GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,201 advisories
Filter by severity
The installation script studioexpressinstall for Teradata Studio Express 15.12.00.00 creates...
High
Unreviewed
CVE-2016-7490
was published
May 17, 2022
The abrt-hook-ccpp help program in Automatic Bug Reporting Tool (ABRT) before 2.7.1 allows local...
Moderate
Unreviewed
CVE-2015-5287
was published
May 17, 2022
kernel_crashdump in Apport before 2.19 allows local users to cause a denial of service (disk...
High
Unreviewed
CVE-2015-1338
was published
May 17, 2022
Location Framework in Apple iOS before 8.4.1 allows local users to bypass intended restrictions...
Moderate
Unreviewed
CVE-2015-3759
was published
May 17, 2022
lib/parse_ini.c in Nagios Plugins 2.0.2 allows local users to obtain sensitive information via a...
Low
Unreviewed
CVE-2014-4703
was published
May 17, 2022
The mountpoint_last function in fs/namei.c in the Linux kernel before 3.15.8 does not properly...
Moderate
Unreviewed
CVE-2014-5045
was published
May 13, 2022
The (1) mkxmltype and (2) mkdtskel scripts in XML-DT before 0.64 allow local users to overwrite...
Moderate
Unreviewed
CVE-2014-5260
was published
May 17, 2022
libodm.a in IBM AIX 6.1 and 7.1, and VIOS 2.2.x, allows local users to overwrite arbitrary files...
Moderate
Unreviewed
CVE-2014-3977
was published
May 13, 2022
acinclude.m4, as used in the configure script in PHP 5.5.13 and earlier, allows local users to...
Low
Unreviewed
CVE-2014-3981
was published
May 17, 2022
rss-newsfeed.php in Nagios Core 3.4.4, 3.5.1, and earlier, when MAGPIE_CACHE_ON is set to 1,...
Moderate
Unreviewed
CVE-2013-4214
was published
May 17, 2022
Google Chrome OS before 26.0.1410.57 relies on a Pango pango-utils.c read_config implementation...
High
Unreviewed
CVE-2013-0927
was published
May 17, 2022
(1) contrib/gforge-3.0-cronjobs.patch, (2) cronjobs/homedirs.php, (3) deb-specific/fileforge.pl, ...
Moderate
Unreviewed
CVE-2013-1423
was published
May 17, 2022
The (1) config.guess, (2) contrib/groffer/perl/groffer.pl, and (3) contrib/groffer/perl/roff2.pl...
Low
Unreviewed
CVE-2009-5081
was published
May 2, 2022
The (1) gendef.sh, (2) doc/fixinfo.sh, and (3) contrib/gdiffmk/tests/runtests.in scripts in GNU...
Low
Unreviewed
CVE-2009-5079
was published
May 2, 2022
The (1) contrib/eqn2graph/eqn2graph.sh, (2) contrib/grap2graph/grap2graph.sh, and (3) contrib...
Low
Unreviewed
CVE-2009-5080
was published
May 2, 2022
The (1) configure and (2) config.guess scripts in GNU troff (aka groff) 1.20.1 on Openwall GNU/*...
Low
Unreviewed
CVE-2009-5082
was published
May 2, 2022
The Debian GNU/Linux /etc/cron.d/php5 cron job for PHP 5.3.5 allows local users to delete...
Moderate
Unreviewed
CVE-2011-0441
was published
May 17, 2022
The FileUtils.remove_entry_secure method in Ruby 1.8.6 through 1.8.6-420, 1.8.7 through 1.8.7-330...
Moderate
Unreviewed
CVE-2011-1004
was published
May 17, 2022
FUSE, possibly 2.8.5 and earlier, allows local users to create mtab entries with arbitrary...
Moderate
Unreviewed
CVE-2010-3879
was published
May 13, 2022
elf/dl-load.c in ld.so in the GNU C Library (aka glibc or libc6) through 2.11.2, and 2.12.x...
Moderate
Unreviewed
CVE-2010-3847
was published
May 14, 2022
emesenelib/ProfileManager.py in emesene before 1.6.2 allows local users to overwrite arbitrary...
Low
Unreviewed
CVE-2010-2053
was published
May 17, 2022
MySQL before 5.1.46 allows local users to delete the data and index files of another user's...
Low
Unreviewed
CVE-2010-1626
was published
May 13, 2022
client/mount.cifs.c in mount.cifs in smbfs in Samba 3.0.22, 3.0.28a, 3.2.3, 3.3.2, 3.4.0, and 3.4...
Moderate
Unreviewed
CVE-2010-0787
was published
May 2, 2022
Bournal before 1.4.1 allows local users to overwrite arbitrary files via a symlink attack on...
Low
Unreviewed
CVE-2010-0118
was published
May 2, 2022
The pa_make_secure_dir function in core-util.c in PulseAudio 0.9.10 and 0.9.19 allows local users...
Moderate
Unreviewed
CVE-2009-1299
was published
May 2, 2022
ProTip!
Advisories are also available from the
GraphQL API