GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,386
Erlang
33
GitHub Actions
22
Go
2,141
Maven
5,000+
npm
3,803
NuGet
687
pip
3,480
Pub
12
RubyGems
897
Rust
898
Swift
38
Unreviewed advisories
All unreviewed
5,000+
109 advisories
Filter by severity
Jenkins Role-based Authorization Strategy Plugin grants permissions even after they’ve been disabled
Moderate
CVE-2023-28668
was published
for
org.jenkins-ci.plugins:role-strategy
(Maven)
Apr 2, 2023
The com.callassistant.android (aka AI Call Assistant & Screener) application 1.174 for Android...
Moderate
Unreviewed
CVE-2024-36062
was published
Nov 8, 2024
Certain Teradata account-handling code through 2024-11-04, used with SUSE Enterprise Linux Server...
Moderate
Unreviewed
CVE-2024-52869
was published
Jan 8, 2025
The issue was addressed with additional permissions checks. This issue is fixed in macOS Sequoia...
Moderate
Unreviewed
CVE-2025-24087
was published
Jan 28, 2025
RuoYi vulnerable to Denial of Service by attackers with admin privileges
Moderate
CVE-2024-57439
was published
for
com.ruoyi:ruoyi
(Maven)
Jan 29, 2025
snowflake-sdk may incorrectly validate temporary credential cache file permissions
Moderate
CVE-2025-24791
was published
for
snowflake-sdk
(npm)
Jan 29, 2025
An issue was discovered in Couchbase Server 7.6.x through 7.6.3. A user with the...
Moderate
Unreviewed
CVE-2024-56178
was published
Jan 28, 2025
Vulnerability in the Oracle Workflow product of Oracle E-Business Suite (component: Admin Screens...
Moderate
Unreviewed
CVE-2025-21541
was published
Jan 21, 2025
Vulnerability in the Oracle Communications Order and Service Management product of Oracle...
Moderate
Unreviewed
CVE-2025-21544
was published
Jan 21, 2025
gix-worktree-state nonexclusive checkout sets executable files world-writable
Moderate
CVE-2025-22620
was published
for
gix-worktree-state
(Rust)
Jan 21, 2025
Insecure Permissions vulnerability in SecureSTATION v.2.5.5.3116-S50-SMA-B20160811A and before...
Moderate
Unreviewed
CVE-2024-37649
was published
Dec 19, 2024
This issue was addressed through improved state management. This issue is fixed in macOS Sequoia...
Moderate
Unreviewed
CVE-2024-44223
was published
Dec 20, 2024
The issue was resolved by sanitizing logging. This issue is fixed in macOS Sequoia 15.2. An app...
Moderate
Unreviewed
CVE-2024-54484
was published
Dec 12, 2024
A permissions issue was addressed with additional restrictions. This issue is fixed in watchOS 11...
Moderate
Unreviewed
CVE-2024-54513
was published
Dec 12, 2024
Insecure permissions in Silicon Labs (SiLabs) Z-Wave Series 700 and 800 v7.21.1 allow attackers...
Moderate
Unreviewed
CVE-2024-50921
was published
Dec 10, 2024
Insecure permissions in Silicon Labs (SiLabs) Z-Wave Series 700 and 800 v7.21.1 allow attackers...
Moderate
Unreviewed
CVE-2024-50924
was published
Dec 10, 2024
Insecure permissions in Silicon Labs (SiLabs) Z-Wave Series 700 and 800 v7.21.1 allow attackers...
Moderate
Unreviewed
CVE-2024-50928
was published
Dec 10, 2024
Insecure permissions in Silicon Labs (SiLabs) Z-Wave Series 700 and 800 v7.21.1 allow attackers...
Moderate
Unreviewed
CVE-2024-50929
was published
Dec 10, 2024
Silicon Labs Z-Wave Series 500 v6.84.0 was discovered to contain insecure permissions.
Moderate
Unreviewed
CVE-2024-50931
was published
Dec 10, 2024
Permission verification vulnerability in the system module.
Impact: Successful exploitation of...
Moderate
Unreviewed
CVE-2023-52542
was published
Apr 8, 2024
runc AppArmor bypass with symlinked /proc
Moderate
CVE-2023-28642
was published
for
github.com/opencontainers/runc
(Go)
Mar 30, 2023
A privacy issue was addressed with improved private data redaction for log entries. This issue is...
Moderate
Unreviewed
CVE-2023-32388
was published
Jun 23, 2023
A logic issue was addressed with improved state management. This issue is fixed in macOS Ventura...
Moderate
Unreviewed
CVE-2023-32355
was published
Jun 23, 2023
This issue was addressed with improved checks. This issue is fixed in iOS 16.5 and iPadOS 16.5,...
Moderate
Unreviewed
CVE-2023-32400
was published
Jun 23, 2023
An Improper access control vulnerability in Trend Micro Apex One and Apex One as a Service could...
Moderate
Unreviewed
CVE-2023-32552
was published
Jun 27, 2023
ProTip!
Advisories are also available from the
GraphQL API