GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
37
GitHub Actions
36
Go
2,500
Maven
5,000+
npm
4,147
NuGet
735
pip
3,948
Pub
12
RubyGems
945
Rust
1,025
Swift
39
Unreviewed advisories
All unreviewed
5,000+
322 advisories
Filter by severity
Windows Defender Application Control (WDAC) Security Feature Bypass Vulnerability
Moderate
Unreviewed
CVE-2024-43645
was published
Nov 12, 2024
Windows Package Library Manager Information Disclosure Vulnerability
Moderate
Unreviewed
CVE-2024-38203
was published
Nov 12, 2024
During internal Axis Security Development Model (ASDM) threat-modelling, a flaw was found in the...
High
Unreviewed
CVE-2023-5553
was published
Nov 21, 2023
Protection mechanism failure for some Intel(R) PROSet/Wireless and Intel(R) Killer(TM) Wi-Fi...
Moderate
Unreviewed
CVE-2023-32644
was published
Oct 29, 2024
Protection mechanism failure in some Intel(R) OFU software before version 14.1.31 may allow an...
High
Unreviewed
CVE-2023-25945
was published
Oct 29, 2024
Twig has a possible sandbox bypass
Moderate
CVE-2024-45411
was published
for
twig/twig
(Composer)
Sep 9, 2024
Windows Scripting Engine Security Feature Bypass Vulnerability
High
Unreviewed
CVE-2024-43584
was published
Oct 8, 2024
Code Integrity Guard Security Feature Bypass Vulnerability
Moderate
Unreviewed
CVE-2024-43585
was published
Oct 8, 2024
BitLocker Security Feature Bypass Vulnerability
Moderate
Unreviewed
CVE-2024-43513
was published
Oct 8, 2024
A vulnerability in the REST API endpoints of Cisco NDFC could allow an authenticated, low...
Moderate
Unreviewed
CVE-2024-20438
was published
Oct 2, 2024
A CWE-693 “Protection Mechanism Failure” vulnerability in the embedded Chromium browser ...
Moderate
Unreviewed
CVE-2023-45593
was published
Mar 5, 2024
Jinja2 sandbox escape via string formatting
High
CVE-2019-10906
was published
for
Jinja2
(pip)
Apr 10, 2019
An issue was discovered in the Wikibase extension for MediaWiki before 1.35.12, 1.36.x through 1...
Moderate
Unreviewed
CVE-2023-45372
was published
Oct 9, 2023
@backstage/plugin-techdocs-backend vulnerable to circumvention of cross site scripting protection
Moderate
CVE-2024-46976
was published
for
@backstage/plugin-techdocs-backend
(npm)
Sep 17, 2024
Mattermost Desktop App fails to sufficiently configure Electron Fuses
Low
CVE-2024-45835
was published
for
mattermost-desktop
(npm)
Sep 16, 2024
Mattermost Mobile Apps versions <=2.18.0 fail to disable autocomplete during login while typing...
Moderate
Unreviewed
CVE-2024-45833
was published
Sep 16, 2024
Windows Mark of the Web Security Feature Bypass Vulnerability
Moderate
Unreviewed
CVE-2024-43487
was published
Sep 10, 2024
Microsoft Publisher Security Feature Bypass Vulnerability
High
Unreviewed
CVE-2024-38226
was published
Sep 10, 2024
In CARLA through 0.9.15.2, the collision sensor mishandles some situations involving pedestrians...
Moderate
Unreviewed
CVE-2024-33903
was published
Apr 29, 2024
The WP Cerber Security plugin for WordPress is vulnerable to IP Protection bypass in versions up...
Moderate
Unreviewed
CVE-2022-4100
was published
Aug 31, 2024
Windows Remote Desktop Security Feature Bypass Vulnerability
High
Unreviewed
CVE-2023-35352
was published
Jul 11, 2023
A vulnerability in the Python interpreter of Cisco NX-OS Software could allow an authenticated,...
Moderate
Unreviewed
CVE-2024-20284
was published
Aug 28, 2024
A vulnerability in the Python interpreter of Cisco NX-OS Software could allow an authenticated,...
Moderate
Unreviewed
CVE-2024-20286
was published
Aug 28, 2024
ProTip!
Advisories are also available from the
GraphQL API