GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
37
GitHub Actions
36
Go
2,500
Maven
5,000+
npm
4,147
NuGet
735
pip
3,948
Pub
12
RubyGems
945
Rust
1,025
Swift
39
Unreviewed advisories
All unreviewed
5,000+
322 advisories
Filter by severity
Windows LockDown Policy (WLDP) Security Feature Bypass Vulnerability
High
Unreviewed
CVE-2024-38070
was published
Jul 9, 2024
Azure CycleCloud Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-38092
was published
Jul 9, 2024
BitLocker Security Feature Bypass Vulnerability
Moderate
Unreviewed
CVE-2024-38058
was published
Jul 9, 2024
Due to a Protection Mechanism Failure in SAP
NetWeaver Application Server for ABAP and ABAP...
Moderate
Unreviewed
CVE-2024-39599
was published
Jul 9, 2024
An issue in Eskooly Free Online School management Software v.3.0 and before allows a remote...
High
Unreviewed
CVE-2024-27713
was published
Jul 5, 2024
Artifex Ghostscript before 10.03.1 allows memory corruption, and SAFER sandbox bypass, via format...
Moderate
Unreviewed
CVE-2024-29510
was published
Jul 3, 2024
events2 TYPO3 extension insecure direct object reference (IDOR) vulnerability
Moderate
CVE-2024-38874
was published
for
jweiland/events2
(Composer)
Jun 21, 2024
Parallels Desktop Updater Protection Mechanism Failure Software Downgrade Vulnerability. This...
High
Unreviewed
CVE-2024-6153
was published
Jun 20, 2024
Mattermost Desktop App allows for bypassing TCC restrictions on macOS
Low
CVE-2024-36287
was published
for
mattermost-desktop
(npm)
Jun 14, 2024
Mattermost Desktop App Remote Code Execution
Moderate
CVE-2024-37182
was published
for
mattermost-desktop
(npm)
Jun 14, 2024
Dropbox Desktop Folder Sharing Mark-of-the-Web Bypass Vulnerability. This vulnerability allows...
High
Unreviewed
CVE-2024-5924
was published
Jun 13, 2024
Visual Studio Remote Code Execution Vulnerability
Moderate
Unreviewed
CVE-2024-30052
was published
Jun 11, 2024
By tricking the browser with a `X-Frame-Options` header, a sandboxed iframe could have presented...
Moderate
Unreviewed
CVE-2024-5691
was published
Jun 11, 2024
Because of a logical error in XSA-407 (Branch Type Confusion), the
mitigation is not applied...
High
Unreviewed
CVE-2024-31142
was published
May 16, 2024
Windows Mark of the Web Security Feature Bypass Vulnerability
Moderate
Unreviewed
CVE-2024-30050
was published
May 14, 2024
Microsoft Bing Search Spoofing Vulnerability
Moderate
Unreviewed
CVE-2024-30041
was published
May 14, 2024
Jenkins Script Security Plugin has sandbox bypass vulnerability involving crafted constructor bodies
High
CVE-2024-34144
was published
for
org.jenkins-ci.plugins:script-security
(Maven)
May 2, 2024
In CARLA through 0.9.15.2, the collision sensor mishandles some situations involving pedestrians...
Moderate
Unreviewed
CVE-2024-33903
was published
Apr 29, 2024
ejs lacks certain pollution protection
Moderate
CVE-2024-33883
was published
for
ejs
(npm)
Apr 28, 2024
A logic issue was addressed with improved checks. This issue is fixed in iTunes 12.12.4 for...
High
Unreviewed
CVE-2022-48611
was published
Apr 26, 2024
SmartScreen Prompt Security Feature Bypass Vulnerability
High
Unreviewed
CVE-2024-29988
was published
Apr 9, 2024
Secure Boot Security Feature Bypass Vulnerability
Moderate
Unreviewed
CVE-2024-28921
was published
Apr 9, 2024
Secure Boot Security Feature Bypass Vulnerability
Moderate
Unreviewed
CVE-2024-28919
was published
Apr 9, 2024
Secure Boot Security Feature Bypass Vulnerability
High
Unreviewed
CVE-2024-28920
was published
Apr 9, 2024
Secure Boot Security Feature Bypass Vulnerability
Moderate
Unreviewed
CVE-2024-28903
was published
Apr 9, 2024
ProTip!
Advisories are also available from the
GraphQL API