GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,333
Erlang
31
GitHub Actions
22
Go
2,095
Maven
5,000+
npm
3,762
NuGet
678
pip
3,447
Pub
12
RubyGems
892
Rust
882
Swift
37
Unreviewed advisories
All unreviewed
5,000+
498 advisories
Filter by severity
Untrusted Search Path vulnerability in LiteSpeed Technologies OpenLiteSpeed Web Server Container...
High
Unreviewed
CVE-2022-0074
was published
Oct 28, 2022
A vulnerability was found in Redis. It has been declared as critical. This vulnerability affects...
Critical
Unreviewed
CVE-2022-3734
was published
Oct 28, 2022
Untrusted search path vulnerability in the installer of Content Transfer (for Windows) Ver.1.3...
High
Unreviewed
CVE-2022-41796
was published
Oct 24, 2022
Poetry vulnerable to Untrusted Search Path leading to Local Code Execution on Windows
High
CVE-2022-36070
was published
for
poetry
(pip)
Oct 11, 2022
Untrusted search path vulnerability in the installer of Device Software Manager prior to Ver.2.20...
High
Unreviewed
CVE-2022-36403
was published
Sep 9, 2022
Windows CSRSS Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2022-22026,...
High
Unreviewed
CVE-2022-22047
was published
Jul 13, 2022
Dell EMC PowerScale OneFS contains an untrusted search path vulnerability. This vulnerability...
Moderate
Unreviewed
CVE-2021-21562
was published
May 24, 2022
Path settings in HMIStudio component of ABB PB610 Panel Builder 600 versions 2.8.0.424 and...
High
Unreviewed
CVE-2019-18996
was published
May 24, 2022
NVIDIA GeForce Experience (prior to 3.20.1) and Windows GPU Display Driver (all versions)...
Moderate
Unreviewed
CVE-2019-5695
was published
May 24, 2022
NVIDIA Windows GPU Display Driver, all versions, contains a vulnerability in NVIDIA Control Panel...
Moderate
Unreviewed
CVE-2019-5694
was published
May 24, 2022
NVIDIA GeForce Experience, all versions prior to 3.20.1, contains a vulnerability when GameStream...
Moderate
Unreviewed
CVE-2019-5701
was published
May 24, 2022
Adobe Dreamweaver direct download installer versions 19.0 and below, 18.0 and below have an...
High
Unreviewed
CVE-2019-7956
was published
May 24, 2022
Uncontrolled search path in the Intel(R) RealSense(TM) D400 Series UWP driver for Windows 10...
High
Unreviewed
CVE-2021-33063
was published
May 24, 2022
An untrusted search path in AMD Radeon settings Installer may lead to a privilege escalation or...
High
Unreviewed
CVE-2020-12892
was published
May 24, 2022
When Octopus Server is installed using a custom folder location, folder ACLs are not set...
High
Unreviewed
CVE-2021-26556
was published
May 24, 2022
When Octopus Tentacle is installed using a custom folder location, folder ACLs are not set...
High
Unreviewed
CVE-2021-26557
was published
May 24, 2022
SupportAssist Client version 3.8 and 3.9 contains an Untrusted search path vulnerability that...
High
Unreviewed
CVE-2021-36297
was published
May 24, 2022
A DLL sideloading vulnerability in McAfee Agent for Windows prior to 5.7.4 could allow a local...
High
Unreviewed
CVE-2021-31841
was published
May 24, 2022
A DLL preloading vulnerability was reported in Lenovo Driver Management prior to version 2.9.0719...
High
Unreviewed
CVE-2021-3633
was published
May 24, 2022
Encode.pm, as distributed in Perl through 5.34.0, allows local users to gain privileges via a...
High
Unreviewed
CVE-2021-36770
was published
May 24, 2022
The OpenSSL component of the Teradici PCoIP Software Client prior to version 21.07.0 was compiled...
High
Unreviewed
CVE-2021-25699
was published
May 24, 2022
The OpenSSL component of the Teradici PCoIP Standard Agent prior to version 21.07.0 was compiled...
High
Unreviewed
CVE-2021-25698
was published
May 24, 2022
Untrusted search path vulnerability in the installers of ScanSnap Manager prior to versions V7...
High
Unreviewed
CVE-2021-20722
was published
May 24, 2022
Untrusted search path vulnerability in The Installer of Overwolf 2.168.0.n and earlier allows an...
High
Unreviewed
CVE-2021-20726
was published
May 24, 2022
GalaxyClient version 2.0.28.9 loads unsigned DLLs such as zlib1.dll, libgcc_s_dw2-1.dll and...
High
Unreviewed
CVE-2021-26807
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API