GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,205
Erlang
31
GitHub Actions
19
Go
1,988
Maven
5,000+
npm
3,704
NuGet
661
pip
3,330
Pub
11
RubyGems
884
Rust
845
Swift
36
Unreviewed advisories
All unreviewed
5,000+
408 advisories
Filter by severity
Insecure File Permissions in Support Assistant in NCP Secure Enterprise Client before 12.22 allow...
Moderate
Unreviewed
CVE-2023-28870
was published
Dec 9, 2023
Permission management vulnerability in the module for disabling Sound Booster. Successful...
Moderate
Unreviewed
CVE-2023-6273
was published
Dec 6, 2023
Apache Superset has Incorrect Default Permissions
Moderate
CVE-2023-42501
was published
for
apache-superset
(pip)
Nov 27, 2023
A vulnerability was found in CSZCMS 1.3.0 and classified as critical. Affected by this issue is...
Moderate
Unreviewed
CVE-2023-6302
was published
Nov 27, 2023
PowerProtect Agent for File System Version 19.14 and prior, contains an incorrect default...
Moderate
Unreviewed
CVE-2023-43081
was published
Nov 22, 2023
in OpenHarmony v3.2.2 and prior versions allow a local attacker get confidential information...
Moderate
Unreviewed
CVE-2023-42774
was published
Nov 20, 2023
Insecure permissions in the setNFZEnable function of Autel Robotics EVO Nano drone v1.6.5 allows...
Moderate
Unreviewed
CVE-2023-47335
was published
Nov 16, 2023
Incorrect default permissions in some Intel Arc RGB Controller software before version 1.06 may...
Moderate
Unreviewed
CVE-2023-32638
was published
Nov 14, 2023
Incorrect default permissions in some Intel(R) Arc(TM) & Iris(R) Xe Graphics - WHQL - Windows...
Moderate
Unreviewed
CVE-2023-27305
was published
Nov 14, 2023
A vulnerability was discovered in Samba, where the flaw allows SMB clients to truncate files,...
Moderate
Unreviewed
CVE-2023-4091
was published
Nov 3, 2023
A vulnerability due to improper write protection of UEFI variables was reported in the BIOS of...
Moderate
Unreviewed
CVE-2022-4575
was published
Oct 30, 2023
Default file permissions on South River Technologies' Titan MFT and Titan SFTP servers on Linux...
Moderate
Unreviewed
CVE-2023-45690
was published
Oct 16, 2023
A flaw was found in Red Hat AMQ Broker Operator, where it displayed a password defined in...
Moderate
Unreviewed
CVE-2023-4065
was published
Sep 27, 2023
Sensitive information disclosure due to insecure folder permissions. The following products are...
Moderate
Unreviewed
CVE-2023-5042
was published
Sep 20, 2023
The version of cri-o as released for Red Hat OpenShift Container Platform 4.9.48, 4.10.31, and 4...
Moderate
Unreviewed
CVE-2022-3466
was published
Sep 15, 2023
A permissions issue was addressed with improved redaction of sensitive information. This issue is...
Moderate
Unreviewed
CVE-2023-34352
was published
Sep 6, 2023
Improper log permissions in SafeNet Authentication Service Version 3.4.0 on Windows allows an...
Moderate
Unreviewed
CVE-2023-2737
was published
Aug 16, 2023
Incorrect default permissions in the Intel(R) Support android application before version v23.02...
Moderate
Unreviewed
CVE-2023-27392
was published
Aug 11, 2023
A vulnerability exists by allowing low-privileged users to read and update the data in various...
Moderate
Unreviewed
CVE-2023-3323
was published
Jul 24, 2023
Omnis Studio 10.22.00 has incorrect access control. It advertises a feature for making Omnis...
Moderate
Unreviewed
CVE-2023-38335
was published
Jul 20, 2023
Omnis Studio 10.22.00 has incorrect access control. It advertises an irreversible feature for...
Moderate
Unreviewed
CVE-2023-38334
was published
Jul 20, 2023
In Splunk Enterprise versions below 8.1.13 and 8.2.10, the ‘createrss’ external search command...
Moderate
Unreviewed
CVE-2023-22931
was published
Jul 6, 2023
A permission issue in BigFix WebUI Insights site version 14 allows an authenticated, unprivileged...
Moderate
Unreviewed
CVE-2023-23344
was published
Jun 23, 2023
An incorrect default permission [CWE-276] vulnerability in FortiClient (Windows) versions 7.0.0...
Moderate
Unreviewed
CVE-2022-33877
was published
Jun 13, 2023
Jenkins SAML Single Sign On(SSO) Plugin missing permission checks
Moderate
CVE-2023-32996
was published
for
io.jenkins.plugins:miniorange-saml-sp
(Maven)
May 16, 2023
ProTip!
Advisories are also available from the
GraphQL API