GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,680
Maven
5,000+
npm
4,308
NuGet
760
pip
4,081
Pub
12
RubyGems
958
Rust
1,061
Swift
45
Unreviewed advisories
All unreviewed
5,000+
2,426 advisories
Filter by severity
Incus vulnerable to local privilege escalation through custom storage volumes
High
CVE-2025-64507
was published
for
github.com/lxc/incus
(Go)
Nov 13, 2025
A flaw was found in the integration of Active Directory and the System Security Services Daemon ...
High
Unreviewed
CVE-2025-11561
was published
Oct 9, 2025
OpenBao is Vulnerable to Privileged Operator Identity Group Root Escalation
High
CVE-2025-64761
was published
for
github.com/openbao/openbao
(Go)
Nov 24, 2025
The Tiger theme for WordPress is vulnerable to Privilege Escalation in all versions up to, and...
High
Unreviewed
CVE-2025-13680
was published
Nov 27, 2025
Improper Privilege Management vulnerability in ZTE ElasticNet UME R32 on Linux allows Accessing...
High
Unreviewed
CVE-2025-66314
was published
Nov 27, 2025
When a page's content security policy (CSP) header contains a "sandbox" directive, other...
High
Unreviewed
CVE-2017-7803
was published
May 13, 2022
NVIDIA DGX Spark GB10 contains a vulnerability in hardware resources where an attacker could...
High
Unreviewed
CVE-2025-33188
was published
Nov 25, 2025
MikroTik RouterOS stable before 6.49.7 and long-term through 6.48.6 are vulnerable to a privilege...
High
Unreviewed
CVE-2023-30799
was published
Jul 19, 2023
LXD vulnerable to a local privilege escalation through custom storage volumes
High
GHSA-3g2j-vm47-x4mj
was published
for
github.com/canonical/lxd
(Go)
Nov 13, 2025
The LifterLMS – WP LMS for eLearning, Online Courses, & Quizzes plugin for WordPress is...
High
Unreviewed
CVE-2025-11923
was published
Nov 13, 2025
Improper privilege management in Microsoft Streaming Service allows an authorized attacker to...
High
Unreviewed
CVE-2025-59514
was published
Nov 11, 2025
Improper privilege management for some Intel(R) CIP software before version WIN_DCA_2.4.0.11001...
High
Unreviewed
CVE-2025-24838
was published
Nov 11, 2025
The Mementor Core plugin for WordPress is vulnerable to Privilege Escalation in all versions up...
High
Unreviewed
CVE-2025-11168
was published
Nov 11, 2025
Inappropriate implementation in Views in Google Chrome on Windows prior to 142.0.7444.137 allowed...
High
Unreviewed
CVE-2025-12726
was published
Nov 10, 2025
An improper privilege management vulnerability was found in Looker Studio. It impacted all JDBC...
High
Unreviewed
CVE-2025-12405
was published
Nov 10, 2025
Improper privilege management during pre-MFA cookie handling in Devolutions Server 2025.3.5.0 and...
High
Unreviewed
CVE-2025-12485
was published
Nov 6, 2025
Nagios XI versions prior to 2024R1.2 contain a privilege escalation vulnerability related to...
High
Unreviewed
CVE-2024-14004
was published
Oct 31, 2025
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS...
High
Unreviewed
CVE-2024-23253
was published
Mar 8, 2024
A logic issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.4, macOS...
High
Unreviewed
CVE-2024-23276
was published
Mar 8, 2024
An issue was discovered in IdeBusDxe in Insyde InsydeH2O 5.x. Code in system management mode...
High
Unreviewed
CVE-2020-27339
was published
May 24, 2022
In SENEC Storage Box V1,V2 and V3 an unauthenticated remote attacker can obtain the devices'...
High
Unreviewed
CVE-2023-39167
was published
Dec 7, 2023
The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.6, macOS...
High
Unreviewed
CVE-2024-40781
was published
Jul 30, 2024
The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.6, macOS...
High
Unreviewed
CVE-2024-40802
was published
Jul 30, 2024
This issue was addressed through improved state management. This issue is fixed in iOS 18 and...
High
Unreviewed
CVE-2024-44147
was published
Sep 17, 2024
The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15. An app may...
High
Unreviewed
CVE-2024-40861
was published
Sep 17, 2024
ProTip!
Advisories are also available from the
GraphQL API