GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,356
Erlang
31
GitHub Actions
22
Go
2,120
Maven
5,000+
npm
3,782
NuGet
683
pip
3,460
Pub
12
RubyGems
893
Rust
892
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
3,179 advisories
Filter by severity
The WP Foodbakery plugin for WordPress is vulnerable to privilege escalation in all versions up...
Critical
Unreviewed
CVE-2025-0180
was published
Feb 11, 2025
Vulnerability in the Oracle Outside In Technology product of Oracle Fusion Middleware (component:...
Moderate
Unreviewed
CVE-2024-21118
was published
Apr 17, 2024
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). ...
Low
Unreviewed
CVE-2024-21101
was published
Apr 17, 2024
Vulnerability in the Oracle Complex Maintenance, Repair, and Overhaul product of Oracle E...
Moderate
Unreviewed
CVE-2024-21034
was published
Apr 17, 2024
VMware Aria Operations contains a local privilege escalation vulnerability. A malicious actor...
High
Unreviewed
CVE-2024-38830
was published
Nov 26, 2024
An issue found in POWERAMP audioplayer build 925 bundle play and build 954 allows a remote...
Critical
Unreviewed
CVE-2023-27645
was published
Apr 11, 2023
ONTAP Select Deploy administration utility versions 9.12.1.x,
9.13.1.x and 9.14.1.x are...
High
Unreviewed
CVE-2024-21989
was published
Apr 17, 2024
An issue found in WHOv.1.0.28, v.1.0.30, v.1.0.32 allows an attacker to cause a escalation of...
Critical
Unreviewed
CVE-2023-27654
was published
Apr 14, 2023
An issue found in Ego Studio SuperClean v.1.1.9 and v.1.1.5 allows an attacker to gain privileges...
High
Unreviewed
CVE-2023-27651
was published
Apr 14, 2023
The Client-Server Run-time Subsystem (CSRSS) in Microsoft Windows 8.1, Windows Server 2012 Gold...
High
Unreviewed
CVE-2016-0151
was published
May 14, 2022
An issue in trojan v.2.0.0 through v.2.15.3 allows a remote attacker to escalate privileges via...
Critical
Unreviewed
CVE-2024-55215
was published
Feb 8, 2025
Improper Privilege Management vulnerability in ZTE ZXR10 1800-2S series ,ZXR10 2800-4,ZXR10 3800...
Moderate
Unreviewed
CVE-2024-22068
was published
Oct 10, 2024
An elevation of privilege vulnerability exists in the way that ws2ifsl.sys (Winsock) handles...
High
Unreviewed
CVE-2019-1215
was published
May 24, 2022
An elevation of privilege vulnerability exists in the way the Update Notification Manager handles...
Moderate
Unreviewed
CVE-2020-0638
was published
May 24, 2022
An elevation of privilege vulnerability exists in the Windows Installer when MSI packages process...
High
Unreviewed
CVE-2020-0683
was published
May 24, 2022
An elevation of privilege vulnerability exists when the Windows Universal Plug and Play (UPnP)...
High
Unreviewed
CVE-2019-1405
was published
May 24, 2022
An unprivileged network attacker could gain system privileges to provisioned Intel manageability...
Critical
Unreviewed
CVE-2017-5689
was published
May 13, 2022
smss.exe debugging subsystem in Windows NT and Windows 2000 does not properly authenticate...
High
Unreviewed
CVE-2002-0367
was published
Apr 30, 2022
A vulnerability in the SonicWall Email Security version 10.0.9.x allows an attacker to create an...
Critical
Unreviewed
CVE-2021-20021
was published
May 24, 2022
A vulnerability in Trend Micro Apex One on Microsoft Windows may allow an attacker to manipulate...
High
Unreviewed
CVE-2020-24557
was published
May 24, 2022
VMware Aria Operations for Logs contains a privilege escalation vulnerability. A malicious actor...
Moderate
Unreviewed
CVE-2025-22220
was published
Jan 30, 2025
A local privilege escalation (LPE) vulnerability in UI Desktop for Windows (Version 0.59.1.71 and...
High
Unreviewed
CVE-2023-28122
was published
Apr 19, 2023
Improper Privilege Management vulnerability in Abdul Hakeem Build App Online allows Privilege...
High
Unreviewed
CVE-2023-51479
was published
May 17, 2024
Omnissa Horizon Client for macOS contains a Local privilege escalation (LPE) Vulnerability due to...
High
Unreviewed
CVE-2024-11467
was published
Feb 5, 2025
goform/formEMR30 in Sumavision Enhanced Multimedia Router (EMR) 3.0.4.27 allows creation of...
High
Unreviewed
CVE-2020-10181
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API