GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,097
Erlang
29
GitHub Actions
19
Go
1,925
Maven
5,000+
npm
3,657
NuGet
638
pip
3,264
Pub
10
RubyGems
873
Rust
823
Swift
35
Unreviewed advisories
All unreviewed
5,000+
990 advisories
Filter by severity
VIPRE Antivirus Plus TelFileTransfer Link Following Local Privilege Escalation Vulnerability....
High
Unreviewed
CVE-2023-32178
was published
May 3, 2024
G DATA Total Security Link Following Local Privilege Escalation Vulnerability. This vulnerability...
High
Unreviewed
CVE-2023-27347
was published
May 3, 2024
An Improper Link Resolution Before File Access ('Link Following') vulnerability in Zscaler Client...
High
Unreviewed
CVE-2024-23459
was published
May 2, 2024
An Improper Link Resolution Before File Access ('Link Following') vulnerability in Zscaler Client...
Moderate
Unreviewed
CVE-2023-41971
was published
May 2, 2024
Azure Monitor Agent Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-29989
was published
Apr 9, 2024
Microsoft Brokering File System Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-28907
was published
Apr 9, 2024
Windows File Server Resource Management Service Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-26216
was published
Apr 9, 2024
Microsoft Install Service Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-26158
was published
Apr 9, 2024
Windows Authentication Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-21447
was published
Apr 9, 2024
An arbitrary file deletion in ZSATrayManager where it protects the temporary encrypted ZApp...
High
Unreviewed
CVE-2023-41969
was published
Mar 26, 2024
Malicious directory junction can cause WiX RemoveFoldersEx to possibly delete elevated files
High
CVE-2024-29188
was published
for
WixToolset.Util.wixext
(NuGet)
Mar 25, 2024
Xbox Gaming Services Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-28916
was published
Mar 21, 2024
Microsoft Office Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-26199
was published
Mar 12, 2024
Windows Update Stack Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-21432
was published
Mar 12, 2024
Improper Link Resolution Before File Access ('Link Following') vulnerability in HYPR Workforce...
Moderate
Unreviewed
CVE-2024-0068
was published
Feb 29, 2024
Microsoft Azure File Sync Elevation of Privilege Vulnerability
Moderate
Unreviewed
CVE-2024-21397
was published
Feb 13, 2024
Azure Connected Machine Agent Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-21329
was published
Feb 13, 2024
HashiCorp Nomad vulnerable to symlink attacks
High
CVE-2024-1329
was published
for
github.com/hashicorp/nomad
(Go)
Feb 8, 2024
Dell Display Manager application, version 2.1.1.17 and prior, contain an insecure operation on...
Moderate
Unreviewed
CVE-2023-32474
was published
Feb 6, 2024
DUP framework version 4.9.4.36 and prior contains insecure operation on Windows junction/Mount...
Moderate
Unreviewed
CVE-2023-32454
was published
Feb 6, 2024
A path traversal vulnerability was found in the CPIO utility. This issue could allow a remote...
High
Unreviewed
CVE-2023-7216
was published
Feb 5, 2024
A link following vulnerability in the Trend Micro Deep Security 20.0 and Trend Micro Cloud One -...
High
Unreviewed
CVE-2023-52338
was published
Jan 23, 2024
An updater link following vulnerability in the Trend Micro Apex One agent could allow a local...
High
Unreviewed
CVE-2023-52094
was published
Jan 23, 2024
An anti-spyware engine link following vulnerability in Trend Micro Apex One could allow a local...
High
Unreviewed
CVE-2023-52091
was published
Jan 23, 2024
A security agent link following vulnerability in Trend Micro Apex One could allow a local...
High
Unreviewed
CVE-2023-52092
was published
Jan 23, 2024
ProTip!
Advisories are also available from the
GraphQL API