GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
102
GitHub Actions
54
Go
4,428
Maven
5,000+
npm
5,000+
NuGet
1,088
pip
5,000+
Pub
13
RubyGems
1,129
Rust
1,506
Swift
62
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
501 advisories
Filter by severity
A container privilege escalation flaw was found in certain Ansible Automation Platform images....
Moderate
Unreviewed
CVE-2025-57847
was published
Apr 8, 2026
A container privilege escalation flaw was found in certain Multi-Cloud Object Gateway Core images...
Moderate
Unreviewed
CVE-2025-8766
was published
Mar 13, 2026
vFairs 3.3 is affected by Insecure Permissions. Any user logged in to a vFairs virtual conference...
Moderate
Unreviewed
CVE-2020-26679
was published
May 24, 2022
In JetBrains YouTrack before 2026.2.16593 default role configuration exposed excessive user...
Moderate
Unreviewed
CVE-2026-57924
was published
Jun 26, 2026
Nuxt 4.0.0 before 4.4.7 and 3.18.0 before 3.21.7, when running the development server (nuxt dev)...
Moderate
Unreviewed
CVE-2026-56301
was published
Jun 23, 2026
In various locations in SystemUI, there is a possible permission bypass due to an unsafe...
Moderate
Unreviewed
CVE-2020-0415
was published
May 24, 2022
Netskope is notified about a potential gap in its Netskoped Client for Windows systems where a...
Moderate
Unreviewed
CVE-2025-15642
was published
Jun 17, 2026
Incorrect default permissions issue exists in Optical Disc Archive Software for Windows 5.5.3 and...
Moderate
Unreviewed
CVE-2026-50255
was published
Jun 16, 2026
Incorrect default permissions in Kiro IDE on macOS and Linux before version 0.11.133 could expose...
Moderate
Unreviewed
CVE-2026-11931
was published
Jun 15, 2026
Incorrect default permissions vulnerability in Progress Software MOVEit Automation allows...
Moderate
Unreviewed
CVE-2026-8487
was published
May 20, 2026
Insecure default configuration state of DDR5 memory module by AGESA Bootloader Firmware could...
Moderate
Unreviewed
CVE-2025-48516
was published
May 15, 2026
Hiseeu C90 v5.7.15 is vulnerable to Insecure Permissions. The UART bootloader is accessible when...
Moderate
Unreviewed
CVE-2026-36742
was published
May 13, 2026
Incorrect default permissions in FactoryCamera prior to SMR May-2026 Release 1 allows local...
Moderate
Unreviewed
CVE-2026-21015
was published
May 13, 2026
Incorrect default permissions for some Intel(R) NPU Driver software installers before version 32...
Moderate
Unreviewed
CVE-2026-20718
was published
May 12, 2026
Wazuh Manager authd service in wazuh-manager packages through version 4.7.3 contains an improper...
Moderate
Unreviewed
CVE-2026-32983
was published
Mar 27, 2026
Incorrect default permission in Galaxy Wearable prior to version 2.2.68.26 allows local attackers...
Moderate
Unreviewed
CVE-2026-21013
was published
Apr 13, 2026
A container privilege escalation flaw was found in certain Multicluster Engine for Kubernetes...
Moderate
Unreviewed
CVE-2025-57851
was published
Apr 8, 2026
A container privilege escalation flaw was found in certain Red Hat Process Automation Manager...
Moderate
Unreviewed
CVE-2025-58713
was published
Apr 8, 2026
A container privilege escalation flaw was found in certain OpenShift Update Service (OSUS) images...
Moderate
Unreviewed
CVE-2025-57854
was published
Apr 8, 2026
A container privilege escalation flaw was found in certain Web Terminal images. This issue stems...
Moderate
Unreviewed
CVE-2025-57853
was published
Apr 8, 2026
Incorrect Default Permissions vulnerability in AIRBUS PSS TETRA Connectivity Server on Windows...
Moderate
Unreviewed
CVE-2025-7024
was published
Apr 3, 2026
A permissions issue was addressed to help ensure Personas are always protected This issue is...
Moderate
Unreviewed
CVE-2024-23295
was published
Mar 8, 2024
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS...
Moderate
Unreviewed
CVE-2024-23201
was published
Mar 8, 2024
In the Drupal 7 Internationalization (i18n) module, the i18n_node submodule allows a user with...
Moderate
Unreviewed
CVE-2026-0748
was published
Mar 27, 2026
Wazuh Manager authd service in wazuh-manager packages through version 4.7.3 contains an improper...
Moderate
Unreviewed
CVE-2025-15615
was published
Mar 27, 2026
ProTip!
Advisories are also available from the
GraphQL API