GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,840
Erlang
36
GitHub Actions
33
Go
2,464
Maven
5,000+
npm
4,082
NuGet
723
pip
3,880
Pub
12
RubyGems
943
Rust
1,011
Swift
39
Unreviewed advisories
All unreviewed
5,000+
163 advisories
Filter by severity
IBM QRadar SIEM 7.5 through 7.5.0 UP13 could allow an authenticated user to escalate their...
High
Unreviewed
CVE-2025-33120
was published
Aug 22, 2025
Dell Data Lakehouse, versions prior to 1.5.0.0, contains an Execution with Unnecessary Privileges...
Moderate
Unreviewed
CVE-2025-21110
was published
Aug 14, 2025
A vulnerability was found in H3C M2 NAS V100R006. Affected by this vulnerability is an unknown...
High
Unreviewed
CVE-2025-8907
was published
Aug 13, 2025
A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions ...
High
Unreviewed
CVE-2025-40767
was published
Aug 12, 2025
ACAP applications can be executed with elevated privileges, potentially leading to privilege...
Moderate
Unreviewed
CVE-2025-3892
was published
Aug 12, 2025
SAP GUI for Windows may allow the leak of NTML hashes when specific ABAP frontend services are...
Moderate
Unreviewed
CVE-2025-42943
was published
Aug 12, 2025
Tyler Technologies ERP Pro 9 SaaS allows an authenticated user to escape the application and...
Moderate
Unreviewed
CVE-2025-55077
was published
Aug 7, 2025
IBM i 7.2, 7.3, 7.4, 7.5, and 7.6 is vulnerable to a privilege escalation caused by an invalid...
High
Unreviewed
CVE-2025-33109
was published
Jul 25, 2025
A potential privilege escalation through Sudo vulnerability has been identified in the Poly...
Moderate
Unreviewed
CVE-2025-43487
was published
Jul 23, 2025
An issue was discovered in CommScope Ruckus Unleashed prior to 200.15.6.212.14 and 200.17.7.0.139...
High
Unreviewed
CVE-2025-46116
was published
Jul 21, 2025
The Single RAN baseband OAM service is intended to run as an unprivileged service. However, it...
Moderate
Unreviewed
CVE-2025-24331
was published
Jul 2, 2025
A Local Privilege Escalation (LPE) vulnerability was found in libblockdev. Generally, the ...
High
Unreviewed
CVE-2025-6019
was published
Jun 19, 2025
IBM webMethods Integration Server 10.5, 10.7, 10.11, and 10.15 could allow a privileged user to...
High
Unreviewed
CVE-2025-36048
was published
Jun 18, 2025
IBM Security Verify Directory Container 10.0.0.0 through 10.0.3.1 could allow a local user to...
High
Unreviewed
CVE-2025-1411
was published
Jun 15, 2025
IBM Backup, Recovery and Media Services for i 7.4 and 7.5 could allow a user with the capability...
High
Unreviewed
CVE-2025-33108
was published
Jun 14, 2025
A privilege escalation vulnerability may enable a service account to elevate its privileges.
...
High
Unreviewed
CVE-2024-13090
was published
Jun 10, 2025
A vulnerability has been found in Wing FTP Server up to 7.4.3 and classified as critical....
High
Unreviewed
CVE-2025-5196
was published
May 26, 2025
IBM i 7.2, 7.3, 7.4, 7.5, and 7.6 product IBM TCP/IP Connectivity Utilities for i contains a...
High
Unreviewed
CVE-2025-33103
was published
May 17, 2025
Execution with Unnecessary Privileges vulnerability in the Pager agent of multi-agent...
Moderate
Unreviewed
CVE-2025-0921
was published
May 16, 2025
BrightSign players running BrightSign OS series 4 prior to v8.5.53.1 or
series 5 prior to v9.0...
High
Unreviewed
CVE-2025-3925
was published
May 7, 2025
Tesla Model S oFono Unnecessary Privileges Sandbox Escape Vulnerability. This vulnerability...
High
Unreviewed
CVE-2024-6030
was published
Apr 30, 2025
CWE-250: Execution with Unnecessary Privileges
High
Unreviewed
CVE-2025-23180
was published
Apr 29, 2025
CWE-250: Execution with Unnecessary Privileges
High
Unreviewed
CVE-2025-23181
was published
Apr 29, 2025
IBM Hardware Management Console - Power Systems V10.2.1030.0 and V10.3.1050.0 could allow a local...
High
Unreviewed
CVE-2025-1951
was published
Apr 22, 2025
Harden-Runner allows evasion of 'disable-sudo' policy
Moderate
CVE-2025-32955
was published
for
step-security/harden-runner
(GitHub Actions)
Apr 22, 2025
ProTip!
Advisories are also available from the
GraphQL API