Skip to content

GitHub Advisory Database

Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.

108 advisories

Loading
Windows LockDown Policy (WLDP) Security Feature Bypass Vulnerability High Unreviewed
CVE-2024-38070 was published Jul 9, 2024
Azure CycleCloud Elevation of Privilege Vulnerability High Unreviewed
CVE-2024-38092 was published Jul 9, 2024
Jenkins Script Security Plugin has sandbox bypass vulnerability involving crafted constructor bodies High
CVE-2024-34144 was published for org.jenkins-ci.plugins:script-security (Maven) May 2, 2024
Internet Shortcut Files Security Feature Bypass Vulnerability High Unreviewed
CVE-2024-21412 was published Feb 13, 2024
Microsoft Office Remote Code Execution Vulnerability High Unreviewed
CVE-2024-20673 was published Feb 13, 2024
Secure Boot Security Feature Bypass Vulnerability High Unreviewed
CVE-2024-28920 was published Apr 9, 2024
SmartScreen Prompt Security Feature Bypass Vulnerability High Unreviewed
CVE-2024-29988 was published Apr 9, 2024
Intermittent HTTP policy bypass High
CVE-2024-28248 was published for github.com/cilium/cilium (Go) Mar 18, 2024
sayboras
Denial of Service in http-proxy High
GHSA-6x33-pw7p-hmpq was published for http-proxy (npm) Sep 4, 2020
chalbersma
Content-Security-Policy protection for user content disabled by Jenkins NeuVector Vulnerability Scanner Plugin High
CVE-2022-43434 was published for io.jenkins.plugins:neuvector-vulnerability-scanner (Maven) Oct 19, 2022
NotMyFault
Jenkins Katalon Plugin vulnerable to Protection Mechanism Failure High
CVE-2022-43416 was published for org.jenkins-ci.plugins:katalon (Maven) Oct 19, 2022
Unauthorized view fragment access in Jenkins High
CVE-2022-34175 was published for org.jenkins-ci.main:jenkins-core (Maven) Jun 24, 2022
NotMyFault
Jenkins Pipeline: Deprecated Groovy Libraries Plugin Protection Mechanism Failure High
CVE-2022-25183 was published for org.jenkins-ci.plugins.workflow:workflow-cps-global-lib (Maven) Feb 16, 2022
Jenkins Pipeline: Deprecated Groovy Libraries Plugin Protection Mechanism Failure High
CVE-2022-25182 was published for org.jenkins-ci.plugins.workflow:workflow-cps-global-lib (Maven) Feb 16, 2022
ProTip! Advisories are also available from the GraphQL API