Skip to content

GitHub Advisory Database

Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.

142 advisories

Loading
Twig has a possible sandbox bypass Moderate
CVE-2024-45411 was published for twig/twig (Composer) Sep 9, 2024
fabpot stof
Credited to fabpot and stof
Windows Mark of the Web Security Feature Bypass Vulnerability Moderate Unreviewed
CVE-2024-38217 was published Sep 10, 2024
Windows Mark of the Web Security Feature Bypass Vulnerability Moderate Unreviewed
CVE-2024-43487 was published Sep 10, 2024
@backstage/plugin-techdocs-backend vulnerable to circumvention of cross site scripting protection Moderate
CVE-2024-46976 was published for @backstage/plugin-techdocs-backend (npm) Sep 17, 2024
BitLocker Security Feature Bypass Vulnerability Moderate Unreviewed
CVE-2024-43513 was published Oct 8, 2024
Code Integrity Guard Security Feature Bypass Vulnerability Moderate Unreviewed
CVE-2024-43585 was published Oct 8, 2024
Windows Package Library Manager Information Disclosure Vulnerability Moderate Unreviewed
CVE-2024-38203 was published Nov 12, 2024
Windows Defender Application Control (WDAC) Security Feature Bypass Vulnerability Moderate Unreviewed
CVE-2024-43645 was published Nov 12, 2024
Jinja has a sandbox breakout through indirect reference to format method Moderate
CVE-2024-56326 was published for jinja2 (pip) Dec 23, 2024
Lydxn despawningbone
Credited to Lydxn and despawningbone
Denial of Service in Keycloak Server via Security Headers Moderate
CVE-2024-11734 was published for org.keycloak:keycloak-quarkus-server (Maven) Jan 13, 2025
Windows NTLM Spoofing Vulnerability Moderate Unreviewed
CVE-2025-21217 was published Jan 14, 2025
Secure Boot Security Feature Bypass Vulnerability Moderate Unreviewed
CVE-2025-21211 was published Jan 14, 2025
uTLS ServerHellos are accepted without checking TLS 1.3 downgrade canaries Moderate
GHSA-pmc3-p9hx-jq96 was published for github.com/refraction-networking/utls (Go) Apr 23, 2025
ProTip! Advisories are also available from the GraphQL API