GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,198 advisories
Filter by severity
The e_hostname function in commands.c in BitchX 1.1a allows local users to overwrite arbitrary...
Moderate
Unreviewed
CVE-2007-5839
was published
May 1, 2022
vobcopy 0.5.14 allows local users to append data to an arbitrary file, or create an arbitrary new...
Moderate
Unreviewed
CVE-2007-5718
was published
May 1, 2022
Open redirect vulnerability in command.php in SiteBar 3.3.8 allows remote attackers to redirect...
Moderate
Unreviewed
CVE-2007-5695
was published
May 1, 2022
db2dasrrm in the DB2 Administration Server (DAS) in IBM DB2 Universal Database 9.5 before Fix...
Moderate
Unreviewed
CVE-2007-5664
was published
May 1, 2022
sealert in setroubleshoot 2.0.5 allows local users to overwrite arbitrary files via a symlink...
Moderate
Unreviewed
CVE-2007-5495
was published
May 1, 2022
The web console in CA (formerly Computer Associates) eTrust ITM (Threat Manager) 8.1 allows...
Moderate
Unreviewed
CVE-2007-5437
was published
May 1, 2022
The (1) tramp-make-temp-file and (2) tramp-make-tramp-temp-file functions in Tramp 2.1.10...
Moderate
Unreviewed
CVE-2007-5377
was published
May 1, 2022
guilt 0.27 allows local users to overwrite arbitrary files via a symlink attack on a guilt.log....
Low
Unreviewed
CVE-2007-5207
was published
May 1, 2022
hugin, as used on various operating systems including SUSE openSUSE 10.2 and 10.3, allows local...
Low
Unreviewed
CVE-2007-5200
was published
May 1, 2022
cp, when running with an option to preserve symlinks on multiple OSes, allows local, user...
Moderate
Unreviewed
CVE-2007-4998
was published
May 1, 2022
The session extension in PHP before 5.2.4 might allow local users to bypass open_basedir...
Moderate
Unreviewed
CVE-2007-4652
was published
May 1, 2022
The DataLoader::doStart function in dataloader.cpp in QGit 1.5.6 and other versions up to 2pre1...
Moderate
Unreviewed
CVE-2007-4631
was published
May 1, 2022
KDE Konqueror 3.5.7 allows remote attackers to spoof the URL address bar by calling setInterval...
Moderate
Unreviewed
CVE-2007-4224
was published
May 1, 2022
CoolKey 1.1.0 allows local users to overwrite arbitrary files via a symlink attack on temporary...
Low
Unreviewed
CVE-2007-4129
was published
May 1, 2022
gforge 3.1 and 4.5.14 allows local users to truncate arbitrary files via a symlink attack on...
Low
Unreviewed
CVE-2007-3921
was published
May 1, 2022
(1) xenbaked and (2) xenmon.py in Xen 3.1 and earlier allow local users to truncate arbitrary...
Moderate
Unreviewed
CVE-2007-3919
was published
May 1, 2022
The main function in skkdic-expr.c in SKK Tools 1.2 allows local users to overwrite or delete...
Moderate
Unreviewed
CVE-2007-3916
was published
May 1, 2022
The init.d script for the X.Org X11 xfs font server on various Linux distributions might allow...
Moderate
Unreviewed
CVE-2007-3103
was published
May 1, 2022
Session fixation vulnerability in eggblog 3.1.0 and earlier allows remote attackers to hijack web...
Moderate
Unreviewed
CVE-2007-2978
was published
May 1, 2022
Certain setuid DB2 binaries in IBM DB2 before 9 Fix Pack 2 for Linux and Unix allow local users...
Moderate
Unreviewed
CVE-2007-1027
was published
May 1, 2022
openexec in OpenBase SQL before 10.0.1 allows local users to create arbitrary files via a symlink...
Low
Unreviewed
CVE-2006-5851
was published
May 1, 2022
rm_mlcache_file in bos.rte.install in AIX 5.1.0 through 5.3.0 allows local users to overwrite...
Low
Unreviewed
CVE-2006-1247
was published
May 1, 2022
GNU Gnump3d before 2.9.8 allows local users to modify or delete arbitrary files via a symlink...
Low
Unreviewed
CVE-2005-3349
was published
May 1, 2022
The (1) kantiword (kantiword.sh) and (2) gantiword (gantiword.sh) scripts in antiword 0.35 and...
Low
Unreviewed
CVE-2005-3126
was published
May 1, 2022
passwd in Directory Services in Mac OS X 10.3.x before 10.3.9 and 10.4.x before 10.4.5 allows...
Moderate
Unreviewed
CVE-2005-2714
was published
May 1, 2022
ProTip!
Advisories are also available from the
GraphQL API