GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,871
Erlang
37
GitHub Actions
36
Go
2,517
Maven
5,000+
npm
4,154
NuGet
736
pip
3,953
Pub
12
RubyGems
946
Rust
1,026
Swift
39
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
1,205 advisories
Filter by severity
SonicWall Global VPN Client 4.10.5 installer (32-bit and 64-bit) incorrect default file...
High
Unreviewed
CVE-2021-20037
was published
May 24, 2022
The issue was addressed with improved permissions logic. This issue is fixed in macOS Big Sur 11...
Moderate
Unreviewed
CVE-2021-30750
was published
May 24, 2022
The issue was addressed with improved permissions logic. This issue is fixed in iOS 14.5 and...
Moderate
Unreviewed
CVE-2021-1831
was published
May 24, 2022
Copied files may not have the expected file permissions. This issue is fixed in Security Update...
Moderate
Unreviewed
CVE-2021-1832
was published
May 24, 2022
In XeroSecurity Sn1per 9.0 (free version), insecure permissions (0777) are set upon application...
High
Unreviewed
CVE-2021-39273
was published
May 24, 2022
In XeroSecurity Sn1per 9.0 (free version), insecure directory permissions (0777) are set during...
Critical
Unreviewed
CVE-2021-39274
was published
May 24, 2022
Nagios XI before version 5.8.5 is vulnerable to insecure permissions and allows unauthenticated...
Moderate
Unreviewed
CVE-2021-37351
was published
May 24, 2022
A component of the HarmonyOS has a permission bypass vulnerability. Local attackers may exploit...
Moderate
Unreviewed
CVE-2021-22295
was published
May 24, 2022
A vulnerability was found in CIR 2000 / Gestionale Amica Prodigy v1.7. The Amica Prodigy's...
High
Unreviewed
CVE-2021-35312
was published
May 24, 2022
A permission issue in the Cohesity Linux agent may allow privilege escalation in version 6.5.1b...
High
Unreviewed
CVE-2021-36795
was published
May 24, 2022
An incorrect permission assignment privilege escalation vulnerability in Trend Micro Apex One,...
High
Unreviewed
CVE-2021-32464
was published
May 24, 2022
An insecure permissions issue was discovered in HMI3 Control Panel in Swisslog Healthcare Nexus...
Critical
Unreviewed
CVE-2021-37167
was published
May 24, 2022
The Dell Isilon OneFS versions 8.2.2 and earlier and Dell EMC PowerScale OneFS version 9.0.0...
High
Unreviewed
CVE-2020-5353
was published
May 24, 2022
Dell EMC Isilon OneFS supported versions 8.1 and later and Dell EMC PowerScale OneFS supported...
High
Unreviewed
CVE-2020-26180
was published
May 24, 2022
Dell EMC PowerStore versions prior to 1.0.3.0.5.xxx contain a file permission Vulnerability. A...
Moderate
Unreviewed
CVE-2020-29503
was published
May 24, 2022
Acronis True Image through 2021 on macOS allows local privilege escalation from admin to root due...
High
Unreviewed
CVE-2020-25593
was published
May 24, 2022
In onPackageAddedInternal of PermissionManagerService.java, there is possible access to external...
High
Unreviewed
CVE-2021-0486
was published
May 24, 2022
In onCreate of PermissionActivity.java, there is a possible permission bypass due to Confusing UI...
High
Unreviewed
CVE-2021-0441
was published
May 24, 2022
In sendNetworkConditionsBroadcast of NetworkMonitor.java, there is a possible way for a...
Moderate
Unreviewed
CVE-2021-0590
was published
May 24, 2022
In processInboundMessage of MceStateMachine.java, there is a possible SMS disclosure due to a...
Moderate
Unreviewed
CVE-2021-0588
was published
May 24, 2022
In isRealSnapshot of TaskThumbnailView.java, there is possible data exposure due to a missing...
Moderate
Unreviewed
CVE-2021-0654
was published
May 24, 2022
In onCreate of ContactSelectionActivity.java, there is a possible way to get access to contacts...
High
Unreviewed
CVE-2021-0603
was published
May 24, 2022
In SolarWinds DameWare Mini Remote Control Server 12.0.1.200, insecure file permissions allow...
Critical
Unreviewed
CVE-2021-31217
was published
May 24, 2022
In HMS Ewon eCatcher through 6.6.4, weak filesystem permissions could allow malicious users to...
High
Unreviewed
CVE-2021-33214
was published
May 24, 2022
The Agent in NinjaRMM 5.0.909 has Insecure Permissions.
High
Unreviewed
CVE-2021-26274
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API