GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,785
Erlang
36
GitHub Actions
29
Go
2,358
Maven
5,000+
npm
3,979
NuGet
720
pip
3,777
Pub
12
RubyGems
924
Rust
981
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
877 advisories
Filter by severity
An issue in NetEase (Hangzhou) Network Co., Ltd NeacSafe64 Driver before v1.0.0.8 allows...
Moderate
Unreviewed
CVE-2025-45737
was published
Jun 27, 2025
An Improper Privilege Management vulnerability [CWE-269] affecting Fortinet FortiOS version 7.6.0...
Moderate
Unreviewed
CVE-2025-22254
was published
Jun 10, 2025
A vulnerability has been identified in RUGGEDCOM RST2428P (6GK6242-6PA00) (All versions < V3.1),...
Moderate
Unreviewed
CVE-2024-41797
was published
Jun 10, 2025
When a notification relating to low battery appears for a user with whom the device has been...
Moderate
Unreviewed
CVE-2025-4975
was published
May 23, 2025
The issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.7.3, macOS...
Moderate
Unreviewed
CVE-2025-24183
was published
May 19, 2025
Improper Privilege Management vulnerability in Centreon web allows Privilege Escalation.
ACL are...
Moderate
Unreviewed
CVE-2025-4649
was published
May 13, 2025
An authenticated user without user-management permissions could view other users' account...
Moderate
Unreviewed
CVE-2025-46745
was published
May 12, 2025
A suspended or recently logged-out user could continue to interact with Blueframe until the time...
Moderate
Unreviewed
CVE-2025-46741
was published
May 12, 2025
The MStore API – Create Native Android & iOS Apps On The Cloud plugin for WordPress is vulnerable...
Moderate
Unreviewed
CVE-2025-3438
was published
May 2, 2025
There is a Permission Management and Access Control vulnerability in the GoldenDB database...
Moderate
Unreviewed
CVE-2025-46576
was published
Apr 27, 2025
An improper privilege management vulnerability in the recovery function of the USG FLEX H series...
Moderate
Unreviewed
CVE-2025-1732
was published
Apr 22, 2025
A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 17 and...
Moderate
Unreviewed
CVE-2023-38614
was published
Apr 11, 2025
A vulnerability has been identified in Siemens License Server (SLS) (All versions < V4.3). The...
Moderate
Unreviewed
CVE-2025-29999
was published
Apr 8, 2025
An issue in RUoYi v.4.8.0 allows a remote attacker to escalate privileges via the postID...
Moderate
Unreviewed
CVE-2025-28400
was published
Apr 7, 2025
An issue in RUoYi v.4.8.0 allows a remote attacker to escalate privileges via the menuId parameter
Moderate
Unreviewed
CVE-2025-28401
was published
Apr 7, 2025
Google gVisor's runsc component exhibited a local privilege escalation vulnerability due to...
Moderate
Unreviewed
CVE-2025-2713
was published
Mar 28, 2025
accountsservice no longer drops permissions when writting .pam_environment
Moderate
Unreviewed
CVE-2022-1804
was published
Mar 25, 2025
In version v0.0.14 of transformeroptimus/superagi, there is an improper privilege management...
Moderate
Unreviewed
CVE-2024-9431
was published
Mar 20, 2025
In lunary-ai/lunary v1.5.0, improper privilege management in the models.ts file allows users with...
Moderate
Unreviewed
CVE-2024-10273
was published
Mar 20, 2025
Improper Privilege Management vulnerability for users configured as Shared Accounts in Progress...
Moderate
Unreviewed
CVE-2025-2324
was published
Mar 19, 2025
Dell SmartFabric OS10 Software, version(s) 10.5.4.x, 10.5.5.x, 10.5.6.x, 10.6.0.x, contain(s) an...
Moderate
Unreviewed
CVE-2024-48828
was published
Mar 17, 2025
An issue in Open Panel v.0.3.4 allows a remote attacker to escalate privileges via the Fix...
Moderate
Unreviewed
CVE-2025-25872
was published
Mar 14, 2025
An issue in SoundCloud IOS application v.7.65.2 allows a local attacker to escalate privileges...
Moderate
Unreviewed
CVE-2024-57062
was published
Mar 13, 2025
Xerox Desktop Print Experience application contains a Local Privilege Escalation (LPE)...
Moderate
Unreviewed
CVE-2025-1984
was published
Mar 12, 2025
Improper privilege management in Azure Agent Installer allows an authorized attacker to elevate...
Moderate
Unreviewed
CVE-2025-21199
was published
Mar 11, 2025
ProTip!
Advisories are also available from the
GraphQL API