GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,354
Erlang
31
GitHub Actions
22
Go
2,120
Maven
5,000+
npm
3,779
NuGet
681
pip
3,460
Pub
12
RubyGems
892
Rust
888
Swift
38
Unreviewed advisories
All unreviewed
5,000+
420 advisories
Filter by severity
An issue found in Wondershare Technology Co.,Ltd Creative Centerr v.1.0.8 allows a remote...
High
Unreviewed
CVE-2023-27771
was published
Apr 4, 2023
Creative Cloud version 5.9.1 (and earlier) is affected by an Untrusted Search Path vulnerability...
High
Unreviewed
CVE-2023-26358
was published
Mar 22, 2023
Untrusted search path vulnerability in ELECOM Camera Assistant 1.00 and QuickFileDealer Ver.1.2.1...
High
Unreviewed
CVE-2023-22368
was published
Feb 15, 2023
A vulnerability has been identified in TIA Multiuser Server V14 (All versions), TIA Multiuser...
High
Unreviewed
CVE-2022-35868
was published
Feb 14, 2023
A flaw was found in libXpm. When processing files with .Z or .gz extensions, the library calls...
High
Unreviewed
CVE-2022-4883
was published
Feb 7, 2023
A privilege escalation vulnerability exists in the sudo functionality of OpenStack Kolla git...
High
Unreviewed
CVE-2022-38060
was published
Dec 21, 2022
mDNSResponder.exe is vulnerable to DLL Sideloading attack. Executable improperly specifies how to...
High
Unreviewed
CVE-2022-23748
was published
Nov 18, 2022
A Untrusted Search Path vulnerability in openldap2 of openSUSE Factory allows local attackers...
High
Unreviewed
CVE-2022-31253
was published
Nov 9, 2022
Untrusted Search Path vulnerability in LiteSpeed Technologies OpenLiteSpeed Web Server Container...
High
Unreviewed
CVE-2022-0074
was published
Oct 28, 2022
Untrusted search path vulnerability in the installer of Content Transfer (for Windows) Ver.1.3...
High
Unreviewed
CVE-2022-41796
was published
Oct 24, 2022
Poetry vulnerable to Untrusted Search Path leading to Local Code Execution on Windows
High
CVE-2022-36070
was published
for
poetry
(pip)
Oct 11, 2022
Untrusted search path vulnerability in the installer of Device Software Manager prior to Ver.2.20...
High
Unreviewed
CVE-2022-36403
was published
Sep 9, 2022
Windows CSRSS Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2022-22026,...
High
Unreviewed
CVE-2022-22047
was published
Jul 13, 2022
Path settings in HMIStudio component of ABB PB610 Panel Builder 600 versions 2.8.0.424 and...
High
Unreviewed
CVE-2019-18996
was published
May 24, 2022
Adobe Dreamweaver direct download installer versions 19.0 and below, 18.0 and below have an...
High
Unreviewed
CVE-2019-7956
was published
May 24, 2022
Uncontrolled search path in the Intel(R) RealSense(TM) D400 Series UWP driver for Windows 10...
High
Unreviewed
CVE-2021-33063
was published
May 24, 2022
An untrusted search path in AMD Radeon settings Installer may lead to a privilege escalation or...
High
Unreviewed
CVE-2020-12892
was published
May 24, 2022
When Octopus Tentacle is installed using a custom folder location, folder ACLs are not set...
High
Unreviewed
CVE-2021-26557
was published
May 24, 2022
When Octopus Server is installed using a custom folder location, folder ACLs are not set...
High
Unreviewed
CVE-2021-26556
was published
May 24, 2022
SupportAssist Client version 3.8 and 3.9 contains an Untrusted search path vulnerability that...
High
Unreviewed
CVE-2021-36297
was published
May 24, 2022
A DLL sideloading vulnerability in McAfee Agent for Windows prior to 5.7.4 could allow a local...
High
Unreviewed
CVE-2021-31841
was published
May 24, 2022
A DLL preloading vulnerability was reported in Lenovo Driver Management prior to version 2.9.0719...
High
Unreviewed
CVE-2021-3633
was published
May 24, 2022
Encode.pm, as distributed in Perl through 5.34.0, allows local users to gain privileges via a...
High
Unreviewed
CVE-2021-36770
was published
May 24, 2022
The OpenSSL component of the Teradici PCoIP Software Client prior to version 21.07.0 was compiled...
High
Unreviewed
CVE-2021-25699
was published
May 24, 2022
The OpenSSL component of the Teradici PCoIP Standard Agent prior to version 21.07.0 was compiled...
High
Unreviewed
CVE-2021-25698
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API