GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,877
Erlang
37
GitHub Actions
38
Go
2,536
Maven
5,000+
npm
4,192
NuGet
742
pip
3,971
Pub
12
RubyGems
947
Rust
1,030
Swift
39
Unreviewed advisories
All unreviewed
5,000+
177 advisories
Filter by severity
IBM webMethods Integration Server 10.5, 10.7, 10.11, and 10.15 could allow a privileged user to...
High
Unreviewed
CVE-2025-36048
was published
Jun 18, 2025
IBM Security Verify Directory Container 10.0.0.0 through 10.0.3.1 could allow a local user to...
High
Unreviewed
CVE-2025-1411
was published
Jun 15, 2025
IBM Backup, Recovery and Media Services for i 7.4 and 7.5 could allow a user with the capability...
High
Unreviewed
CVE-2025-33108
was published
Jun 14, 2025
A privilege escalation vulnerability may enable a service account to elevate its privileges.
...
High
Unreviewed
CVE-2024-13090
was published
Jun 10, 2025
A vulnerability has been found in Wing FTP Server up to 7.4.3 and classified as critical....
High
Unreviewed
CVE-2025-5196
was published
May 26, 2025
IBM i 7.2, 7.3, 7.4, 7.5, and 7.6 product IBM TCP/IP Connectivity Utilities for i contains a...
High
Unreviewed
CVE-2025-33103
was published
May 17, 2025
Execution with Unnecessary Privileges vulnerability in the Pager agent of multi-agent...
Moderate
Unreviewed
CVE-2025-0921
was published
May 16, 2025
IBM Storage Scale 5.2.2.0 and 5.2.2.1, under certain configurations, could allow an authenticated...
High
Unreviewed
CVE-2025-1137
was published
May 10, 2025
BrightSign players running BrightSign OS series 4 prior to v8.5.53.1 or
series 5 prior to v9.0...
High
Unreviewed
CVE-2025-3925
was published
May 7, 2025
Tesla Model S oFono Unnecessary Privileges Sandbox Escape Vulnerability. This vulnerability...
High
Unreviewed
CVE-2024-6030
was published
Apr 30, 2025
CWE-250: Execution with Unnecessary Privileges
High
Unreviewed
CVE-2025-23180
was published
Apr 29, 2025
CWE-250: Execution with Unnecessary Privileges
High
Unreviewed
CVE-2025-23181
was published
Apr 29, 2025
IBM Hardware Management Console - Power Systems V10.2.1030.0 and V10.3.1050.0 could allow a local...
High
Unreviewed
CVE-2025-1951
was published
Apr 22, 2025
Harden-Runner allows evasion of 'disable-sudo' policy
Moderate
CVE-2025-32955
was published
for
step-security/harden-runner
(GitHub Actions)
Apr 22, 2025
Argo Events users can gain privileged access to the host system and cluster with EventSource and Sensor CR
Critical
CVE-2025-32445
was published
for
github.com/argoproj/argo-events
(Go)
Apr 14, 2025
A vulnerability with a privilege management mechanism in the Palo Alto Networks GlobalProtect™...
High
Unreviewed
CVE-2025-0120
was published
Apr 11, 2025
A local privilege escalation vulnerability in SonicWall NetExtender Windows (32 and 64 bit)...
Moderate
Unreviewed
CVE-2025-23009
was published
Apr 10, 2025
An improper privilege management vulnerability in the SonicWall NetExtender Windows (32 and 64...
High
Unreviewed
CVE-2025-23008
was published
Apr 10, 2025
The SSH service of PowerStation from HGiga has a Chroot Escape vulnerability, allowing attackers...
Critical
Unreviewed
CVE-2025-3364
was published
Apr 8, 2025
A privilege escalation vulnerability exists in langgenius/dify version 0.9.1. This vulnerability...
Moderate
Unreviewed
CVE-2024-11821
was published
Mar 20, 2025
Dell SmartFabric OS10 Software, version(s) 10.5.4.x, 10.5.5.x, 10.5.6.x, 10.6.0.x, contain(s) an...
High
Unreviewed
CVE-2024-48013
was published
Mar 17, 2025
Docker daemon in Brocade SANnav before SANnav 2.3.1b runs without auditing. The vulnerability...
High
Unreviewed
CVE-2024-2240
was published
Feb 14, 2025
An issue was discovered in GitLab CE/EE affecting all versions starting from 17.1 prior to 17.6.0...
Moderate
Unreviewed
CVE-2024-8266
was published
Feb 13, 2025
An issue was discovered in GitLab CE/EE affecting all versions starting from 16.4 prior to 17.5.0...
Critical
Unreviewed
CVE-2024-7102
was published
Feb 13, 2025
An improper privilege vulnerability was reported in a BIOS customization feature of Lenovo...
High
Unreviewed
CVE-2024-12673
was published
Feb 12, 2025
ProTip!
Advisories are also available from the
GraphQL API