GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,750
Erlang
35
GitHub Actions
29
Go
2,323
Maven
5,000+
npm
3,956
NuGet
712
pip
3,739
Pub
12
RubyGems
921
Rust
973
Swift
38
Unreviewed advisories
All unreviewed
5,000+
39 advisories
Filter by severity
Software installed and run as a non-privileged user may conduct improper GPU system calls to...
High
Unreviewed
CVE-2025-25179
was published
Jun 2, 2025
Improper handling of insufficient permissions or privileges in Microsoft Dataverse allows an...
High
Unreviewed
CVE-2025-29826
was published
May 13, 2025
Yggdrasil Vulnerable to Local Privilege Escalation
High
CVE-2025-3931
was published
for
github.com/redhatinsights/yggdrasil
(Go)
May 14, 2025
The issue was addressed with additional permissions checks. This issue is fixed in macOS Sequoia...
High
Unreviewed
CVE-2025-30453
was published
May 13, 2025
An authenticated user without user administrative permissions could change the administrator...
High
Unreviewed
CVE-2025-46740
was published
May 12, 2025
Vulnerability of improper authentication logic implementation in the file system module
Impact:...
High
Unreviewed
CVE-2025-46584
was published
May 6, 2025
Software installed and run as a non-privileged user may conduct improper GPU system calls to...
High
Unreviewed
CVE-2025-0468
was published
Apr 4, 2025
Memory write permission bypass vulnerability in the kernel futex module
Impact: Successful...
High
Unreviewed
CVE-2025-31173
was published
Apr 7, 2025
Memory write permission bypass vulnerability in the kernel futex module
Impact: Successful...
High
Unreviewed
CVE-2025-31172
was published
Apr 7, 2025
An issue was discovered in Common-Services "So Flexibilite" (soflexibilite) module for PrestaShop...
High
Unreviewed
CVE-2024-25844
was published
Mar 3, 2024
Software installed and run as a non-privileged user may conduct improper GPU system calls to...
High
Unreviewed
CVE-2025-0478
was published
Mar 24, 2025
IBM InfoSphere Information Server 11.7 could allow a local user to execute privileged commands...
High
Unreviewed
CVE-2024-51459
was published
Mar 19, 2025
In convertToComponentName of DreamService.java, there is a possible way to launch arbitrary...
High
Unreviewed
CVE-2024-0015
was published
Feb 16, 2024
Xuxueli xxl-job allows attacker to obtain sensitive information via the pageList parameter
High
CVE-2023-27087
was published
for
com.xuxueli:xxl-job
(Maven)
Mar 21, 2023
An attacker who successfully exploited these vulnerabilities could cause enable command execution...
High
Unreviewed
CVE-2024-12430
was published
Jan 7, 2025
Dell Update Package Framework, versions prior to 22.01.02, contain(s) a Local Privilege...
High
Unreviewed
CVE-2025-22395
was published
Jan 7, 2025
Software installed and run as a non-privileged user can trigger the GPU kernel driver to write to...
High
Unreviewed
CVE-2024-43705
was published
Dec 28, 2024
In onCreate of WifiDialogActivity.java, there is a possible way to bypass the...
High
Unreviewed
CVE-2024-23704
was published
May 7, 2024
Software installed and run as a non-privileged user may conduct improper GPU system calls to...
High
Unreviewed
CVE-2024-43702
was published
Nov 30, 2024
there is a possible way to bypass due to a logic error in the code. This could lead to local...
High
Unreviewed
CVE-2024-29748
was published
Apr 5, 2024
Quarkus Improper Handling of Insufficient Permissions or Privileges and Improper Handling of Exceptional Conditions vulnerability
High
CVE-2023-6267
was published
for
io.quarkus.resteasy.reactive:resteasy-reactive
(Maven)
Jan 25, 2024
In some rare cases, there is a password type validation missing in Revert Password check and for...
High
Unreviewed
CVE-2023-41972
was published
Mar 26, 2024
Duplicate Advisory: Apiman has insufficient checks for read permissions
High
GHSA-54r5-wr8x-x5v3
was published
for
io.apiman:apiman-manager-api-rest-impl
(Maven)
Dec 20, 2022
•
withdrawn
Certain switch models from PLANET Technology have an SSH service that improperly handles...
High
Unreviewed
CVE-2024-8451
was published
Sep 30, 2024
Improper privilege management in Zoom Rooms for macOS before version 5.16.0 may allow an...
High
Unreviewed
CVE-2023-43591
was published
Nov 15, 2023
ProTip!
Advisories are also available from the
GraphQL API