GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,386
Erlang
33
GitHub Actions
22
Go
2,141
Maven
5,000+
npm
3,803
NuGet
687
pip
3,480
Pub
12
RubyGems
897
Rust
898
Swift
38
Unreviewed advisories
All unreviewed
5,000+
2,537 advisories
Filter by severity
Improper Access Control in Imagine Cup allows an authorized attacker to elevate privileges over a...
High
Unreviewed
CVE-2024-38204
was published
Oct 16, 2024
In Splunk Enterprise versions 9.3.0, 9.2.3, and 9.1.6, a low-privileged user that does not hold...
Moderate
Unreviewed
CVE-2024-45734
was published
Oct 14, 2024
In Splunk Enterprise versions below 9.2.3 and 9.1.6, and Splunk Secure Gateway versions on Splunk...
Moderate
Unreviewed
CVE-2024-45735
was published
Oct 14, 2024
Improper access control in some Intel(R) Thunderbolt(TM) DCH drivers for Windows before version...
Low
Unreviewed
CVE-2023-27303
was published
Oct 10, 2024
Improper access control in some Intel(R) Thunderbolt(TM) DCH drivers for Windows before version...
Moderate
Unreviewed
CVE-2023-27301
was published
Oct 10, 2024
Improper access control in some Intel(R) Thunderbolt(TM) DCH drivers for Windows before version...
Moderate
Unreviewed
CVE-2023-26585
was published
Oct 10, 2024
Improper access control in some Intel(R) Thunderbolt(TM) DCH drivers for Windows before version...
Low
Unreviewed
CVE-2023-26596
was published
Oct 10, 2024
Improper access control in some Intel(R) Thunderbolt(TM) DCH drivers for Windows before version...
Moderate
Unreviewed
CVE-2023-24481
was published
Oct 10, 2024
Improper access control in some Intel(R) Thunderbolt(TM) DCH drivers for Windows before version...
High
Unreviewed
CVE-2023-25777
was published
Oct 10, 2024
Improper access control in some Intel(R) Thunderbolt(TM) DCH drivers for Windows before version...
Moderate
Unreviewed
CVE-2023-22848
was published
Oct 10, 2024
Magento Open Source Improper Access Control vulnerability
Moderate
CVE-2024-45135
was published
for
magento/community-edition
(Composer)
Oct 10, 2024
Magento Open Source Information Exposure vulnerability
Moderate
CVE-2024-45133
was published
for
magento/community-edition
(Composer)
Oct 10, 2024
Magento Open Source Improper Access Control vulnerability
Low
CVE-2024-45149
was published
for
magento/community-edition
(Composer)
Oct 10, 2024
Magento Open Source Improper Access Control vulnerability
Moderate
CVE-2024-45122
was published
for
magento/community-edition
(Composer)
Oct 10, 2024
Magento Open Source Improper Access Control vulnerability
Moderate
CVE-2024-45124
was published
for
magento/community-edition
(Composer)
Oct 10, 2024
Magento Open Source Improper Access Control vulnerability
High
CVE-2024-45118
was published
for
magento/community-edition
(Composer)
Oct 10, 2024
Magento Open Source Improper Access Control vulnerability
Moderate
CVE-2024-45129
was published
for
magento/community-edition
(Composer)
Oct 10, 2024
Magento Open Source Improper Access Control vulnerability
Moderate
CVE-2024-45121
was published
for
magento/community-edition
(Composer)
Oct 10, 2024
Magento Open Source Improper Access Control vulnerability
Moderate
CVE-2024-45130
was published
for
magento/community-edition
(Composer)
Oct 10, 2024
Lack of access control in ChallengeSolves (/api/v1/challenges/<challenge id>/solves) of CTFd v2.0...
Moderate
Unreviewed
CVE-2024-42988
was published
Oct 9, 2024
Visual C++ Redistributable Installer Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-43590
was published
Oct 8, 2024
Insecure permissions in the Bluetooth Low Energy (BLE) component of Fire-Boltt Artillery Smart...
High
Unreviewed
CVE-2024-46539
was published
Oct 8, 2024
Microsoft SharePoint Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-43503
was published
Oct 8, 2024
Windows Remote Desktop Services Tampering Vulnerability
Moderate
Unreviewed
CVE-2024-43456
was published
Oct 8, 2024
Vulnerability in Distro Linux Workbooth v2.5 that allows to escalate privileges to the root user...
High
Unreviewed
CVE-2024-9576
was published
Oct 7, 2024
ProTip!
Advisories are also available from the
GraphQL API