GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,126
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,021
Swift
39
Unreviewed advisories
All unreviewed
5,000+
138 advisories
Filter by severity
Dell GeoDrive, versions prior to 2.2, contains an Unquoted File Path vulnerability. A low...
High
Unreviewed
CVE-2022-33920
was published
Oct 13, 2022
Panini Everest Engine 2.0.4 allows unprivileged users to create a file named Everest.exe in the ...
High
Unreviewed
CVE-2022-39959
was published
Oct 8, 2022
In SAP Business One application when a service is created, the executable path contains spaces...
High
Unreviewed
CVE-2022-35292
was published
Sep 14, 2022
Okta Active Directory Agent versions 3.8.0 through 3.11.0 installed the Okta AD Agent Update...
High
Unreviewed
CVE-2022-1697
was published
Sep 7, 2022
There is an unquoted service path in ASUSTeK Aura Ready Game SDK service (GameSDK.exe) 1.0.0.4....
High
Unreviewed
CVE-2022-35899
was published
Jul 22, 2022
A vulnerability has been found in FileZilla Client 3.17.0.0 and classified as problematic. This...
High
Unreviewed
CVE-2016-15003
was published
Jul 19, 2022
SAP BusinessObjects BW Publisher Service - versions 420, 430, uses a search path that contains an...
High
Unreviewed
CVE-2022-31591
was published
Jul 13, 2022
Cloudflare Warp for Windows from version 2022.2.95.0 contained an unquoted service path which...
High
Unreviewed
CVE-2022-2147
was published
Jun 24, 2022
SAP PowerDesigner Proxy - version 16.7, allows an attacker with low privileges and has local...
High
Unreviewed
CVE-2022-31590
was published
Jun 15, 2022
Unquoted search path in the installer for the Intel(R) NUC M15 Laptop Kit Keyboard LED Service...
High
Unreviewed
CVE-2021-33095
was published
May 24, 2022
There is an Unquoted Service Path in NI Service Locator (nisvcloc.exe) in versions prior to 18.0...
High
Unreviewed
CVE-2021-42563
was published
May 24, 2022
In Akamai EAA (Enterprise Application Access) Client before 2.3.1, 2.4.x before 2.4.1, and 2.5.x...
High
Unreviewed
CVE-2021-40683
was published
May 24, 2022
The Zscaler Client Connector prior to 2.1.2.150 did not quote the search path for services, which...
High
Unreviewed
CVE-2020-11632
was published
May 24, 2022
The Lexmark Printer Software G2, G3 and G4 Installation Packages have a local escalation of...
High
Unreviewed
CVE-2021-35469
was published
May 24, 2022
Unquoted service path in the Intel Unite(R) Client for Windows before version 4.2.25031 may allow...
High
Unreviewed
CVE-2021-0112
was published
May 24, 2022
In Windscribe v1.83 Build 20, 'WindscribeService' has an Unquoted Service Path that facilitates...
High
Unreviewed
CVE-2020-22809
was published
May 24, 2022
Aviatrix VPN Client before 2.14.14 on Windows has an unquoted search path that enables local...
High
Unreviewed
CVE-2021-31776
was published
May 24, 2022
An unquoted service path in SAPSetup, version - 9.0, could lead to privilege escalation during...
High
Unreviewed
CVE-2021-27608
was published
May 24, 2022
Unquoted service path vulnerability in McAfee Endpoint Product Removal (EPR) Tool prior to 21.2...
High
Unreviewed
CVE-2021-23879
was published
May 24, 2022
The Inventory module of the 1E Client 5.0.0.745 doesn't handle an unquoted path when executing ...
High
Unreviewed
CVE-2020-27644
was published
May 24, 2022
The Inventory module of the 1E Client 5.0.0.745 doesn't handle an unquoted path when executing ...
High
Unreviewed
CVE-2020-27645
was published
May 24, 2022
A CWE-428 Windows Unquoted Search Path vulnerability exists in EcoStruxure Building Operation...
High
Unreviewed
CVE-2020-28209
was published
May 24, 2022
Unquoted service executable path in McAfee Endpoint Security (ENS) prior to 10.7.0 November 2020...
High
Unreviewed
CVE-2020-7331
was published
May 24, 2022
Dr.Fone 3.0.0 allows local users to gain privileges via a Trojan horse DriverInstall.exe because ...
High
Unreviewed
CVE-2020-27992
was published
May 24, 2022
A vulnerability has been identified in Opcenter Execution Discrete (All versions < V3.2),...
High
Unreviewed
CVE-2020-7581
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API