GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,747
Erlang
35
GitHub Actions
29
Go
2,321
Maven
5,000+
npm
3,955
NuGet
712
pip
3,736
Pub
12
RubyGems
921
Rust
972
Swift
38
Unreviewed advisories
All unreviewed
5,000+
643 advisories
Filter by severity
Local privilege escalation due to insecure folder permissions. The following products are...
High
Unreviewed
CVE-2025-48961
was published
Jun 4, 2025
In Universal Forwarder for Windows versions below 9.4.2, 9.3.4, 9.2.6, and 9.1.9, a new...
High
Unreviewed
CVE-2025-20298
was published
Jun 2, 2025
A Privilege Escalation vulnerability has been found in ProactivaNet v3.24.0.0 from Grupo Espiral...
High
Unreviewed
CVE-2025-40672
was published
May 26, 2025
Insecure permissions in autodeploy-layer v1.2.0 allows attackers to escalate privileges and...
High
Unreviewed
CVE-2025-45472
was published
May 22, 2025
Insecure permissions in fc-stable-diffusion-plus v1.0.18 allows attackers to escalate privileges...
High
Unreviewed
CVE-2025-45468
was published
May 22, 2025
Insecure permissions in measure-cold-start v1.4.1 allows attackers to escalate privileges and...
High
Unreviewed
CVE-2025-45471
was published
May 22, 2025
Incorrect Permission Assignment for Critical Resource vulnerability in Tridium Niagara Framework...
High
Unreviewed
CVE-2025-3944
was published
May 22, 2025
GStreamer Incorrect Permission Assignment Local Privilege Escalation Vulnerability. This...
High
Unreviewed
CVE-2025-2759
was published
May 22, 2025
The Versa Concerto SD-WAN orchestration platform is vulnerable to an privileges escalation and...
High
Unreviewed
CVE-2025-34025
was published
May 22, 2025
A vulnerability has been identified in SCALANCE LPE9403 (6GK5998-3GS00-2AC2) (All versions)....
High
Unreviewed
CVE-2025-40574
was published
May 13, 2025
A vulnerability has been identified in SIRIUS 3RK3 Modular Safety System (MSS) (All versions),...
High
Unreviewed
CVE-2025-24009
was published
May 13, 2025
IXON VPN Client before 1.4.4 on Windows allows Local Privilege Escalation to SYSTEM because there...
High
Unreviewed
CVE-2025-26169
was published
May 7, 2025
IXON VPN Client before 1.4.4 on Linux and macOS allows Local Privilege Escalation to root because...
High
Unreviewed
CVE-2025-26168
was published
May 7, 2025
Incorrect Permission Assignment for Critical Resource vulnerability in ABB Automation Builder...
High
Unreviewed
CVE-2025-3394
was published
Apr 30, 2025
An incorrect permission assignment vulnerability in the PostgreSQL commands of the USG FLEX H...
High
Unreviewed
CVE-2025-1731
was published
Apr 22, 2025
Vulnerability in the Oracle User Management product of Oracle E-Business Suite (component: Search...
High
Unreviewed
CVE-2025-30708
was published
Apr 15, 2025
A code injection vulnerability in the Debian package component of Taegis Endpoint Agent (Linux)...
High
Unreviewed
CVE-2024-13861
was published
Apr 11, 2025
An Incorrect Permission Assignment for Critical Resource vulnerability in the file system used in...
High
Unreviewed
CVE-2024-10209
was published
Mar 25, 2025
PipeCD Vulnerable to Privilege Escalation
High
CVE-2024-53351
was published
for
github.com/pipe-cd/pipecd
(Go)
Mar 21, 2025
Dell ThinOS 2408 and prior, contains an improper permissions vulnerability. A low privileged...
High
Unreviewed
CVE-2025-27688
was published
Mar 18, 2025
Below has Incorrect Permission Assignment for Critical Resource
High
CVE-2025-27591
was published
for
below
(Rust)
Mar 11, 2025
Insufficiently restrictive permissions in Ivanti Secure Access Client before 22.7R4 allows a...
High
Unreviewed
CVE-2025-22454
was published
Mar 11, 2025
There is an untrusted search path vulnerability in Esri ArcGIS Pro 3.3 and 3.4 that may allow a...
High
Unreviewed
CVE-2025-1067
was published
Feb 25, 2025
Insufficient permissions in Ivanti Secure Access Client before version 22.8R1 allows a local...
High
Unreviewed
CVE-2024-13813
was published
Feb 11, 2025
A vulnerability has been identified in SIMATIC IPC DiagBase (All versions), SIMATIC IPC...
High
Unreviewed
CVE-2025-23403
was published
Feb 11, 2025
ProTip!
Advisories are also available from the
GraphQL API