GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
44
GitHub Actions
46
Go
3,270
Maven
5,000+
npm
5,000+
NuGet
867
pip
4,517
Pub
12
RubyGems
998
Rust
1,194
Swift
51
Unreviewed advisories
All unreviewed
5,000+
29 advisories
Filter by severity
A vulnerability exists in REB500 for an authenticated user with Installer role to access and...
High
Unreviewed
CVE-2026-2459
was published
Feb 24, 2026
A vulnerability exists in REB500 for an authenticated user with low-level privileges to access...
High
Unreviewed
CVE-2026-2460
was published
Feb 24, 2026
Privilege Defined With Unsafe Actions, Missing Authentication for Critical Function vulnerability...
High
Unreviewed
CVE-2025-14349
was published
Feb 13, 2026
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). ...
High
Unreviewed
CVE-2025-62588
was published
Oct 21, 2025
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). ...
High
Unreviewed
CVE-2025-62587
was published
Oct 21, 2025
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). ...
High
Unreviewed
CVE-2025-62590
was published
Oct 21, 2025
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). ...
High
Unreviewed
CVE-2025-62589
was published
Oct 21, 2025
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). ...
High
Unreviewed
CVE-2025-62641
was published
Oct 21, 2025
VMware Aria Operations and VMware Tools contain a local privilege escalation vulnerability. A...
High
Unreviewed
CVE-2025-41244
was published
Sep 29, 2025
Apache Cassandra: User with MODIFY permission on ALL KEYSPACES can escalate privileges to superuser via unsafe actions (4.0.16 only)
High
CVE-2025-26467
was published
for
org.apache.cassandra:cassandra-all
(Maven)
Aug 25, 2025
An attacker with knowledge of creating user accounts during VM deployment on Google Cloud...
High
Unreviewed
CVE-2025-2903
was published
Apr 17, 2025
Apache Cassandra: User with MODIFY permission on ALL KEYSPACES can escalate privileges to superuser via unsafe actions
High
CVE-2025-23015
was published
for
org.apache.cassandra:cassandra-all
(Maven)
Feb 4, 2025
An issue was discovered in DTEX DEC-M (DTEX Forwarder) 6.1.1. The com.dtexsystems.helper service,...
High
Unreviewed
CVE-2024-55968
was published
Jan 29, 2025
Improper authorization in Ivanti Secure Access Client before version 22.7R3 allows a local...
High
Unreviewed
CVE-2024-8539
was published
Nov 12, 2024
Incorrect permissions in Ivanti Secure Access Client before 22.7R4 allows a local authenticated...
High
Unreviewed
CVE-2024-7571
was published
Nov 12, 2024
Incorrect permissions in Ivanti Secure Access Client before version 22.7R4 allows a local...
High
Unreviewed
CVE-2024-9842
was published
Nov 12, 2024
Excessive binary privileges in Ivanti Connect Secure which affects versions 22.4R2 through 22.7R2...
High
Unreviewed
CVE-2024-47906
was published
Nov 12, 2024
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1)....
High
Unreviewed
CVE-2024-39866
was published
Jul 9, 2024
In v4l2_smfc_qbuf of smfc-v4l2-ioctls.c, there is a possible out of bounds write due to a missing...
High
Unreviewed
CVE-2024-32901
was published
Jun 13, 2024
The application suffers from a privilege escalation vulnerability. A
user with read...
High
Unreviewed
CVE-2023-41966
was published
Oct 26, 2023
When running in Appliance mode, an authenticated user assigned the Administrator role may be...
High
Unreviewed
CVE-2023-43746
was published
Oct 10, 2023
A flaw within the SonicWall NetExtender Pre-Logon feature enables an unauthorized user to gain...
High
Unreviewed
CVE-2023-44218
was published
Oct 3, 2023
Dell PowerScale OneFS, versions 8.2.2.x-9.5.0.x, contains an improper privilege management...
High
Unreviewed
CVE-2023-32457
was published
Aug 29, 2023
A sandboxing issue in Odoo Community 15.0 and earlier and Odoo Enterprise 15.0 and earlier allows...
High
Unreviewed
CVE-2021-44476
was published
Apr 25, 2023
A sandboxing issue in Odoo Community 15.0 and earlier and Odoo Enterprise 15.0 and earlier allows...
High
Unreviewed
CVE-2021-23186
was published
Apr 25, 2023
ProTip!
Advisories are also available from the
GraphQL API