GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
37
GitHub Actions
36
Go
2,500
Maven
5,000+
npm
4,147
NuGet
735
pip
3,948
Pub
12
RubyGems
945
Rust
1,025
Swift
39
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
1,199 advisories
Filter by severity
The issue was addressed with improved permissions logic. This issue is fixed in iOS 13.3.1 and...
High
Unreviewed
CVE-2020-3838
was published
May 24, 2022
Couchbase Server 4.x and 5.x before 6.0.0 has Insecure Permissions for the projector and indexer...
High
Unreviewed
CVE-2020-9039
was published
May 24, 2022
In setPhonebookAccessPermission of AdapterService.java, there is a possible disclosure of user...
Moderate
Unreviewed
CVE-2020-0023
was published
May 24, 2022
Comment properties in Atlassian Jira Server and Data Center before version 7.13.12, from 8.0.0...
Moderate
Unreviewed
CVE-2019-20106
was published
May 24, 2022
A privilege escalation vulnerability in Wowza Streaming Engine 4.7.7 and 4.7.8 allows any...
High
Unreviewed
CVE-2019-7656
was published
May 24, 2022
An Incorrect Default Permissions vulnerability in the BDLDaemon component of Bitdefender AV for...
Moderate
Unreviewed
CVE-2019-17103
was published
May 24, 2022
Improper permission or value checking in the CLI console may allow a non-privileged user to...
Low
Unreviewed
CVE-2019-5593
was published
May 24, 2022
Cerberus FTP Server Enterprise Edition prior to versions 11.0.3 and 10.0.18 allows an...
High
Unreviewed
CVE-2020-5196
was published
May 24, 2022
In calc_vm_may_flags of ashmem.c, there is a possible arbitrary write to shared memory due to a...
Low
Unreviewed
CVE-2020-0009
was published
May 24, 2022
ColdFusion versions Update 6 and earlier have an insecure inherited permissions of default...
High
Unreviewed
CVE-2019-8256
was published
May 24, 2022
Improper directory permissions in the installer for Intel(R) Management Engine Consumer Driver...
High
Unreviewed
CVE-2019-11097
was published
May 24, 2022
Improper permissions in the installer for the License Server software for Intel? Quartus? Prime...
High
Unreviewed
CVE-2019-14603
was published
May 24, 2022
Improper permissions in the installer for the Intel(R) SCS Platform Discovery Utility, all...
High
Unreviewed
CVE-2019-14605
was published
May 24, 2022
All Samba versions 4.x.x before 4.9.17, 4.10.x before 4.10.11 and 4.11.x before 4.11.3 have an...
Low
Unreviewed
CVE-2019-14861
was published
May 24, 2022
Cloudera CDH has Insecure Permissions because ALL cannot be revoked.This affects 5.x through 5.15...
High
Unreviewed
CVE-2018-17860
was published
May 24, 2022
In Vtiger 7.x before 7.2.0, the My Preferences saving functionality allows a user without...
High
Unreviewed
CVE-2019-19202
was published
May 24, 2022
Scanguard through 2019-11-12 on Windows has Insecure Permissions for the installation directory,...
Moderate
Unreviewed
CVE-2019-18895
was published
May 24, 2022
Improper directory permissions in Intel(R) PROSet/Wireless WiFi Software before version 21.40 may...
High
Unreviewed
CVE-2019-11155
was published
May 24, 2022
A vulnerability in the HTTP traffic filtering component of Cisco Firepower Threat Defense...
Moderate
Unreviewed
CVE-2019-1982
was published
May 24, 2022
The Symantec SONAR component, prior to 12.0.2, may be susceptible to a tamper protection bypass...
Moderate
Unreviewed
CVE-2019-12752
was published
May 24, 2022
In JetBrains TeamCity before 2019.1.2, a non-destructive operation could be performed by a user...
Moderate
Unreviewed
CVE-2019-18367
was published
May 24, 2022
In JetBrains YouTrack before 2019.2.55152, removing tags from the issues list without the...
Moderate
Unreviewed
CVE-2019-18369
was published
May 24, 2022
In JetBrains TeamCity before 2019.1.2, secure values could be exposed to users with the "View...
Moderate
Unreviewed
CVE-2019-18366
was published
May 24, 2022
An issue was discovered on Mitsubishi Electric ME-RTU devices through 2.02 and INEA ME-RTU...
Moderate
Unreviewed
CVE-2019-14925
was published
May 24, 2022
Harbor API has a Broken Access Control vulnerability. The vulnerability allows project...
High
Unreviewed
CVE-2019-16919
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API