GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
5,055 advisories
Filter by severity
The WYSIWYG rendering engine ("rich mail" editor) in Mozilla Thunderbird 1.0.7 and earlier allows...
High
Unreviewed
CVE-2006-0884
was published
May 3, 2022
The netfilter/iptables module in Linux before 2.6.8.1 allows remote attackers to cause a denial...
High
Unreviewed
CVE-2005-0449
was published
May 3, 2022
Buffer overflow in the Gfx::doImage function in Gfx.cc for xpdf 3.00, and other products that...
High
Unreviewed
CVE-2004-1125
was published
May 3, 2022
The WinVerifyTrust function in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows...
High
Unreviewed
CVE-2013-3900
was published
May 3, 2022
Denial of service vulnerability exists in libxmljs
High
CVE-2022-21144
was published
for
libxmljs
(npm)
May 3, 2022
A vulnerability in the HCI Modbus TCP COMPONENT of Hitachi Energy RTU500 series CMU Firmware that...
High
Unreviewed
CVE-2022-28613
was published
May 3, 2022
Adobe Reader and Acrobat 9.x before 9.3.3, and 8.x before 8.2.3 on Windows and Mac OS X, allow...
High
Unreviewed
CVE-2010-1285
was published
May 2, 2022
Emweb Wt before 3.1.1 does not validate the UTF-8 encoding of (1) form values and (2) JSignal...
High
Unreviewed
CVE-2010-1273
was published
May 2, 2022
Google Chrome 4.1 BETA before 4.1.249.1036 allows remote attackers to cause a denial of service ...
High
Unreviewed
CVE-2010-1237
was published
May 2, 2022
The sctp_process_unk_param function in net/sctp/sm_make_chunk.c in the Linux kernel 2.6.33.3 and...
High
Unreviewed
CVE-2010-1173
was published
May 2, 2022
The safe_mode implementation in PHP before 5.2.13 does not properly handle directory pathnames...
High
Unreviewed
CVE-2010-1129
was published
May 2, 2022
Unspecified vulnerability in the Windows OpenType Compact Font Format (CFF) driver in Microsoft...
High
Unreviewed
CVE-2010-0819
was published
May 2, 2022
The virtio_net_bad_features function in hw/virtio-net.c in the virtio-net driver in the Linux...
High
Unreviewed
CVE-2010-0741
was published
May 2, 2022
Aavmker4.sys in avast! 4.8 through 4.8.1368.0 and 5.0 before 5.0.418.0 running on Windows 2000...
High
Unreviewed
CVE-2010-0705
was published
May 2, 2022
WebAccess in VMware VirtualCenter 2.0.2 and 2.5, VMware Server 2.0, and VMware ESX 3.0.3 and 3.5...
High
Unreviewed
CVE-2010-0686
was published
May 2, 2022
The SIP implementation on the Cisco PGW 2200 Softswitch with software before 9.7(3)S11 allows...
High
Unreviewed
CVE-2010-0602
was published
May 2, 2022
The MGCP implementation on the Cisco PGW 2200 Softswitch with software before 9.7(3)S11 allows...
High
Unreviewed
CVE-2010-0601
was published
May 2, 2022
The SIP implementation on the Cisco PGW 2200 Softswitch with software before 9.7(3)S10 allows...
High
Unreviewed
CVE-2010-0603
was published
May 2, 2022
The Web Install ActiveX control (CSDWebInstaller) in Cisco Secure Desktop (CSD) before 3.5.841...
High
Unreviewed
CVE-2010-0589
was published
May 2, 2022
Geo++ GNCASTER 1.4.0.7 and earlier allows remote attackers to cause a denial of service ...
High
Unreviewed
CVE-2010-0552
was published
May 2, 2022
Event Monitor in Apple Mac OS X before 10.6.3 does not properly validate hostnames of SSH clients...
High
Unreviewed
CVE-2010-0500
was published
May 2, 2022
The Authenticode Signature verification functionality in cabview.dll in Cabinet File Viewer Shell...
High
Unreviewed
CVE-2010-0487
was published
May 2, 2022
The WinVerifyTrust function in Authenticode Signature Verification 5.1, 6.0, and 6.1 in Microsoft...
High
Unreviewed
CVE-2010-0486
was published
May 2, 2022
Sun Java System Web Server (aka SJWS) 7.0 Update 7 allows remote attackers to overwrite memory...
High
Unreviewed
CVE-2010-0360
was published
May 2, 2022
The encode_name macro in misc/mntent_r.c in the GNU C Library (aka glibc or libc6) 2.11.1 and...
High
Unreviewed
CVE-2010-0296
was published
May 2, 2022
ProTip!
Advisories are also available from the
GraphQL API