GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,476
Erlang
33
GitHub Actions
24
Go
2,207
Maven
5,000+
npm
3,858
NuGet
696
pip
3,639
Pub
12
RubyGems
913
Rust
918
Swift
38
Unreviewed advisories
All unreviewed
5,000+
230 advisories
Filter by severity
An issue in Eskooly Free Online School management Software v.3.0 and before allows a remote...
High
Unreviewed
CVE-2024-27713
was published
Jul 5, 2024
Artifex Ghostscript before 10.03.1 allows memory corruption, and SAFER sandbox bypass, via format...
Moderate
Unreviewed
CVE-2024-29510
was published
Jul 3, 2024
events2 TYPO3 extension insecure direct object reference (IDOR) vulnerability
Moderate
CVE-2024-38874
was published
for
jweiland/events2
(Composer)
Jun 21, 2024
Parallels Desktop Updater Protection Mechanism Failure Software Downgrade Vulnerability. This...
High
Unreviewed
CVE-2024-6153
was published
Jun 20, 2024
Mattermost Desktop App allows for bypassing TCC restrictions on macOS
Low
CVE-2024-36287
was published
for
mattermost-desktop
(npm)
Jun 14, 2024
Mattermost Desktop App Remote Code Execution
Moderate
CVE-2024-37182
was published
for
mattermost-desktop
(npm)
Jun 14, 2024
Dropbox Desktop Folder Sharing Mark-of-the-Web Bypass Vulnerability. This vulnerability allows...
High
Unreviewed
CVE-2024-5924
was published
Jun 13, 2024
Visual Studio Remote Code Execution Vulnerability
Moderate
Unreviewed
CVE-2024-30052
was published
Jun 11, 2024
By tricking the browser with a `X-Frame-Options` header, a sandboxed iframe could have presented...
Moderate
Unreviewed
CVE-2024-5691
was published
Jun 11, 2024
Because of a logical error in XSA-407 (Branch Type Confusion), the
mitigation is not applied...
High
Unreviewed
CVE-2024-31142
was published
May 16, 2024
Windows Mark of the Web Security Feature Bypass Vulnerability
Moderate
Unreviewed
CVE-2024-30050
was published
May 14, 2024
Microsoft Bing Search Spoofing Vulnerability
Moderate
Unreviewed
CVE-2024-30041
was published
May 14, 2024
Jenkins Script Security Plugin has sandbox bypass vulnerability involving crafted constructor bodies
High
CVE-2024-34144
was published
for
org.jenkins-ci.plugins:script-security
(Maven)
May 2, 2024
In CARLA through 0.9.15.2, the collision sensor mishandles some situations involving pedestrians...
Moderate
Unreviewed
CVE-2024-33903
was published
Apr 29, 2024
ejs lacks certain pollution protection
Moderate
CVE-2024-33883
was published
for
ejs
(npm)
Apr 28, 2024
A logic issue was addressed with improved checks. This issue is fixed in iTunes 12.12.4 for...
High
Unreviewed
CVE-2022-48611
was published
Apr 26, 2024
SmartScreen Prompt Security Feature Bypass Vulnerability
High
Unreviewed
CVE-2024-29988
was published
Apr 9, 2024
Secure Boot Security Feature Bypass Vulnerability
Moderate
Unreviewed
CVE-2024-28919
was published
Apr 9, 2024
Secure Boot Security Feature Bypass Vulnerability
High
Unreviewed
CVE-2024-28920
was published
Apr 9, 2024
Secure Boot Security Feature Bypass Vulnerability
Moderate
Unreviewed
CVE-2024-28921
was published
Apr 9, 2024
Secure Boot Security Feature Bypass Vulnerability
Moderate
Unreviewed
CVE-2024-26250
was published
Apr 9, 2024
Secure Boot Security Feature Bypass Vulnerability
Moderate
Unreviewed
CVE-2024-28903
was published
Apr 9, 2024
Secure Boot Security Feature Bypass Vulnerability
Moderate
Unreviewed
CVE-2024-20669
was published
Apr 9, 2024
BitLocker Security Feature Bypass Vulnerability
Moderate
Unreviewed
CVE-2024-20665
was published
Apr 9, 2024
RARLAB WinRAR Mark-Of-The-Web Bypass Vulnerability. This vulnerability allows remote attackers to...
Moderate
Unreviewed
CVE-2024-30370
was published
Apr 2, 2024
ProTip!
Advisories are also available from the
GraphQL API