GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,126
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,021
Swift
39
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
2,257 advisories
Filter by severity
An error when handling authorization related to the import / export interfaces on the RISC...
Moderate
Unreviewed
CVE-2021-41528
was published
Feb 7, 2025
macrozheng mall-tiny 1.0.1 is vulnerable to Incorrect Access Control via the logout function....
High
Unreviewed
CVE-2024-57433
was published
Feb 1, 2025
macrozheng mall-tiny 1.0.1 is vulnerable to Incorrect Access Control. The project imports users...
High
Unreviewed
CVE-2024-57434
was published
Feb 1, 2025
SSH Communication Security PrivX versions between 18.0-36.0 implement insufficient validation on...
Critical
Unreviewed
CVE-2024-47857
was published
Jan 31, 2025
macrozheng mall-tiny 1.0.1 suffers from Insecure Permissions. The application's JWT signing keys...
Critical
Unreviewed
CVE-2024-57432
was published
Jan 31, 2025
Software installed and run as a non-privileged user may conduct improper read/write operations on...
High
Unreviewed
CVE-2024-46974
was published
Jan 31, 2025
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected...
High
Unreviewed
CVE-2024-23921
was published
Jan 31, 2025
This vulnerability allows network-adjacent attackers to create arbitrary files on affected...
High
Unreviewed
CVE-2024-23929
was published
Jan 31, 2025
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected...
High
Unreviewed
CVE-2024-23963
was published
Jan 31, 2025
This vulnerability allows network-adjacent attackers to disclose sensitive information on...
Moderate
Unreviewed
CVE-2024-23937
was published
Jan 31, 2025
This vulnerability allows network-adjacent attackers to compromise the integrity of downloaded...
High
Unreviewed
CVE-2024-23928
was published
Jan 31, 2025
The vulnerability allows an unauthenticated attacker to access information in PAM database.
High
Unreviewed
CVE-2025-24500
was published
Jan 30, 2025
The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.3, macOS...
Moderate
Unreviewed
CVE-2025-24099
was published
Jan 30, 2025
An Improper Access Control vulnerability has been found in EmbedAI 2.1 and below. This...
High
Unreviewed
CVE-2025-0745
was published
Jan 30, 2025
An Improper Access Control vulnerability has been found in EmbedAI 2.1 and below. This...
Moderate
Unreviewed
CVE-2025-0742
was published
Jan 30, 2025
An Improper Access Control vulnerability has been found in EmbedAI
2.1 and below. This...
Moderate
Unreviewed
CVE-2025-0741
was published
Jan 30, 2025
an Improper Access Control vulnerability has been found in EmbedAI 2.1 and below. This...
High
Unreviewed
CVE-2025-0744
was published
Jan 30, 2025
An Improper Access Control vulnerability has been found in EmbedAI 2.1 and below. This...
Moderate
Unreviewed
CVE-2025-0743
was published
Jan 30, 2025
Zohocorp ManageEngine Applications Manager versions 174000 and prior are vulnerable to the...
High
Unreviewed
CVE-2024-41140
was published
Jan 29, 2025
A Local Code Execution Vulnerability exists in the product and version listed above. The...
High
Unreviewed
CVE-2025-24479
was published
Jan 28, 2025
A vulnerability in the web-based management interface of HPE Aruba Networking Fabric Composer...
Moderate
Unreviewed
CVE-2025-23054
was published
Jan 28, 2025
An attacker can bypass the sandboxing of Nasal scripts and arbitrarily write to any file path...
High
Unreviewed
CVE-2025-0781
was published
Jan 28, 2025
A privilege escalation vulnerability exists in the web-based management interface of HPE Aruba...
Moderate
Unreviewed
CVE-2025-23053
was published
Jan 28, 2025
An authentication issue was addressed with improved state management. This issue is fixed in iOS...
Low
Unreviewed
CVE-2025-24141
was published
Jan 28, 2025
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS...
Moderate
Unreviewed
CVE-2025-24114
was published
Jan 28, 2025
ProTip!
Advisories are also available from the
GraphQL API