GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,162
Erlang
30
GitHub Actions
19
Go
1,966
Maven
5,000+
npm
3,694
NuGet
653
pip
3,311
Pub
11
RubyGems
881
Rust
831
Swift
35
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
161 advisories
Filter by severity
dxgkrnl.sys in the kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2...
High
Unreviewed
CVE-2013-3888
was published
May 13, 2022
A Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in the AgentD process of...
High
Unreviewed
CVE-2024-47494
was published
Oct 11, 2024
Windows Kernel Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-43511
was published
Oct 8, 2024
The AVGUI.exe of AVG/Avast Antivirus before versions before 24.1 can allow a local attacker to...
High
Unreviewed
CVE-2024-5803
was published
Oct 3, 2024
A TOCTOU (Time-Of-Check-Time-Of-Use) in SMM may allow
an attacker with ring0 privileges and...
High
Unreviewed
CVE-2023-20578
was published
Aug 13, 2024
Acrobat Reader versions 20.005.30636, 24.002.20965, 24.002.20964, 24.001.30123 and earlier are...
High
Unreviewed
CVE-2024-39420
was published
Aug 14, 2024
A unauthenticated Remote Code Execution (RCE) vulnerability is found in the SO Planning online...
High
Unreviewed
CVE-2024-27114
was published
Sep 11, 2024
OpenSSH 9.5 through 9.7 before 9.8 sometimes allows timing attacks against echo-off password...
High
Unreviewed
CVE-2024-39894
was published
Jul 2, 2024
In the Linux kernel, the following vulnerability has been resolved:
exec: Fix ToCToU between...
High
Unreviewed
CVE-2024-43882
was published
Aug 21, 2024
The total size of the user-provided nmreq to nmreq_copyin() was first computed and then trusted...
High
Unreviewed
CVE-2022-23084
was published
Feb 15, 2024
A potential Time-of-Check to Time-of Use (TOCTOU) vulnerability has been identified in the HP...
High
Unreviewed
CVE-2022-27540
was published
Jun 29, 2024
There is a race condition in the 'replaced executable' detection that, with the correct local...
High
Unreviewed
CVE-2021-3899
was published
Jun 3, 2024
Microsoft Outlook Security Feature Bypass Vulnerability
High
Unreviewed
CVE-2023-35311
was published
Jul 11, 2023
Acrobat Reader versions 20.005.30636, 24.002.20965, 24.002.20964, 24.001.30123 and earlier are...
High
Unreviewed
CVE-2024-39425
was published
Aug 14, 2024
Windows Kernel-Mode Driver Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-38186
was published
Aug 13, 2024
Windows Kernel Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-38153
was published
Aug 13, 2024
Time-of-check Time-of-use (TOCTOU) race condition in pg_dump in PostgreSQL allows an object...
High
Unreviewed
CVE-2024-7348
was published
Aug 8, 2024
Race condition in the installer for some Zoom Apps and SDKs for Windows before version 6.0.0 may...
High
Unreviewed
CVE-2024-27238
was published
Jul 15, 2024
An issue was discovered in HTTP2 in Qt before 5.15.18, 6.x before 6.2.13, 6.3.x through 6.5.x...
High
Unreviewed
CVE-2024-39936
was published
Jul 4, 2024
A Time-of-Check Time-Of-Use vulnerability in the Trend Micro Apex One and Apex One as a Service...
High
Unreviewed
CVE-2024-36304
was published
Jun 11, 2024
An issue was discovered in Alcatel-Lucent ALE NOE deskphones through 86x8_NOE-R300.1.40.12.4180...
High
Unreviewed
CVE-2024-29149
was published
May 7, 2024
A Race Condition (TOCTOU) vulnerability in web component of Ivanti Avalanche before 6.4.3 allows...
High
Unreviewed
CVE-2024-24993
was published
Apr 19, 2024
A Race Condition (TOCTOU) vulnerability in web component of Ivanti Avalanche before 6.4.3 allows...
High
Unreviewed
CVE-2024-24995
was published
Apr 19, 2024
Windows Kernel-Mode Driver Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-30084
was published
Jun 11, 2024
Windows Kernel Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-30099
was published
Jun 11, 2024
ProTip!
Advisories are also available from the
GraphQL API