GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,224
Erlang
31
GitHub Actions
19
Go
1,990
Maven
5,000+
npm
3,706
NuGet
661
pip
3,336
Pub
11
RubyGems
884
Rust
845
Swift
36
Unreviewed advisories
All unreviewed
5,000+
1,006 advisories
Filter by severity
Windows Storage Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-43551
was published
Oct 8, 2024
Visual Studio Collector Service Denial of Service Vulnerability
Moderate
Unreviewed
CVE-2024-43603
was published
Oct 8, 2024
PIL and Pillow Vulnerable to Symlink Attack on Tmpfiles
High
CVE-2014-1932
was published
for
pillow
(pip)
May 17, 2022
PAX Android based POS devices with PayDroid_8.1.0_Sagittarius_V11.1.50_20230614 or earlier can...
High
Unreviewed
CVE-2023-42137
was published
Jan 15, 2024
Improper Link Resolution Before File Access in pip
Moderate
CVE-2013-1888
was published
for
pip
(pip)
May 13, 2022
The Improper link resolution before file access ('Link Following') vulnerability in SonicWall...
High
Unreviewed
CVE-2024-45316
was published
Oct 11, 2024
Pyro mishandles pid files in temporary directory locations and opening the pid file as root
High
CVE-2011-2765
was published
for
pyro
(pip)
Aug 21, 2018
pyxdg Arbitrary File Overwrite via Race Condition
Low
CVE-2014-1624
was published
for
pyxdg
(pip)
May 17, 2022
An arbitrary file deletion in ZSATrayManager where it protects the temporary encrypted ZApp...
High
Unreviewed
CVE-2023-41969
was published
Mar 26, 2024
SaltStack Salt Insecure Temporary File Creation
High
CVE-2014-3563
was published
for
salt
(pip)
May 17, 2022
SoSReport Predictable Tmp File Names
High
CVE-2015-7529
was published
for
sosreport
(pip)
May 13, 2022
Improper Link Resolution Before File Access in Suds
Moderate
CVE-2013-2217
was published
for
suds
(pip)
May 14, 2022
An issue was discovered in H2 1.4.197. Insecure handling of permissions in the backup function...
Moderate
Unreviewed
CVE-2018-14335
was published
May 13, 2022
This issue was addressed with improved handling of symlinks. This issue is fixed in iOS 18.1 and...
High
Unreviewed
CVE-2024-44258
was published
Oct 28, 2024
This issue was addressed with improved validation of symlinks. This issue is fixed in macOS...
Moderate
Unreviewed
CVE-2024-44175
was published
Oct 28, 2024
This issue was addressed with improved validation of symlinks. This issue is fixed in macOS...
Moderate
Unreviewed
CVE-2024-44264
was published
Oct 28, 2024
This issue was addressed with improved handling of symlinks. This issue is fixed in iOS 18.1 and...
Moderate
Unreviewed
CVE-2024-44273
was published
Oct 28, 2024
The Improper link resolution before file access ('Link Following') vulnerability in SonicWall...
Moderate
Unreviewed
CVE-2024-45315
was published
Oct 11, 2024
A path collision and arbitrary code execution vulnerability was identified in GitHub Enterprise...
High
Unreviewed
CVE-2024-10007
was published
Nov 7, 2024
A vulnerability was found in GNU Nano that allows a possible privilege escalation through an...
Moderate
Unreviewed
CVE-2024-5742
was published
Jun 12, 2024
Link Following in github.com/containers/common
Moderate
CVE-2024-9341
was published
for
github.com/containers/common
(Go)
Oct 1, 2024
Microsoft PC Manager Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-49051
was published
Nov 12, 2024
A vulnerability was found in Performance Co-Pilot (PCP). This flaw can only be exploited if an...
Moderate
Unreviewed
CVE-2024-45770
was published
Sep 19, 2024
A code injection vulnerability in the SecuSUITE Server Web Administration Portal of SecuSUITE...
High
Unreviewed
CVE-2024-51721
was published
Nov 12, 2024
ProTip!
Advisories are also available from the
GraphQL API