GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Language support
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,056
Erlang
29
GitHub Actions
19
Go
1,889
Maven
5,000+
npm
3,618
NuGet
638
pip
3,231
Pub
10
RubyGems
854
Rust
817
Swift
35
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
1,987 advisories
Filter by severity
An issue was discovered in Vaultwarden (formerly Bitwarden_RS) 1.30.3. A vulnerability has been...
High
Unreviewed
CVE-2024-39924
was published
Sep 13, 2024
An issue was discovered in Vaultwarden (formerly Bitwarden_RS) 1.30.3. It lacks an offboarding...
High
Unreviewed
CVE-2024-39925
was published
Sep 13, 2024
A privilege escalation vulnerability exists in the Rockwell Automation affected products. The...
High
Unreviewed
CVE-2024-8533
was published
Sep 12, 2024
The Rockwell Automation affected product contains a vulnerability that allows a threat actor to...
High
Unreviewed
CVE-2024-7960
was published
Sep 12, 2024
The Samsung Universal Print Driver for Windows is potentially vulnerable to escalation of...
High
Unreviewed
CVE-2024-5760
was published
Sep 11, 2024
CWE-269: Improper Privilege Management vulnerability exists that could cause unauthorized
access,...
High
Unreviewed
CVE-2024-8306
was published
Sep 11, 2024
In getConfig of SoftVideoDecoderOMXComponent.cpp, there is a possible out of bounds write due to...
High
Unreviewed
CVE-2024-40658
was published
Sep 11, 2024
In addPreferencesForType of AccountTypePreferenceLoader.java, there is a possible way to disable...
High
Unreviewed
CVE-2024-40657
was published
Sep 11, 2024
In scheme of Uri.java, there is a possible way to craft a malformed Uri object due to improper...
High
Unreviewed
CVE-2024-40662
was published
Sep 11, 2024
Windows Installer Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-38014
was published
Sep 10, 2024
Microsoft SQL Server Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-37980
was published
Sep 10, 2024
The Newsletters plugin for WordPress is vulnerable to privilege escalation in all versions up to,...
High
Unreviewed
CVE-2024-8247
was published
Sep 6, 2024
An issue was discovered in za-internet C-MOR Video Surveillance 5.2401. Due to improper privilege...
High
Unreviewed
CVE-2024-45173
was published
Sep 5, 2024
Improper Privilege Management vulnerability in OpenText NetIQ Access Manager allows user account...
High
Unreviewed
CVE-2024-4555
was published
Aug 28, 2024
An Incorrect Access Control vulnerability was found in /admin/delete_room.php in Kashipara Hotel...
High
Unreviewed
CVE-2024-42774
was published
Aug 22, 2024
The DXE module SmmComputrace contains a vulnerability that allows local attackers to leak stack...
High
Unreviewed
CVE-2024-33656
was published
Aug 21, 2024
A vulnerability found in OpenText Privileged Access Manager that issues a token. on successful...
High
Unreviewed
CVE-2020-11846
was published
Aug 21, 2024
Dell Repository Manager version 3.4.2 and earlier, contain a Local Privilege Escalation...
High
Unreviewed
CVE-2023-22576
was published
Aug 21, 2024
VTiger CRM <= 8.1.0 does not correctly check user privileges. A low-privileged user can interact...
High
Unreviewed
CVE-2024-42995
was published
Aug 16, 2024
In setForceHideNonSystemOverlayWindowIfNeeded of WindowState.java, there is a possible way for...
High
Unreviewed
CVE-2024-34741
was published
Aug 16, 2024
In setTransactionState of SurfaceFlinger.cpp, there is a possible way to perform tapjacking due...
High
Unreviewed
CVE-2024-34743
was published
Aug 16, 2024
A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions ...
High
Unreviewed
CVE-2024-41903
was published
Aug 13, 2024
An issue in OWASP DefectDojo before v.1.5.3.1 allows a remote attacker to escalate privileges via...
High
Unreviewed
CVE-2023-48171
was published
Aug 12, 2024
An issue was discovered in Zimbra Collaboration (ZCS) 9.0 and 10.0. The zmmailboxdmgr binary, a...
High
Unreviewed
CVE-2024-27442
was published
Aug 12, 2024
There is a permission and access control vulnerability of ZTE's ZXV10 XT802/ET301 product...
High
Unreviewed
CVE-2024-22069
was published
Aug 8, 2024
ProTip!
Advisories are also available from the
GraphQL API