GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,331
Erlang
31
GitHub Actions
21
Go
2,093
Maven
5,000+
npm
3,756
NuGet
678
pip
3,443
Pub
12
RubyGems
892
Rust
882
Swift
37
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
473 advisories
Filter by severity
An untrusted search path vulnerability in the AprolConfigureCCServices of B&R APROL <= R 4.2....
High
Unreviewed
CVE-2024-5622
was published
Aug 29, 2024
An untrusted search path vulnerability in B&R APROL <= R 4.4-00P3 may be used by an authenticated...
Moderate
Unreviewed
CVE-2024-5623
was published
Aug 29, 2024
Dell SupportAssist for Home PCs Installer exe version 4.0.3 contains a privilege escalation...
High
Unreviewed
CVE-2024-38305
was published
Aug 21, 2024
** DISPUTED ** A vulnerability has been found in Scooter Software Beyond Compare up to 3.3.5...
High
Unreviewed
CVE-2024-7886
was published
Aug 17, 2024
Untrusted search path in the installer for Zoom Workplace Desktop App for macOS and Zoom Meeting...
Moderate
Unreviewed
CVE-2024-42439
was published
Aug 14, 2024
Dimension versions 3.4.11 and earlier are affected by an Untrusted Search Path vulnerability that...
High
Unreviewed
CVE-2024-41865
was published
Aug 14, 2024
Untrusted Search Path vulnerability in Cato Networks SDP Client on Windows allows Privilege...
High
Unreviewed
CVE-2024-6975
was published
Jul 31, 2024
Premiere Pro versions 23.6.5, 24.4.1 and earlier are affected by an Untrusted Search Path...
High
Unreviewed
CVE-2024-34123
was published
Jul 9, 2024
Microsoft Dataverse Remote Code Execution Vulnerability
High
Unreviewed
CVE-2024-35260
was published
Jun 27, 2024
Samsung Magician 8.0.0 on Windows allows an admin to escalate privileges by tampering with the...
Moderate
Unreviewed
CVE-2024-36071
was published
Jun 20, 2024
A vulnerability classified as critical was found in Intelbras InControl 2.21.56. This...
High
Unreviewed
CVE-2024-6080
was published
Jun 18, 2024
iRODS before 4.3.2 provides an msiSendMail function with a problematic dependency on the mail...
Critical
Unreviewed
CVE-2024-38462
was published
Jun 16, 2024
Microsoft SharePoint Server Remote Code Execution Vulnerability
High
Unreviewed
CVE-2024-30100
was published
Jun 11, 2024
A local low privileged attacker can use an untrusted search path in...
High
Unreviewed
CVE-2024-28133
was published
May 14, 2024
Windows Kernel Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-20693
was published
Apr 9, 2024
Lightroom Desktop versions 7.1.2 and earlier are affected by an Untrusted Search Path...
High
Unreviewed
CVE-2024-20754
was published
Mar 18, 2024
Microsoft Exchange Server Remote Code Execution Vulnerability
High
Unreviewed
CVE-2024-26198
was published
Mar 12, 2024
Windows OLE Remote Code Execution Vulnerability
High
Unreviewed
CVE-2024-21435
was published
Mar 12, 2024
This vulnerability exists in AppSamvid software due to the usage of vulnerable and outdated...
Moderate
Unreviewed
CVE-2024-25103
was published
Mar 6, 2024
Untrusted search path in some Zoom 32 bit Windows clients may allow an authenticated user to...
High
Unreviewed
CVE-2024-24697
was published
Feb 14, 2024
Cybozu KUNAI for Android 3.0.20 to 3.0.21 allows a remote unauthenticated attacker to cause a...
High
Unreviewed
CVE-2024-23304
was published
Feb 6, 2024
Microsoft Printer Metadata Troubleshooter Tool Remote Code Execution Vulnerability
High
Unreviewed
CVE-2024-21325
was published
Jan 9, 2024
Dell SupportAssist for Home PCs version 3.14.1 and prior versions contain a privilege escalation...
High
Unreviewed
CVE-2023-48670
was published
Dec 22, 2023
Path traversal in Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom SDKs for...
High
Unreviewed
CVE-2023-43586
was published
Dec 14, 2023
Multiple components of Iconics SCADA Suite are prone to a Phantom DLL loading vulnerability. This...
Moderate
Unreviewed
CVE-2023-6061
was published
Dec 8, 2023
ProTip!
Advisories are also available from the
GraphQL API