Skip to content

GitHub Advisory Database

Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.

380 advisories

Loading
PIL and Pillow Vulnerable to Symlink Attack on Tmpfiles High
CVE-2014-1932 was published for pillow (pip) May 17, 2022
Windows Storage Elevation of Privilege Vulnerability High Unreviewed
CVE-2024-43551 was published Oct 8, 2024
Azure Monitor Agent Elevation of Privilege Vulnerability High Unreviewed
CVE-2024-38097 was published Oct 8, 2024
Windows Common Log File System Driver Elevation of Privilege Vulnerability High Unreviewed
CVE-2024-43501 was published Oct 8, 2024
Numpy arbitrary file write via symlink attack High
CVE-2014-1859 was published for numpy (pip) May 14, 2022
jhutchings1
Improper Link Resolution Before File Access in logilab-commons High
CVE-2014-1838 was published for logilab-common (pip) May 14, 2022
HashiCorp Nomad vulnerable to symlink attacks High
CVE-2024-1329 was published for github.com/hashicorp/nomad (Go) Feb 8, 2024
Mercurial missing symlink check High
CVE-2017-1000115 was published for mercurial (pip) May 14, 2022
Azure Network Watcher VM Agent Elevation of Privilege Vulnerability High Unreviewed
CVE-2024-38188 was published Sep 10, 2024
Azure Network Watcher VM Agent Elevation of Privilege Vulnerability High Unreviewed
CVE-2024-43470 was published Sep 10, 2024
Link Following in ansible High
CVE-2016-3096 was published for ansible (pip) Oct 10, 2018
Ansible Sandbox Escape via Symlink Attack High
CVE-2015-6240 was published for ansible (pip) May 13, 2022
Microsoft OfficePlus Elevation of Privilege Vulnerability High Unreviewed
CVE-2024-38084 was published Aug 13, 2024
Azure Connected Machine Agent Elevation of Privilege Vulnerability High Unreviewed
CVE-2024-38098 was published Aug 13, 2024
ProTip! Advisories are also available from the GraphQL API