GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,871
Erlang
37
GitHub Actions
36
Go
2,504
Maven
5,000+
npm
4,149
NuGet
735
pip
3,949
Pub
12
RubyGems
945
Rust
1,025
Swift
39
Unreviewed advisories
All unreviewed
5,000+
659 advisories
Filter by severity
BenimPOS Masaustu 3.0.x is affected by insecure file permissions. The application installation...
High
Unreviewed
CVE-2025-57392
was published
Sep 10, 2025
A low-privileged remote attacker could gain unauthorized access to critical resources, such as...
High
Unreviewed
CVE-2025-41664
was published
Sep 8, 2025
NVIDIA DOCA contains a vulnerability in the collectx-dpeserver Debian package for arm64 that...
High
Unreviewed
CVE-2025-23258
was published
Sep 5, 2025
NVIDIA DOCA contains a vulnerability in the collectx-clxapidev Debian package that could allow an...
High
Unreviewed
CVE-2025-23257
was published
Sep 5, 2025
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS...
High
Unreviewed
CVE-2025-43268
was published
Aug 29, 2025
Local privilege escalation due to insecure folder permissions. The following products are...
High
Unreviewed
CVE-2025-9578
was published
Aug 28, 2025
Incorrect permission assignment for critical resource issue exists in SS1 Ver.16.0.0.10 and...
High
Unreviewed
CVE-2025-53396
was published
Aug 28, 2025
In handleBondStateChanged of AdapterService.java, there is a possible unapproved data access due...
High
Unreviewed
CVE-2025-0093
was published
Aug 27, 2025
Dell ThinOS 10, versions prior to 2508_10.0127, contains an Incorrect Permission Assignment for...
High
Unreviewed
CVE-2025-43729
was published
Aug 27, 2025
Insecure Permissions vulnerability in PDQ Smart Deploy V.3.0.2040 allows a local attacker to...
High
Unreviewed
CVE-2025-52094
was published
Aug 22, 2025
Insecure permissions in Agent-Zero v0.8.* allow attackers to arbitrarily reset the system via...
High
Unreviewed
CVE-2025-55524
was published
Aug 21, 2025
Multiple Incorrect Permission Assignment for Critical Resource in UISP Application may allow a...
High
Unreviewed
CVE-2025-27216
was published
Aug 21, 2025
Vault SSH Secrets Engine Configuration Did Not Restrict Valid Principals By Default
High
CVE-2024-7594
was published
for
github.com/hashicorp/vault
(Go)
Sep 26, 2024
IBM Security Guardium Data Encryption (GDE) 3.0.0.2 specifies permissions for a security-critical...
High
Unreviewed
CVE-2019-4702
was published
May 24, 2022
GPMAW 14, a bioinformatics software, has a critical vulnerability related to insecure file...
High
Unreviewed
CVE-2025-50675
was published
Aug 7, 2025
A low-privileged attacker can remotely access the PKI folder of the CODESYS Control runtime...
High
Unreviewed
CVE-2025-41659
was published
Aug 4, 2025
Exposed IOCTL with Insufficient Access Control in Phoenix WinFlash Driver on Windows allows...
High
Unreviewed
CVE-2023-35841
was published
May 14, 2024
A flaw was found in the OpenShift build process, where the docker-build container is configured...
High
Unreviewed
CVE-2024-45497
was published
Dec 31, 2024
Incorrect Permission Assignment for Critical Resource vulnerability in Apache APISIX(java-plugin...
High
Unreviewed
CVE-2025-27446
was published
Jul 6, 2025
Incorrect Permission Assignment for Critical Resource in the TeamViewer Client (Full and Host) of...
High
Unreviewed
CVE-2025-36537
was published
Jun 26, 2025
Local privilege escalation due to insecure folder permissions. The following products are...
High
Unreviewed
CVE-2025-48961
was published
Jun 4, 2025
Permission management vulnerability in the multi-screen interaction module. Successful...
High
Unreviewed
CVE-2023-52116
was published
Jan 16, 2024
In Universal Forwarder for Windows versions below 9.4.2, 9.3.4, 9.2.6, and 9.1.9, a new...
High
Unreviewed
CVE-2025-20298
was published
Jun 2, 2025
Crestron AirMedia for Windows before 5.5.1.84 has insecure inherited permissions, which leads to...
High
Unreviewed
CVE-2022-40298
was published
Sep 25, 2022
A Privilege Escalation vulnerability has been found in ProactivaNet v3.24.0.0 from Grupo Espiral...
High
Unreviewed
CVE-2025-40672
was published
May 26, 2025
ProTip!
Advisories are also available from the
GraphQL API