GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
40
GitHub Actions
40
Go
2,974
Maven
5,000+
npm
4,621
NuGet
788
pip
4,317
Pub
12
RubyGems
984
Rust
1,131
Swift
49
Unreviewed advisories
All unreviewed
5,000+
70 advisories
Filter by severity
A logging issue was addressed with improved data redaction. This issue is fixed in watchOS 26.3,...
High
Unreviewed
CVE-2026-20649
was published
Feb 12, 2026
Insecure Temporary File vulnerability in Altera Quartus Prime Standard
Installer (SFX)
on...
Moderate
Unreviewed
CVE-2025-14614
was published
Jan 7, 2026
Insecure Temporary File vulnerability in Altera Quartus Prime Pro
Installer (SFX)
on Windows...
Moderate
Unreviewed
CVE-2025-14612
was published
Jan 7, 2026
Robocode has an insecure temporary file creation vulnerability in the AutoExtract component
Critical
CVE-2025-14307
was published
for
net.sf.robocode:robocode.battle
(Maven)
Dec 9, 2025
Umbraco Vulnerable to Improper File Access and Credential Exposure in Dictionary Import Functionality
Moderate
CVE-2025-66625
was published
for
Umbraco.Cms
(NuGet)
Dec 9, 2025
Dell Alienware Command Center 6.x (AWCC), versions prior to 6.10.15.0, contains an Insecure...
Moderate
Unreviewed
CVE-2025-46368
was published
Nov 13, 2025
Dell Alienware Command Center 6.x (AWCC), versions prior to 6.10.15.0, contains an Insecure...
High
Unreviewed
CVE-2025-46369
was published
Nov 13, 2025
llama-index has Insecure Temporary File
High
CVE-2025-7707
was published
for
llama-index
(pip)
Oct 13, 2025
bash-git-prompt 2.6.1 through 2.7.1 insecurely uses the /tmp/git-index-private$$ file, which has...
Moderate
Unreviewed
CVE-2025-61659
was published
Sep 29, 2025
A vulnerability was detected in Mihomo Party up to 1.8.1 on macOS. Affected is the function...
Low
Unreviewed
CVE-2025-9474
was published
Aug 26, 2025
pycode-browser before version 1.0 is prone to a predictable temporary file vulnerability.
Low
Unreviewed
CVE-2015-0849
was published
Jun 27, 2025
Insecure Temporary File usage in github.com/golang/glog
Moderate
CVE-2024-45339
was published
for
github.com/golang/glog
(Go)
Jan 28, 2025
Insecure creation of temporary files allows local users on systems with non-default...
High
Unreviewed
CVE-2024-49506
was published
Nov 13, 2024
A vulnerability classified as problematic was found in chidiwilliams buzz 1.1.0. This...
Low
Unreviewed
CVE-2024-10372
was published
Oct 25, 2024
Products for macOS enables a user logged on to the system to perform a denial-of-service attack,...
Moderate
Unreviewed
CVE-2024-6654
was published
Sep 27, 2024
A vulnerability was found in GNU Nano that allows a possible privilege escalation through an...
Moderate
Unreviewed
CVE-2024-5742
was published
Jun 12, 2024
In Maxima through 5.47.0 before 51704c, the plotting facilities make use of predictable names...
Moderate
Unreviewed
CVE-2024-34490
was published
May 5, 2024
If kernel headers need to be extracted, bpftrace will attempt to load them from a temporary...
Low
Unreviewed
CVE-2024-2313
was published
Mar 11, 2024
A privacy issue was addressed with improved handling of temporary files. This issue is fixed in...
Moderate
Unreviewed
CVE-2024-23287
was published
Mar 8, 2024
Spring Cloud Contract vulnerable to local information disclosure
Low
CVE-2024-22236
was published
for
org.springframework.cloud:spring-cloud-contract-shade
(Maven)
Jan 31, 2024
Jenkins temporary uploaded file created with insecure permissions
Low
CVE-2023-43498
was published
for
org.jenkins-ci.main:jenkins-core
(Maven)
Sep 20, 2023
Active Support Possibly Discloses Locally Encrypted Files
Moderate
CVE-2023-38037
was published
for
activesupport
(RubyGems)
Aug 23, 2023
Insecure temporary file in the installer for Zoom Rooms before version 5.15.0 may allow an...
High
Unreviewed
CVE-2023-34119
was published
Jul 11, 2023
Insecure Temporary File in HuTool
High
CVE-2023-33695
was published
for
cn.hutool:hutool-core
(Maven)
Jun 13, 2023
transformers has Insecure Temporary File
Moderate
CVE-2023-2800
was published
for
transformers
(pip)
May 18, 2023
ProTip!
Advisories are also available from the
GraphQL API