GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
42
GitHub Actions
42
Go
3,138
Maven
5,000+
npm
5,000+
NuGet
831
pip
4,438
Pub
12
RubyGems
990
Rust
1,174
Swift
50
Unreviewed advisories
All unreviewed
5,000+
1,429 advisories
Filter by severity
Incorrect default permissions in .NET allows an authorized attacker to elevate privileges locally.
High
Unreviewed
CVE-2026-26131
was published
Mar 10, 2026
Multiple i-フィルター products are configured with improper file access permission settings. Files may...
Moderate
Unreviewed
CVE-2026-28267
was published
Mar 10, 2026
Local privilege escalation due to improper directory permissions. The following products are...
Moderate
Unreviewed
CVE-2026-28717
was published
Mar 6, 2026
Local privilege escalation due to insecure Unix socket permissions. The following products are...
High
Unreviewed
CVE-2026-28727
was published
Mar 6, 2026
UPS Multi-UPS Management Console (MUMC) version 01.06.0001 (A03) contains an Incorrect Default...
High
Unreviewed
CVE-2026-26034
was published
Mar 5, 2026
Dell PowerScale OneFS, versions prior to 9.10.1.6 and versions 9.11.0.0 through 9.12.0.1,...
Moderate
Unreviewed
CVE-2026-21423
was published
Mar 4, 2026
HP System Event Utility might allow denial of service with elevated arbitrary file writes. This...
Moderate
Unreviewed
CVE-2026-2915
was published
Mar 3, 2026
AWS CLI: cli_history database does not restrict file permissions on Unix systems
Moderate
GHSA-747p-wmpv-9c78
was published
for
awscli
(pip)
Feb 27, 2026
The installers for multiple products provided by Soliton Systems K.K. contain an issue with...
Moderate
Unreviewed
CVE-2026-27653
was published
Feb 27, 2026
The installer of FinalCode Client provided by Digital Arts Inc. contains an incorrect default...
High
Unreviewed
CVE-2026-23703
was published
Feb 26, 2026
Local privilege escalation in Genetec Update Service. An authenticated, low-privileged, Windows...
Moderate
Unreviewed
CVE-2025-1789
was published
Feb 24, 2026
A vulnerability has been identified where weak file permissions in the Nessus Agent directory on...
Moderate
Unreviewed
CVE-2026-2026
was published
Feb 13, 2026
Incorrect default permissions for some Intel(R) Memory and Storage Tool before version 2.5.2...
Moderate
Unreviewed
CVE-2025-36511
was published
Feb 10, 2026
Incorrect default permissions for some Intel(R) Graphics Driver software within Ring 2:...
Moderate
Unreviewed
CVE-2025-32453
was published
Feb 10, 2026
Incorrect default permissions for some Intel(R) Chipset Software before version 10.1.20266.8668...
Moderate
Unreviewed
CVE-2025-36522
was published
Feb 10, 2026
Incorrect default permissions for some Intel(R) Battery Life Diagnostic Tool within Ring 3: User...
Moderate
Unreviewed
CVE-2025-31655
was published
Feb 10, 2026
Incorrect default permissions for the Intel(R) Optane(TM) PMem management software before...
Moderate
Unreviewed
CVE-2025-22849
was published
Feb 10, 2026
SprintWork 2.3.1 contains multiple local privilege escalation vulnerabilities through insecure...
High
Unreviewed
CVE-2020-37160
was published
Feb 7, 2026
Tanium addressed an incorrect default permissions vulnerability in Discover.
Moderate
Unreviewed
CVE-2025-15339
was published
Feb 5, 2026
Tanium addressed an incorrect default permissions vulnerability in Partner Integration.
Moderate
Unreviewed
CVE-2025-15338
was published
Feb 5, 2026
Tanium addressed an incorrect default permissions vulnerability in Enforce.
Moderate
Unreviewed
CVE-2025-15343
was published
Feb 5, 2026
Tanium addressed an incorrect default permissions vulnerability in Performance.
Moderate
Unreviewed
CVE-2025-15336
was published
Feb 5, 2026
Tanium addressed an incorrect default permissions vulnerability in Patch.
Moderate
Unreviewed
CVE-2025-15337
was published
Feb 5, 2026
Tanium addressed an incorrect default permissions vulnerability in Benchmark.
Moderate
Unreviewed
CVE-2025-15341
was published
Feb 5, 2026
Tanium addressed an incorrect default permissions vulnerability in Comply.
Moderate
Unreviewed
CVE-2025-15340
was published
Feb 5, 2026
ProTip!
Advisories are also available from the
GraphQL API