GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,717
Maven
5,000+
npm
4,328
NuGet
761
pip
4,105
Pub
12
RubyGems
958
Rust
1,065
Swift
45
Unreviewed advisories
All unreviewed
5,000+
670 advisories
Filter by severity
An issue in Shirt Pocket's SuperDuper! 3.10 and earlier allow a local attacker to modify the...
High
Unreviewed
CVE-2025-61229
was published
Dec 1, 2025
AudioCodes Fax Server and Auto-Attendant IVR appliances versions up to and including 2.6.23...
High
Unreviewed
CVE-2025-34333
was published
Nov 19, 2025
AudioCodes Fax Server and Auto-Attendant IVR appliances versions up to and including 2.6.23...
High
Unreviewed
CVE-2025-34332
was published
Nov 19, 2025
An improper permissions vulnerability was reported in Lenovo App Store that could allow a local...
High
Unreviewed
CVE-2025-8485
was published
Nov 12, 2025
CWE-276: Incorrect Default Permissions vulnerability exists that could cause elevated system...
High
Unreviewed
CVE-2025-11567
was published
Nov 12, 2025
Incorrect default permissions in some firmware for the Intel(R) Arc(TM) B-series GPUs within Ring...
High
Unreviewed
CVE-2025-32091
was published
Nov 11, 2025
Incorrect boundary conditions in the Graphics: WebGPU component. This vulnerability affects...
High
Unreviewed
CVE-2025-13025
was published
Nov 11, 2025
Insecure default permissions in the agent of Ivanti Endpoint Manager before version 2024 SU4...
High
Unreviewed
CVE-2025-10918
was published
Nov 11, 2025
A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 26.1...
High
Unreviewed
CVE-2025-43442
was published
Nov 4, 2025
A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 26.1...
High
Unreviewed
CVE-2025-43350
was published
Nov 4, 2025
Incorrect Default Permissions vulnerability in Centreon Infra Monitoring (MBI modules) allows...
High
Unreviewed
CVE-2025-8432
was published
Oct 27, 2025
Incorrect Default Permissions vulnerability in MongoDB BI Connector ODBC driver allows Privilege...
High
Unreviewed
CVE-2025-12100
was published
Oct 23, 2025
NVIDIA Project G-Assist contains a vulnerability where an attacker might be able to escalate...
High
Unreviewed
CVE-2025-23347
was published
Oct 23, 2025
Incorrect Default Permissions vulnerability in MongoDB Atlas SQL ODBC driver on Windows allows...
High
Unreviewed
CVE-2025-11575
was published
Oct 23, 2025
The seffaflik thru 0.0.9 is vulnerable to symlink attacks due to incorrect default permissions...
High
Unreviewed
CVE-2025-61035
was published
Oct 22, 2025
ETERNUS SF provided by Fsas Technologies Inc. contains an incorrect default permissions...
High
Unreviewed
CVE-2025-62577
was published
Oct 20, 2025
MongoDB Connector for BI installation via MSI on Windows leaves ACLs unset on custom install...
High
Unreviewed
CVE-2025-11535
was published
Oct 9, 2025
NVIDIA Installer for NvAPP for Windows contains a vulnerability in the FrameviewSDK installation...
High
Unreviewed
CVE-2025-23297
was published
Oct 2, 2025
CYRISMA Sensor before 444 for Windows has an Insecure Folder and File Permissions vulnerability....
High
Unreviewed
CVE-2025-57625
was published
Sep 16, 2025
Dell PowerProtect Data Manager, Generic Application Agent, version(s) 19.19 and 19.20, contain(s)...
High
Unreviewed
CVE-2025-43725
was published
Sep 10, 2025
Dell PowerProtect Data Manager, version(s) 19.19 and 19.20, Hyper-V contain(s) an Incorrect...
High
Unreviewed
CVE-2025-43887
was published
Sep 10, 2025
An Incorrect File Handling Permission bug exists on the N-central Windows Agent and Probe that,...
High
Unreviewed
CVE-2025-10231
was published
Sep 10, 2025
Multiple i-フィルター products contain an issue with incorrect default permissions. If this...
High
Unreviewed
CVE-2025-57846
was published
Aug 27, 2025
An improper permission vulnerability was reported in Lenovo PC Manager that could allow a local...
High
Unreviewed
CVE-2025-8098
was published
Aug 18, 2025
Certain Draytek products are affected by Insecure Permissions. This affects AP903 v1.4.18 and...
High
Unreviewed
CVE-2025-44643
was published
Aug 4, 2025
ProTip!
Advisories are also available from the
GraphQL API