GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
102
GitHub Actions
54
Go
4,428
Maven
5,000+
npm
5,000+
NuGet
1,088
pip
5,000+
Pub
13
RubyGems
1,129
Rust
1,506
Swift
62
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
669 advisories
Filter by severity
In _connect.BRAIN versions prior to 5.06,
the application LogPathConfig.exe is executed during...
High
Unreviewed
CVE-2026-16247
was published
Jul 20, 2026
In BRAIN2 versions prior to 3.09, the
application LogPathConfig.exe is executed during setup. As...
High
Unreviewed
CVE-2026-16246
was published
Jul 20, 2026
SurrealDB before 1.0.1 sets default table permissions to FULL instead of NONE, allowing SELECT,...
High
Unreviewed
CVE-2023-54366
was published
Jul 18, 2026
CVE-2026-40952 is a privilege misconfiguration
in the Secure Access installer for the Windows...
High
Unreviewed
CVE-2026-40952
was published
Jul 15, 2026
Incorrect default permissions issue exists in Pupsman versions prior to 3.9.0. An attacker can...
High
Unreviewed
CVE-2026-57895
was published
Jul 8, 2026
PBackupVSS.exe in Matrix42 Empirum before 25.5 and 26.x before 26.2 creates a named pipe (\\....
High
Unreviewed
CVE-2026-57919
was published
Jun 29, 2026
Incorrect default permissions in ArubaSign, affecting versions prior to v4.6.6. The vulnerability...
High
Unreviewed
CVE-2026-12602
was published
Jun 22, 2026
Insecure default settings of Portainer CE grant regular (non-admin) users privileges that allow...
High
Unreviewed
CVE-2026-33590
was published
May 28, 2026
The affected product creates a directory with insecure default permissions during administrative...
High
Unreviewed
CVE-2026-44468
was published
May 26, 2026
The affected product extracts installation files to a temporary directory with incorrect default...
High
Unreviewed
CVE-2026-44469
was published
May 26, 2026
Splinterware System Scheduler Pro 5.12 contains an insecure file permissions vulnerability that...
High
Unreviewed
CVE-2018-25359
was published
May 26, 2026
Dell PowerFlex Manager, version(s) <=4.6.2, contain(s) an Exposure of Information Through...
High
Unreviewed
CVE-2025-32749
was published
May 26, 2026
Incorrect default permissions in the installation directory for the AMD general-purpose input...
High
Unreviewed
CVE-2025-48512
was published
May 15, 2026
Incorrect default permissions in the installation directory for the AMD chipset driver could...
High
Unreviewed
CVE-2026-0432
was published
May 15, 2026
Incorrect Default Permissions in pcvisit service binary on Windows allows a low-privileged local...
High
Unreviewed
CVE-2026-0539
was published
Apr 22, 2026
HKUDS OpenHarness prior to PR #147 remediation contains an insecure default configuration...
High
Unreviewed
CVE-2026-6823
was published
Apr 21, 2026
HKUDS OpenHarness prior to PR #156 remediation exposes plugin lifecycle commands including ...
High
Unreviewed
CVE-2026-6819
was published
Apr 21, 2026
SKYSEA Client View and SKYMEC IT Manager provided by Sky Co.,LTD. configure the installation...
High
Unreviewed
CVE-2026-39454
was published
Apr 20, 2026
Missing Authorization vulnerability allows Exposure of Sensitive Information via configuration...
High
Unreviewed
CVE-2026-30811
was published
Apr 13, 2026
Samsung MagicINFO 9 Server Incorrect Default Permissions Local Privilege Escalation Vulnerability...
High
Unreviewed
CVE-2026-25203
was published
Apr 10, 2026
HCL BigFix Platform is affected by insecure permissions on private cryptographic keys. The...
High
Unreviewed
CVE-2026-21765
was published
Apr 2, 2026
The installer of RATOC RAID Monitoring Manager for Windows allows to customize the installation...
High
Unreviewed
CVE-2026-32680
was published
Mar 26, 2026
When a plugin is installed using the Arturia Software Center (MacOS), it also installs an...
High
Unreviewed
CVE-2026-24063
was published
Mar 18, 2026
Local privilege escalation due to insecure Unix socket permissions. The following products are...
High
Unreviewed
CVE-2026-28727
was published
Mar 6, 2026
UPS Multi-UPS Management Console (MUMC) version 01.06.0001 (A03) contains an Incorrect Default...
High
Unreviewed
CVE-2026-26034
was published
Mar 5, 2026
ProTip!
Advisories are also available from the
GraphQL API