GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,645
Maven
5,000+
npm
4,271
NuGet
760
pip
4,065
Pub
12
RubyGems
957
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
12,729 advisories
Filter by severity
Cross-site scripting (XSS) vulnerability in ViewVC 1.1 before 1.1.5 and 1.0 before 1.0.11, when...
Low
Unreviewed
CVE-2010-0132
was published
May 2, 2022
Employee Timeclock Software 0.99 places the database password on the mysqldump command line,...
Low
Unreviewed
CVE-2010-0124
was published
May 2, 2022
Bournal before 1.4.1 allows local users to overwrite arbitrary files via a symlink attack on...
Low
Unreviewed
CVE-2010-0118
was published
May 2, 2022
Bournal before 1.4.1 on FreeBSD 8.0, when the -K option is used, places a ccrypt key on the...
Low
Unreviewed
CVE-2010-0119
was published
May 2, 2022
The on-demand scanning in Symantec AntiVirus 10.0.x and 10.1.x before MR9, AntiVirus 10.2.x, and...
Low
Unreviewed
CVE-2010-0106
was published
May 2, 2022
Unspecified vulnerability in the Application Server Control component in Oracle Fusion Middleware...
Low
Unreviewed
CVE-2010-0081
was published
May 2, 2022
The Application-Level Gateway (ALG) on the Apple Time Capsule, AirPort Extreme Base Station, and...
Low
Unreviewed
CVE-2010-0039
was published
May 2, 2022
System Security Services Daemon (SSSD) before 1.0.1, when the krb5 auth_provider is configured...
Low
Unreviewed
CVE-2010-0014
was published
May 2, 2022
net/bridge/netfilter/ebtables.c in the ebtables module in the netfilter framework in the Linux...
Low
Unreviewed
CVE-2010-0007
was published
May 2, 2022
The /etc/profile.d/60alias.sh script in the Mandriva bash package for Bash 2.05b, 3.0, 3.2, 3.2...
Low
Unreviewed
CVE-2010-0002
was published
May 2, 2022
The Web Post Protection feature in McAfee Host Data Loss Prevention (DLP) 3.x before 3.0.100.10...
Low
Unreviewed
CVE-2009-5117
was published
May 2, 2022
Pentaho BI Server 1.7.0.1062 and earlier does not set the autocomplete tag to off on web pages...
Low
Unreviewed
CVE-2009-5100
was published
May 2, 2022
IBM Tivoli Federated Identity Manager (TFIM) 6.2.0 before 6.2.0.2, when configured as an OpenID...
Low
Unreviewed
CVE-2009-5085
was published
May 2, 2022
The (1) configure and (2) config.guess scripts in GNU troff (aka groff) 1.20.1 on Openwall GNU/*...
Low
Unreviewed
CVE-2009-5082
was published
May 2, 2022
The (1) config.guess, (2) contrib/groffer/perl/groffer.pl, and (3) contrib/groffer/perl/roff2.pl...
Low
Unreviewed
CVE-2009-5081
was published
May 2, 2022
The (1) contrib/eqn2graph/eqn2graph.sh, (2) contrib/grap2graph/grap2graph.sh, and (3) contrib...
Low
Unreviewed
CVE-2009-5080
was published
May 2, 2022
IBM Tivoli Federated Identity Manager (TFIM) 6.2.0 before 6.2.0.2, when com.tivoli.am.fim...
Low
Unreviewed
CVE-2009-5084
was published
May 2, 2022
The (1) gendef.sh, (2) doc/fixinfo.sh, and (3) contrib/gdiffmk/tests/runtests.in scripts in GNU...
Low
Unreviewed
CVE-2009-5079
was published
May 2, 2022
IBM Lotus Quickr 8.1 before 8.1.0.15 services for Lotus Domino on AIX allows remote authenticated...
Low
Unreviewed
CVE-2009-5062
was published
May 2, 2022
twiddle.sh in JBoss AS 5.0 and EAP 5.0 and earlier accepts credentials as command-line arguments,...
Low
Unreviewed
CVE-2009-5066
was published
May 2, 2022
Unspecified vulnerability in IBM Lotus Quickr 8.1 before 8.1.0.14 services for Lotus Domino, when...
Low
Unreviewed
CVE-2009-5061
was published
May 2, 2022
Open Ticket Request System (OTRS) before 2.4.4 grants ticket access on the basis of single-digit...
Low
Unreviewed
CVE-2009-5055
was published
May 2, 2022
Unspecified vulnerability in IBM Lotus Quickr 8.1 before 8.1.0.11 services for Lotus Domino might...
Low
Unreviewed
CVE-2009-5060
was published
May 2, 2022
Unspecified vulnerability in IBM Lotus Quickr 8.1 before 8.1.0.10 services for Lotus Domino might...
Low
Unreviewed
CVE-2009-5059
was published
May 2, 2022
Unspecified vulnerability in IBM Lotus Quickr 8.1 before 8.1.0.5 services for Lotus Domino allows...
Low
Unreviewed
CVE-2009-5058
was published
May 2, 2022
ProTip!
Advisories are also available from the
GraphQL API