GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,274
Erlang
31
GitHub Actions
21
Go
2,056
Maven
5,000+
npm
3,740
NuGet
668
pip
3,419
Pub
12
RubyGems
891
Rust
872
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
720 advisories
Filter by severity
Incorrect Authorization vulnerability in Apache OFBiz.
This issue affects Apache OFBiz: through...
High
Unreviewed
CVE-2024-38856
was published
Aug 5, 2024
In restorePermissionState of PermissionManagerServiceImpl.java, there is a possible way for an...
High
Unreviewed
CVE-2023-21270
was published
Nov 19, 2024
Incorrect access control in Sunbird DCIM dcTrack v9.1.2 allows attackers to create or update a...
High
Unreviewed
CVE-2024-37775
was published
Dec 17, 2024
An access control bypass vulnerability found in 389-ds-base. That mishandling of the filter that...
High
Unreviewed
CVE-2022-1949
was published
Jun 3, 2022
An issue was discovered on NOKIA Airscale ASIKA Single RAN devices before 21B. A mobile network...
High
Unreviewed
CVE-2023-25185
was published
Jun 16, 2023
An issue was discovered in Qlik Sense Enterprise for Windows before November 2024 IR. An...
High
Unreviewed
CVE-2024-55579
was published
Dec 9, 2024
An authorization issue was addressed with improved state management. This issue is fixed in macOS...
High
Unreviewed
CVE-2024-27798
was published
May 14, 2024
The VerifiedBoot module has a vulnerability that may cause authentication errors.Successful...
High
Unreviewed
CVE-2023-52361
was published
Feb 18, 2024
A vulnerability exists where a low-privileged user can exploit insufficient permissions in...
High
Unreviewed
CVE-2024-45204
was published
Dec 4, 2024
An issue was discovered in /cgi-bin/adm.cgi in WavLink WavRouter version RPT70HA1.x, allows...
High
Unreviewed
CVE-2023-29708
was published
Jun 22, 2023
A logic issue was addressed with improved checks. This issue is fixed in iTunes 12.12.9 for...
High
Unreviewed
CVE-2023-32353
was published
Jun 23, 2023
A vulnerability in Veeam Backup & Replication allows a low-privileged user to start an agent...
High
Unreviewed
CVE-2024-42452
was published
Dec 4, 2024
An exposed dangerous function vulnerability in the Trend Micro Apex One and Apex One as a Service...
High
Unreviewed
CVE-2023-34146
was published
Jun 27, 2023
An exposed dangerous function vulnerability in the Trend Micro Apex One and Apex One as a Service...
High
Unreviewed
CVE-2023-34148
was published
Jun 27, 2023
An exposed dangerous function vulnerability in the Trend Micro Apex One and Apex One as a Service...
High
Unreviewed
CVE-2023-34147
was published
Jun 27, 2023
An issue was discovered on Victure RX1800 WiFi 6 Router (software EN_V1.0.0_r12_110933, hardware...
High
Unreviewed
CVE-2024-53937
was published
Dec 3, 2024
An issue was discovered in Victure RX1800 WiFi 6 Router (software EN_V1.0.0_r12_110933, hardware...
High
Unreviewed
CVE-2024-53941
was published
Dec 3, 2024
python_book V1.0 is vulnerable to Incorrect Access Control, which allows attackers to obtain...
High
Unreviewed
CVE-2024-50650
was published
Nov 15, 2024
The python_food ordering system V1.0 has an unauthorized vulnerability that leads to the leakage...
High
Unreviewed
CVE-2024-50647
was published
Nov 15, 2024
In installPackageLI of PackageManagerService.java, there is a possible permissions bypass. This...
High
Unreviewed
CVE-2018-9374
was published
Nov 28, 2024
In Click Studios Passwordstate before build 9920, there is a potential permission escalation on...
High
Unreviewed
CVE-2024-54124
was published
Nov 29, 2024
The application Sensei Mac Cleaner contains a local privilege escalation vulnerability, allowing...
High
Unreviewed
CVE-2024-7915
was published
Nov 25, 2024
Permission control vulnerability in the package management module.Successful exploitation of this...
High
Unreviewed
CVE-2023-52374
was published
Feb 18, 2024
Vulnerability in the Oracle Agile PLM Framework product of Oracle Supply Chain (component:...
High
Unreviewed
CVE-2024-21287
was published
Nov 19, 2024
An issue was discovered in GitLab CE/EE affecting all versions starting from 16.0 prior to 17.3.7...
High
Unreviewed
CVE-2024-9693
was published
Nov 14, 2024
ProTip!
Advisories are also available from the
GraphQL API