GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,640
Maven
5,000+
npm
4,265
NuGet
760
pip
4,061
Pub
12
RubyGems
956
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
5,211 advisories
Filter by severity
Mozilla Firefox before 3.0.12, and 3.5.x before 3.5.2, allows remote SOCKS5 proxy servers to...
Moderate
Unreviewed
CVE-2009-2470
was published
May 2, 2022
WordPress 2.7.1 places the username of a post's author in an HTML comment, which allows remote...
Moderate
Unreviewed
CVE-2009-2431
was published
May 2, 2022
Tor before 0.2.0.35 allows remote attackers to cause a denial of service (application crash) via...
Moderate
Unreviewed
CVE-2009-2425
was published
May 2, 2022
The CFCharacterSetInitInlineBuffer method in CoreFoundation.dll in Apple Safari 3.2.3 allows...
Moderate
Unreviewed
CVE-2009-2421
was published
May 2, 2022
Apple Safari 3.2.3 does not properly implement the file: protocol handler, which allows remote...
Moderate
Unreviewed
CVE-2009-2420
was published
May 2, 2022
Mozilla Network Security Services (NSS) before 3.12.3, Firefox before 3.0.13, Thunderbird before...
Moderate
Unreviewed
CVE-2009-2408
was published
May 2, 2022
index.php in Aardvark Topsites PHP 5.2.1 and earlier allows remote attackers to obtain sensitive...
Moderate
Unreviewed
CVE-2009-2303
was published
May 2, 2022
index.php in Aardvark Topsites PHP 5.2.0 and earlier allows remote attackers to obtain sensitive...
Moderate
Unreviewed
CVE-2009-2304
was published
May 2, 2022
The ASN.1 parser (pluto/asn1.c, libstrongswan/asn1/asn1.c, libstrongswan/asn1/asn1_parser.c) in ...
Moderate
Unreviewed
CVE-2009-2185
was published
May 2, 2022
Multiple open redirect vulnerabilities in TBDev.NET 01-01-08 allow remote attackers to redirect...
Moderate
Unreviewed
CVE-2009-2138
was published
May 2, 2022
Cisco IOS XR 3.4.0 through 3.8.1 allows remote attackers to cause a denial of service (session...
Moderate
Unreviewed
CVE-2009-2055
was published
May 2, 2022
Mozilla Firefox 3.0.10 and earlier on Linux allows remote attackers to cause a denial of service ...
Moderate
Unreviewed
CVE-2009-2044
was published
May 2, 2022
nsViewManager.cpp in Mozilla Firefox 3.0.2 through 3.0.10 allows remote attackers to cause a...
Moderate
Unreviewed
CVE-2009-2043
was published
May 2, 2022
_functions.php in cpCommerce 1.2.x, possibly including 1.2.9, sends a redirect but does not exit...
Moderate
Unreviewed
CVE-2009-1936
was published
May 2, 2022
The pci_register_iommu_region function in arch/sparc/kernel/pci_common.c in the Linux kernel...
Moderate
Unreviewed
CVE-2009-1914
was published
May 2, 2022
Visual truncation vulnerability in netwerk/dns/src/nsIDNService.cpp in Mozilla Firefox before 3.0...
Moderate
Unreviewed
CVE-2009-1834
was published
May 2, 2022
CRLF injection vulnerability in FormMail.pl in Matt Wright FormMail 1.92, and possibly earlier,...
Moderate
Unreviewed
CVE-2009-1777
was published
May 2, 2022
activeCollab 2.1 Corporate allows remote attackers to obtain sensitive information via an invalid...
Moderate
Unreviewed
CVE-2009-1773
was published
May 2, 2022
The message engine in CA ARCserve Backup r12.0 and r12.0 SP1 for Windows allows remote attackers...
Moderate
Unreviewed
CVE-2009-1761
was published
May 2, 2022
CRLF injection vulnerability in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1,...
Moderate
Unreviewed
CVE-2009-1697
was published
May 2, 2022
TYPSoft FTP Server 1.11 allows remote attackers to cause a denial of service (CPU consumption) by...
Moderate
Unreviewed
CVE-2009-1668
was published
May 2, 2022
Unrestricted file upload vulnerability in admin/uploadform.asp in Battle Blog 1.25 allows remote...
Moderate
Unreviewed
CVE-2009-1609
was published
May 2, 2022
Unrestricted file upload vulnerability in upload.php in Elkagroup Image Gallery 1.0 allows remote...
Moderate
Unreviewed
CVE-2009-1446
was published
May 2, 2022
The db interface in libc in FreeBSD 6.3, 6.4, 7.0, 7.1, and 7.2-PRERELEASE does not properly...
Moderate
Unreviewed
CVE-2009-1436
was published
May 2, 2022
Symantec Reporting Server, as used in Symantec AntiVirus (SAV) Corporate Edition 10.1 before 10.1...
Moderate
Unreviewed
CVE-2009-1432
was published
May 2, 2022
ProTip!
Advisories are also available from the
GraphQL API