GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,717
Maven
5,000+
npm
4,328
NuGet
761
pip
4,105
Pub
12
RubyGems
958
Rust
1,065
Swift
45
Unreviewed advisories
All unreviewed
5,000+
90 advisories
Filter by severity
Insufficient permission validation in Checkmk 2.4.0 before version 2.4.0p16 allows low-privileged...
Moderate
Unreviewed
CVE-2025-58122
was published
Nov 18, 2025
Insufficient permission validation on multiple REST API endpoints in Checkmk 2.2.0, 2.3.0, and 2...
Moderate
Unreviewed
CVE-2025-58121
was published
Nov 18, 2025
Software installed and run as a non-privileged user may conduct improper GPU system calls to gain...
High
Unreviewed
CVE-2025-58410
was published
Nov 17, 2025
Dell Repository Manager (DRM), versions 3.4.7 and 3.4.8, contains an Improper Handling of...
High
Unreviewed
CVE-2025-45376
was published
Sep 29, 2025
Apache ZooKeeper: Insufficient Permission Check in AdminServer Snapshot/Restore Commands
Moderate
CVE-2025-58457
was published
for
org.apache.zookeeper:zookeeper
(Maven)
Sep 24, 2025
Improper handling of insufficient permissions or privileges in Windows Cloud Files Mini Filter...
High
Unreviewed
CVE-2025-50170
was published
Aug 12, 2025
Kernel software installed and running inside an untrusted/rich execution environment (REE) could...
Critical
Unreviewed
CVE-2025-6573
was published
Aug 9, 2025
Software installed and run as a non-privileged user may conduct ptrace system calls to issue...
High
Unreviewed
CVE-2025-8109
was published
Aug 4, 2025
Improper handling of insufficient permissions or privileges in Microsoft Teams allows an...
Low
Unreviewed
CVE-2025-49731
was published
Jul 8, 2025
Unrestricted access to OS file system in SFTP service in Infinera G42
version R6.1.3 allows...
Moderate
Unreviewed
CVE-2025-27024
was published
Jul 2, 2025
The target device exposes a service on a specific TCP port with a configured
endpoint. The...
High
Unreviewed
CVE-2025-27025
was published
Jul 2, 2025
Software installed and running inside a Guest VM may conduct improper GPU system calls to prevent...
Moderate
Unreviewed
CVE-2025-46708
was published
Jun 27, 2025
A improper handling of insufficient permissions or privileges in Fortinet FortiPAM 1.4.0 through...
Moderate
Unreviewed
CVE-2025-22256
was published
Jun 10, 2025
Software installed and run as a non-privileged user may conduct improper GPU system calls to...
High
Unreviewed
CVE-2025-25179
was published
Jun 2, 2025
An improper permission handling vulnerability was reported in Lenovo PC Manager that could allow...
Moderate
Unreviewed
CVE-2025-2503
was published
May 30, 2025
Yggdrasil Vulnerable to Local Privilege Escalation
High
CVE-2025-3931
was published
for
github.com/redhatinsights/yggdrasil
(Go)
May 14, 2025
Improper handling of insufficient permissions or privileges in Microsoft Dataverse allows an...
High
Unreviewed
CVE-2025-29826
was published
May 13, 2025
The issue was addressed with additional permissions checks. This issue is fixed in macOS Sequoia...
High
Unreviewed
CVE-2025-30453
was published
May 13, 2025
An authenticated user without user administrative permissions could change the administrator...
High
Unreviewed
CVE-2025-46740
was published
May 12, 2025
Vulnerability of improper authentication logic implementation in the file system module
Impact:...
High
Unreviewed
CVE-2025-46584
was published
May 6, 2025
Memory write permission bypass vulnerability in the kernel futex module
Impact: Successful...
High
Unreviewed
CVE-2025-31172
was published
Apr 7, 2025
Memory write permission bypass vulnerability in the kernel futex module
Impact: Successful...
High
Unreviewed
CVE-2025-31173
was published
Apr 7, 2025
Software installed and run as a non-privileged user may conduct improper GPU system calls to...
High
Unreviewed
CVE-2025-0468
was published
Apr 4, 2025
An Improper Handling of Insufficient Permissions or Privileges vulnerability in scripts used in B...
Moderate
Unreviewed
CVE-2024-8315
was published
Mar 25, 2025
Software installed and run as a non-privileged user may conduct improper GPU system calls to...
High
Unreviewed
CVE-2025-0478
was published
Mar 24, 2025
ProTip!
Advisories are also available from the
GraphQL API