GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,746
Erlang
35
GitHub Actions
29
Go
2,319
Maven
5,000+
npm
3,955
NuGet
712
pip
3,736
Pub
12
RubyGems
920
Rust
972
Swift
38
Unreviewed advisories
All unreviewed
5,000+
54 advisories
Filter by severity
django-helpdesk Allows Sensitive Data Exposure
Moderate
CVE-2018-25111
was published
for
django-helpdesk
(pip)
May 31, 2025
Insecure inherited permissions for some Intel(R) Simics(R) Package Manager software before...
Moderate
Unreviewed
CVE-2025-22448
was published
May 13, 2025
Insecure inherited permissions in the NVM Update Utility for some Intel(R) Ethernet Network...
Moderate
Unreviewed
CVE-2025-20629
was published
May 13, 2025
Insecure inherited permissions for some Intel(R) Simics(R) Package Manager software before...
Moderate
Unreviewed
CVE-2025-20008
was published
May 13, 2025
Due to insecure file permissions in SAP BusinessObjects Business Intelligence Platform, an...
Moderate
Unreviewed
CVE-2025-31332
was published
Apr 8, 2025
Dell Wyse Management Suite, versions prior to WMS 5.1, contains an Insecure Inherited Permissions...
Moderate
Unreviewed
CVE-2025-29982
was published
Apr 2, 2025
The issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.3, macOS...
Moderate
Unreviewed
CVE-2023-28207
was published
Mar 21, 2025
IBM Robotic Process Automation 21.0.0 through 21.0.7.17 and 23.0.0 through 23.0.18 could allow a...
Moderate
Unreviewed
CVE-2024-51448
was published
Jan 18, 2025
Insecure inherited permissions for some Intel(R) CIP software before version 2.4.10852 may allow...
Moderate
Unreviewed
CVE-2024-36276
was published
Nov 13, 2024
Insecure inherited permissions for some Intel(R) DSA software before version 24.3.26.8 may allow...
Moderate
Unreviewed
CVE-2024-36294
was published
Nov 13, 2024
Insecure inherited permissions in some Intel(R) Ethernet tools and driver install software may...
High
Unreviewed
CVE-2023-33870
was published
Oct 25, 2024
Improper Preservation of Permissions in xxl-job
High
CVE-2024-42681
was published
for
com.xuxueli:xxl-job-core
(Maven)
Aug 15, 2024
Insecure inherited permissions in some Intel(R) HID Event Filter software installers before...
Moderate
Unreviewed
CVE-2024-25561
was published
Aug 14, 2024
Insecure inherited permissions in some Flexlm License Daemons for Intel(R) FPGA software before...
Moderate
Unreviewed
CVE-2024-23908
was published
Aug 14, 2024
Pulp incorrectly assigns RBAC permissions in tasks that create objects
High
CVE-2024-7143
was published
for
pulpcore
(pip)
Aug 7, 2024
Insecure permissions in kuma v2.7.0 allows attackers to access sensitive data and escalate...
High
Unreviewed
CVE-2024-36542
was published
Jul 25, 2024
Insecure permissions in external-secrets v0.9.16 allows attackers to access sensitive data and...
Critical
Unreviewed
CVE-2024-36540
was published
Jul 24, 2024
Insecure permissions in contour v1.28.3 allows attackers to access sensitive data and escalate...
Critical
Unreviewed
CVE-2024-36539
was published
Jul 24, 2024
Insecure permissions in Entrust Datacard XPS Card Printer Driver 8.4 and earlier allows...
High
Unreviewed
CVE-2024-34329
was published
Jul 22, 2024
Insecure Permissions vulnerability in lin-CMS v.0.2.0 and before allows a remote attacker to...
High
Unreviewed
CVE-2024-41601
was published
Jul 19, 2024
Apache Airflow has DAG Author Code Execution possibility in airflow-scheduler
High
CVE-2024-39877
was published
for
apache-airflow
(pip)
Jul 17, 2024
Firefox Android allowed immediate interaction with permission prompts. This could be used for...
High
Unreviewed
CVE-2024-6605
was published
Jul 9, 2024
Insecure permissions in the AdminController.AjaxSave() method of PPGo_Jobs v2.8.0 allows...
Moderate
Unreviewed
CVE-2024-36691
was published
Jun 12, 2024
This issue was addressed with improved permissions checking. This issue is fixed in macOS Sonoma...
High
Unreviewed
CVE-2024-27848
was published
Jun 10, 2024
Insecure inherited permissions in some Intel(R) XTU software before version 7.14.0.15 may allow...
Moderate
Unreviewed
CVE-2024-21835
was published
May 16, 2024
ProTip!
Advisories are also available from the
GraphQL API