GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,800
Erlang
36
GitHub Actions
29
Go
2,380
Maven
5,000+
npm
4,005
NuGet
720
pip
3,805
Pub
12
RubyGems
927
Rust
986
Swift
38
Unreviewed advisories
All unreviewed
5,000+
500 advisories
Filter by severity
Insecure inherited permissions in some Intel(R) Simics Simulator software before version 1.7.2...
Moderate
Unreviewed
CVE-2023-34314
was published
Nov 14, 2023
Insecure inherited permissions in the installer for some Intel Server Configuration Utility...
Moderate
Unreviewed
CVE-2023-34997
was published
Nov 14, 2023
Insecure inherited permissions in some Intel Rapid Storage Technology software before version 16...
Moderate
Unreviewed
CVE-2023-39230
was published
Nov 14, 2023
Insecure inherited permissions in some Intel(R) NUC Pro Software Suite installation software...
Moderate
Unreviewed
CVE-2022-41700
was published
Nov 14, 2023
Insecure inherited permissions in some Intel(R) NUC Watchdog Timer installation software before...
Moderate
Unreviewed
CVE-2022-33898
was published
Nov 14, 2023
An improper authorization vulnerability [CWE-285] in FortiMail webmail version 7.2.0 through 7.2...
Moderate
Unreviewed
CVE-2023-36633
was published
Nov 14, 2023
An issue was discovered in Click Studios Passwordstate before 9811. Existing users (Security...
Moderate
Unreviewed
CVE-2023-47801
was published
Nov 13, 2023
An incorrect permission assignment in the TopoGrafix DataPlugin for GPX could result in...
Moderate
Unreviewed
CVE-2023-5136
was published
Nov 8, 2023
A local privilege escalation (PE) vulnerability in the Palo Alto Networks Cortex XSOAR engine...
Moderate
Unreviewed
CVE-2023-3282
was published
Nov 8, 2023
A logic issue was addressed with improved state management. This issue is fixed in macOS Sonoma...
Moderate
Unreviewed
CVE-2023-42861
was published
Oct 25, 2023
An Incorrect Permission Assignment for Critical Resource vulnerability in a specific file of...
Moderate
Unreviewed
CVE-2023-44201
was published
Oct 13, 2023
A vulnerability has been identified in SICAM PAS/PQS (All versions >= V8.00 < V8.22). The...
Moderate
Unreviewed
CVE-2023-38640
was published
Oct 10, 2023
An issue was discovered in the PageTriage extension for MediaWiki before 1.35.12, 1.36.x through...
Moderate
Unreviewed
CVE-2023-45369
was published
Oct 9, 2023
An issue was discovered in includes/page/Article.php in MediaWiki 1.36.x through 1.39.x before 1...
Moderate
Unreviewed
CVE-2023-45364
was published
Oct 9, 2023
Broadcast permission control vulnerability in the framework module. Successful exploitation of...
Moderate
Unreviewed
CVE-2023-4565
was published
Sep 27, 2023
Vulnerability of improper permission management in the displayengine module. Successful...
Moderate
Unreviewed
CVE-2023-41295
was published
Sep 25, 2023
A vulnerability has been identified in Node.js version 20, affecting users of the experimental...
Moderate
Unreviewed
CVE-2023-32005
was published
Sep 20, 2023
An incorrect permission check in Qualys Container Scanning Connector Plugin 1.6.2.6 and earlier...
Moderate
Unreviewed
CVE-2023-4777
was published
Sep 8, 2023
Insecure Inherited Permissions vulnerability in Schweitzer Engineering Laboratories SEL-5033...
Moderate
Unreviewed
CVE-2023-34391
was published
Aug 31, 2023
A vulnerability has been identified in ioLogik 4000 Series (ioLogik E4200) firmware versions v1.6...
Moderate
Unreviewed
CVE-2023-4228
was published
Aug 24, 2023
A vulnerability in the restricted security domain implementation of Cisco Application Policy...
Moderate
Unreviewed
CVE-2023-20230
was published
Aug 23, 2023
A vulnerability in the CLI of Cisco FXOS Software could allow an authenticated, local attacker to...
Moderate
Unreviewed
CVE-2023-20234
was published
Aug 23, 2023
A vulnerability in the Simple Network Management Protocol (SNMP) service of Cisco FXOS Software...
Moderate
Unreviewed
CVE-2023-20200
was published
Aug 23, 2023
Active Support Possibly Discloses Locally Encrypted Files
Moderate
CVE-2023-38037
was published
for
activesupport
(RubyGems)
Aug 23, 2023
An issue in the delete function in the ActModelController class of jeesite v1.2.6 allows...
Moderate
Unreviewed
CVE-2023-38991
was published
Aug 4, 2023
ProTip!
Advisories are also available from the
GraphQL API