™...
High
Unreviewed
CVE-2025-0120
was published
Apr 11, 2025
An improper privilege management vulnerability in the SonicWall NetExtender Windows (32 and 64...
High
Unreviewed
CVE-2025-23008
was published
Apr 10, 2025
Dell SmartFabric OS10 Software, version(s) 10.5.4.x, 10.5.5.x, 10.5.6.x, 10.6.0.x, contain(s) an...
High
Unreviewed
CVE-2024-48013
was published
Mar 17, 2025
Docker daemon in Brocade SANnav before SANnav 2.3.1b runs without auditing. The vulnerability...
High
Unreviewed
CVE-2024-2240
was published
Feb 14, 2025
An improper privilege vulnerability was reported in a BIOS customization feature of Lenovo...
High
Unreviewed
CVE-2024-12673
was published
Feb 12, 2025
SMM callout vulnerability within the AmdPlatformRasSspSmm driver could allow a ring 0 attacker to...
High
Unreviewed
CVE-2024-21924
was published
Feb 11, 2025
IBM Security Verify Access Appliance 10.0.0 through 10.0.3 could allow a locally authenticated...
High
Unreviewed
CVE-2024-49814
was published
Feb 6, 2025
Apache Solr vulnerable to Execution with Unnecessary Privileges
High
CVE-2025-24814
was published
for
org.apache.solr:solr-core
(Maven)
Jan 27, 2025
Dell NativeEdge, version(s) 2.1.0.0, contain(s) an Execution with Unnecessary Privileges...
High
Unreviewed
CVE-2024-47978
was published
Dec 25, 2024
IBM Security Verify Access Docker 10.0.0 through 10.0.6 could allow a local user to escalate...
High
Unreviewed
CVE-2024-35141
was published
Dec 19, 2024
IBM Storage Scale GUI 5.1.9.0 through 5.1.9.6 and 5.2.0.0 through 5.2.1.1
contains a local...
High
Unreviewed
CVE-2024-31891
was published
Dec 14, 2024
The www-data user can elevate its privileges because sudo is configured to allow the execution of...
High
Unreviewed
CVE-2024-28139
was published
Dec 11, 2024
IBM Security Verify Access Appliance 10.0.0 through 10.0.8
could allow a locally authenticated...
High
Unreviewed
CVE-2024-49804
was published
Nov 29, 2024
A vulnerability in the Incoming Goods Suite allows a user with unprivileged access to the...
High
Unreviewed
CVE-2024-11075
was published
Nov 19, 2024
A vulnerability in system file transfer functions of Cisco SD-WAN vManage Software could...
High
Unreviewed
CVE-2020-26074
was published
Nov 18, 2024
Execution with Unnecessary Privileges, : Improper Protection of Alternate Path vulnerability in...
High
Unreviewed
CVE-2024-8781
was published
Nov 18, 2024
Dell SmartFabric OS10 Software, version(s) 10.5.6.x, 10.5.5.x, 10.5.4.x, 10.5.3.x, contain(s) an...
High
Unreviewed
CVE-2024-48837
was published
Nov 12, 2024
Attackers with local access to the medical office computer can
escalate their Windows user...
High
Unreviewed
CVE-2024-50590
was published
Nov 8, 2024
ProTip!
Advisories are also available from the
GraphQL API