GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,272
Erlang
31
GitHub Actions
21
Go
2,047
Maven
5,000+
npm
3,739
NuGet
668
pip
3,415
Pub
12
RubyGems
891
Rust
868
Swift
36
Unreviewed advisories
All unreviewed
5,000+
425 advisories
Filter by severity
An attacker with admin access can install rogue applications. As for the affected products/models...
Moderate
Unreviewed
CVE-2024-27180
was published
Jun 14, 2024
Local privilege escalation due to insecure folder permissions. The following products are...
Moderate
Unreviewed
CVE-2024-34012
was published
Jun 14, 2024
Incorrect Default Permissions vulnerability in Hitachi Storage Provider for VMware vCenter allows...
Moderate
Unreviewed
CVE-2024-22385
was published
Jun 25, 2024
IBM Security Access Manager Docker 10.0.0.0 through 10.0.7.1 could disclose sensitive information...
Moderate
Unreviewed
CVE-2023-38368
was published
Jun 27, 2024
IBM Security Access Manager Docker 10.0.0.0 through 10.0.7.1 could allow a local user to obtain...
Moderate
Unreviewed
CVE-2024-35139
was published
Jun 28, 2024
Incorrect Default Permissions, Improper Preservation of Permissions vulnerability in Hitachi Ops...
Moderate
Unreviewed
CVE-2024-2819
was published
Jul 2, 2024
In multiple locations, there is a possible information leak due to a missing permission check....
Moderate
Unreviewed
CVE-2024-31312
was published
Jul 9, 2024
Denial of service vulnerability present shortly after product installation or upgrade,...
Moderate
Unreviewed
CVE-2024-3779
was published
Jul 16, 2024
The v6.40 release of Rockwell Automation FactoryTalk® Policy Manager CVE-2021-22681 https://www...
Moderate
Unreviewed
CVE-2024-6325
was published
Jul 16, 2024
Vulnerability in the PeopleSoft Enterprise HCM Shared Components product of Oracle PeopleSoft ...
Moderate
Unreviewed
CVE-2024-21122
was published
Jul 17, 2024
An incorrect permission in the installation directory for the shared NI SystemLink Server...
Moderate
Unreviewed
CVE-2024-6122
was published
Jul 22, 2024
Improper handling of insufficient permission in Telephony prior to SMR Aug-2024 Release 1 allows...
Moderate
Unreviewed
CVE-2024-34617
was published
Aug 7, 2024
Improper handling of insufficient permission in KnoxDualDARPolicy prior to SMR Aug-2024 Release 1...
Moderate
Unreviewed
CVE-2024-34616
was published
Aug 7, 2024
In ICMPv6 Neighbor Discovery (ND), the ID is always 0. When pf is configured to allow ND and...
Moderate
Unreviewed
CVE-2024-6640
was published
Aug 12, 2024
Incorrect default permissions for some Intel(R) Connectivity Performance Suite software...
Moderate
Unreviewed
CVE-2023-43747
was published
Aug 14, 2024
Incorrect default permissions in some Intel(R) Distribution for GDB software before version 2024...
Moderate
Unreviewed
CVE-2024-23495
was published
Aug 14, 2024
Incorrect default permissions in some Intel Unite(R) Client Extended Display Plugin software...
Moderate
Unreviewed
CVE-2024-22378
was published
Aug 14, 2024
Incorrect default permissions in some Intel(R) ISH software installers may allow an authenticated...
Moderate
Unreviewed
CVE-2024-23974
was published
Aug 14, 2024
Incorrect default permissions in software installer for Intel(R) MAS (GUI) may allow an...
Moderate
Unreviewed
CVE-2024-27461
was published
Aug 14, 2024
Incorrect default permissions for some Intel(R) Advisor software before version 2024.1 may allow...
Moderate
Unreviewed
CVE-2024-26025
was published
Aug 14, 2024
request_store has Incorrect Default Permissions
Moderate
CVE-2024-43791
was published
for
request_store
(RubyGems)
Aug 23, 2024
Sensitive information disclosure due to insecure folder permissions. The following products are...
Moderate
Unreviewed
CVE-2024-34018
was published
Aug 29, 2024
Improper Handling of Insufficient Permissions in KnoxMiscPolicy prior to SMR Sep-2024 Release 1...
Moderate
Unreviewed
CVE-2024-34648
was published
Sep 4, 2024
Improper handling of insufficient permissions in Samsung Assistant prior to version 9.1.00.7...
Moderate
Unreviewed
CVE-2024-34661
was published
Sep 4, 2024
Microsoft Edge (Chromium-based) Information Disclosure Vulnerability
Moderate
Unreviewed
CVE-2024-38222
was published
Sep 12, 2024
ProTip!
Advisories are also available from the
GraphQL API