GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,717
Maven
5,000+
npm
4,328
NuGet
761
pip
4,105
Pub
12
RubyGems
958
Rust
1,065
Swift
45
Unreviewed advisories
All unreviewed
5,000+
629 advisories
Filter by severity
IBM i 7.2, 7.3, 7.4, and 7.5 could allow a user with the capability to compile or restore a...
High
Unreviewed
CVE-2024-55898
was published
Feb 24, 2025
Trend Micro HouseCall for Home Networks version 5.3.1302 and below contains an uncontrolled...
High
Unreviewed
CVE-2022-28339
was published
Feb 22, 2025
ONLYOFFICE Docs through 7.3 on certain Linux distributions allows local users to gain privileges...
High
Unreviewed
CVE-2022-48422
was published
Mar 19, 2023
A vulnerability was reported where through modifying the scan variables, an authenticated user in...
High
Unreviewed
CVE-2022-4313
was published
Mar 16, 2023
An Uncontrolled Search Path Element vulnerability exists which could allow a malicious actor to...
High
Unreviewed
CVE-2024-10930
was published
Mar 4, 2025
Uncontrolled search path element vulnerability exists in pg_ivm versions prior to 1.5.1. When...
High
Unreviewed
CVE-2023-23554
was published
Mar 7, 2023
Uncontrolled search path element in Visual Studio Code allows an authorized attacker to elevate...
High
Unreviewed
CVE-2025-26631
was published
Mar 11, 2025
Uncontrolled search path element in Visual Studio allows an authorized attacker to elevate...
High
Unreviewed
CVE-2025-25003
was published
Mar 11, 2025
Uncontrolled search path element in Visual Studio allows an authorized attacker to elevate...
High
Unreviewed
CVE-2025-24998
was published
Mar 11, 2025
Wondershare filmora 9.2.11 is affected by Trojan Dll hijacking leading to privilege escalation.
High
Unreviewed
CVE-2020-23438
was published
Mar 4, 2025
A vulnerability in the Tail-f High Availability Cluster Communications (HCC) function pack of...
High
Unreviewed
CVE-2024-20366
was published
May 15, 2024
Claris International has fixed a dylib hijacking vulnerability in the FileMaker Pro.app and...
High
Unreviewed
CVE-2023-42920
was published
Mar 19, 2024
Improper access control in Visual Studio allows an authorized attacker to elevate privileges...
High
Unreviewed
CVE-2025-29802
was published
Apr 8, 2025
There is a DLL hijacking vulnerability due to an uncontrolled search path that exists in NI...
High
Unreviewed
CVE-2025-2629
was published
Apr 9, 2025
There is a DLL hijacking vulnerability due to an uncontrolled search path that exists in NI...
High
Unreviewed
CVE-2025-2630
was published
Apr 9, 2025
Uncontrolled search path element in Visual Studio Tools for Applications and SQL Server...
High
Unreviewed
CVE-2025-29803
was published
Apr 12, 2025
If Firefox was installed to a world-writable directory, a local privilege escalation could occur...
High
Unreviewed
CVE-2022-22736
was published
Dec 22, 2022
Uncontrolled Search Path Element vulnerability in OpenText Secure Content Manager on Windows...
High
Unreviewed
CVE-2024-12530
was published
Apr 17, 2025
AVEVA Software Platform Common Services (PCS) Portal versions 4.5.2, 4.5.1, 4.5.0, and 4.4.6 are...
High
Unreviewed
CVE-2021-38410
was published
Jul 28, 2022
Code injection vulnerability in Trend Micro Maximum Security 11.0 (and earlier), Internet...
High
Unreviewed
CVE-2017-5565
was published
May 13, 2022
Code injection vulnerability in AVG Ultimate 17.1 (and earlier), AVG Internet Security 17.1 (and...
High
Unreviewed
CVE-2017-5566
was published
May 13, 2022
Code injection vulnerability in Avast Premier 12.3 (and earlier), Internet Security 12.3 (and...
High
Unreviewed
CVE-2017-5567
was published
May 13, 2022
Code injection vulnerability in Avira Total Security Suite 15.0 (and earlier), Optimization Suite...
High
Unreviewed
CVE-2017-6417
was published
May 13, 2022
A DLL Hijacking vulnerability in the programming software in Schneider Electric's SoMachine HVAC...
High
Unreviewed
CVE-2017-7966
was published
May 13, 2022
Multiple untrusted search path vulnerabilities in installer in Synology Photo Station Uploader...
High
Unreviewed
CVE-2017-11159
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API