GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,134
Erlang
29
GitHub Actions
19
Go
1,941
Maven
5,000+
npm
3,681
NuGet
650
pip
3,298
Pub
11
RubyGems
877
Rust
830
Swift
35
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
394 advisories
Filter by severity
Visual Studio Collector Service Denial of Service Vulnerability
Moderate
Unreviewed
CVE-2024-43603
was published
Oct 8, 2024
A link following vulnerability in the Trend Micro Apex One and Apex One as a Service Damage...
Moderate
Unreviewed
CVE-2024-36306
was published
Jun 11, 2024
An arbitrary file creation vulnerability exists in PaperCut NG/MF that only affects Windows...
Moderate
Unreviewed
CVE-2024-4712
was published
May 14, 2024
A vulnerability was found in GNU Nano that allows a possible privilege escalation through an...
Moderate
Unreviewed
CVE-2024-5742
was published
Jun 12, 2024
This issue was addressed with improved validation of symlinks. This issue is fixed in iOS 18 and...
Moderate
Unreviewed
CVE-2024-44131
was published
Sep 17, 2024
This issue was addressed with improved validation of symlinks. This issue is fixed in macOS...
Moderate
Unreviewed
CVE-2024-44178
was published
Sep 17, 2024
A vulnerability was found in Performance Co-Pilot (PCP). This flaw can only be exploited if an...
Moderate
Unreviewed
CVE-2024-45770
was published
Sep 19, 2024
An issue was discovered in Samsung Magician 8.0.0 on macOS. Because symlinks are used during the...
Moderate
Unreviewed
CVE-2024-31952
was published
May 14, 2024
Dell PowerScale OneFS versions 8.2.2.x through 9.8.0.1 contains a UNIX symbolic link (symlink)...
Moderate
Unreviewed
CVE-2024-39578
was published
Aug 31, 2024
Dell Dock Firmware and Dell Client Platform contain an Improper Link Resolution vulnerability...
Moderate
Unreviewed
CVE-2023-43078
was published
Aug 28, 2024
An issue was discovered in H2 1.4.197. Insecure handling of permissions in the backup function...
Moderate
Unreviewed
CVE-2018-14335
was published
May 13, 2022
Microsoft Windows Server Backup Elevation of Privilege Vulnerability
Moderate
Unreviewed
CVE-2024-38013
was published
Jul 9, 2024
This issue was addressed with improved validation of symlinks. This issue is fixed in macOS...
Moderate
Unreviewed
CVE-2024-27885
was published
Jun 10, 2024
Windows Container Manager Service Elevation of Privilege Vulnerability
Moderate
Unreviewed
CVE-2024-30076
was published
Jun 11, 2024
Microsoft Azure File Sync Elevation of Privilege Vulnerability
Moderate
Unreviewed
CVE-2024-35253
was published
Jun 11, 2024
Windows Themes Denial of Service Vulnerability
Moderate
Unreviewed
CVE-2024-30065
was published
Jun 11, 2024
An arbitrary file deletion vulnerability exists in PaperCut NG/MF that only affects Windows...
Moderate
Unreviewed
CVE-2024-3037
was published
May 14, 2024
NETGEAR RAX30 USB Share Link Following Information Disclosure Vulnerability. This vulnerability...
Moderate
Unreviewed
CVE-2023-34283
was published
May 3, 2024
An Improper Link Resolution Before File Access ('Link Following') vulnerability in Zscaler Client...
Moderate
Unreviewed
CVE-2023-41971
was published
May 2, 2024
Microsoft Azure File Sync Elevation of Privilege Vulnerability
Moderate
Unreviewed
CVE-2024-21397
was published
Feb 13, 2024
A link following vulnerability in the Trend Micro Apex One and Apex One as a Service agent could...
Moderate
Unreviewed
CVE-2023-32556
was published
Jun 27, 2023
The Debian pg_ctlcluster, pg_createcluster, and pg_upgradecluster scripts, as distributed in the...
Moderate
Unreviewed
CVE-2017-8806
was published
May 17, 2022
This issue was addressed with improved validation of symlinks. This issue is fixed in macOS...
Moderate
Unreviewed
CVE-2023-41968
was published
Sep 27, 2023
A website could have obscured the full screen notification by using a URL with a scheme handled...
Moderate
Unreviewed
CVE-2023-4053
was published
Aug 1, 2023
The Firefox updater created a directory writable by non-privileged users. When uninstalling...
Moderate
Unreviewed
CVE-2023-4052
was published
Aug 1, 2023
ProTip!
Advisories are also available from the
GraphQL API