GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,645
Maven
5,000+
npm
4,271
NuGet
760
pip
4,065
Pub
12
RubyGems
957
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
12,729 advisories
Filter by severity
Safari in Apple iPhone OS 1.0 through 2.2.1 and iPhone OS for iPod touch 1.1 through 2.2.1 does...
Low
Unreviewed
CVE-2009-1680
was published
May 2, 2022
The Profiles component in Apple iPhone OS 1.0 through 2.2.1 and iPhone OS for iPod touch 1.1...
Low
Unreviewed
CVE-2009-1679
was published
May 2, 2022
The Mailer component in Evolution 2.26.1 and earlier uses world-readable permissions for the ...
Low
Unreviewed
CVE-2009-1631
was published
May 2, 2022
Multiple cross-site scripting (XSS) vulnerabilities in Leap CMS 0.1.4 allow remote attackers to...
Low
Unreviewed
CVE-2009-1614
was published
May 2, 2022
img/main.cgi on the Cisco Linksys WVC54GCA wireless video camera with firmware 1.00R22 and 1...
Low
Unreviewed
CVE-2009-1556
was published
May 2, 2022
ASP.NET in Microsoft .NET Framework 2.0 SP1 and SP2 and 3.5 Gold and SP1, when ASP 2.0 is used in...
Low
Unreviewed
CVE-2009-1536
was published
May 2, 2022
Application Access Server (A-A-S) 2.0.48 stores (1) passwords and (2) the port keyword in...
Low
Unreviewed
CVE-2009-1466
was published
May 2, 2022
Cross-site scripting (XSS) vulnerability in the Create New Page form in razorCMS 0.3 RC2 and...
Low
Unreviewed
CVE-2009-1461
was published
May 2, 2022
NTRtScan.exe in Trend Micro OfficeScan Client 8.0 SP1 and 8.0 SP1 Patch 1 allows local users to...
Low
Unreviewed
CVE-2009-1435
was published
May 2, 2022
The eCryptfs support utilities (ecryptfs-utils) 73-0ubuntu6.1 on Ubuntu 9.04 stores the mount...
Low
Unreviewed
CVE-2009-1296
was published
May 2, 2022
UCM-CQ in IBM Rational ClearCase 7.0.0.x before 7.0.0.5, 7.0.1.x before 7.0.1.4, and 7.1.x before...
Low
Unreviewed
CVE-2009-1292
was published
May 2, 2022
Apport before 0.108.4 on Ubuntu 8.04 LTS, before 0.119.2 on Ubuntu 8.10, and before 1.0-0ubuntu5...
Low
Unreviewed
CVE-2009-1295
was published
May 2, 2022
Multiple cross-site scripting (XSS) vulnerabilities in Joomla! 1.5 through 1.5.9 allow remote...
Low
Unreviewed
CVE-2009-1279
was published
May 2, 2022
XScreenSaver in Sun Solaris 10 and OpenSolaris before snv_109, and Solaris 8 and 9 with GNOME 2.0...
Low
Unreviewed
CVE-2009-1276
was published
May 2, 2022
net/ipv4/udp.c in the Linux kernel before 2.6.29.1 performs an unlocking step in certain...
Low
Unreviewed
CVE-2009-1243
was published
May 2, 2022
Race condition in GNU screen 4.0.3 allows local users to create or overwrite arbitrary files via...
Low
Unreviewed
CVE-2009-1215
was published
May 2, 2022
The _dbus_validate_signature_with_reason function (dbus-marshal-validate.c) in D-Bus (aka DBus)...
Low
Unreviewed
CVE-2009-1189
was published
May 2, 2022
Buffer overflow in the util_path_encode function in udev/lib/libudev-util.c in udev before 1.4.1...
Low
Unreviewed
CVE-2009-1186
was published
May 2, 2022
IBM WebSphere Application Server (WAS) 7.0 before 7.0.0.3 uses weak permissions (777) for files...
Low
Unreviewed
CVE-2009-1173
was published
May 2, 2022
Cisco IOS XR 3.8.1 and earlier allows remote attackers to cause a denial of service (process...
Low
Unreviewed
CVE-2009-1154
was published
May 2, 2022
Unspecified vulnerability in the Password Policy component in Oracle Database 11.1.0.6 allows...
Low
Unreviewed
CVE-2009-0988
was published
May 2, 2022
IBM WebSphere MQ 6.0 before 6.0.2.8 and 7.0 before 7.0.1.0 does not properly handle long group...
Low
Unreviewed
CVE-2009-0905
was published
May 2, 2022
The SIP channel driver in Asterisk Open Source 1.4.22, 1.4.23, and 1.4.23.1; 1.6.0 before 1.6.0.6...
Low
Unreviewed
CVE-2009-0871
was published
May 2, 2022
The __secure_computing function in kernel/seccomp.c in the seccomp subsystem in the Linux kernel...
Low
Unreviewed
CVE-2009-0835
was published
May 2, 2022
The audit_syscall_entry function in the Linux kernel 2.6.28.7 and earlier on the x86_64 platform...
Low
Unreviewed
CVE-2009-0834
was published
May 2, 2022
ProTip!
Advisories are also available from the
GraphQL API