GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
5,054 advisories
Filter by severity
The SSH server in (1) Cisco Service Control Engine (SCE) before 3.1.6, and (2) Icon Labs...
High
Unreviewed
CVE-2008-0534
was published
May 1, 2022
The HTTP server in Cisco Unified IP Phone 7935 and 7936 running SCCP firmware allows remote...
High
Unreviewed
CVE-2008-0527
was published
May 1, 2022
Cisco Unified IP Phone 7940, 7940G, 7960, and 7960G running SCCP firmware allows remote attackers...
High
Unreviewed
CVE-2008-0526
was published
May 1, 2022
Unrestricted file upload vulnerability in the FileUpload class running on the Symantec LiveState...
High
Unreviewed
CVE-2008-0457
was published
May 1, 2022
Unrestricted file upload vulnerability in PHP F1 Max's File Uploader allows remote attackers to...
High
Unreviewed
CVE-2008-0373
was published
May 1, 2022
Unspecified vulnerability in Funkwerk System Software before 7.4.1 PATCH 9 for certain Funkwerk...
High
Unreviewed
CVE-2008-0331
was published
May 1, 2022
Unspecified vulnerability in the Fileshare module for Drupal allows remote authenticated users...
High
Unreviewed
CVE-2008-0277
was published
May 1, 2022
Unrestricted file upload vulnerability in PhotoPost vBGallery before 2.4.2 allows remote...
High
Unreviewed
CVE-2008-0251
was published
May 1, 2022
SAP MaxDB 7.6.03 build 007 and earlier allows remote attackers to execute arbitrary commands via ...
High
Unreviewed
CVE-2008-0244
was published
May 1, 2022
Microsoft Excel 2000 SP3 through 2003 SP2, Viewer 2003, Compatibility Pack, and Office 2004 and...
High
Unreviewed
CVE-2008-0116
was published
May 1, 2022
Microsoft Works 6 File Converter, as used in Office 2003 SP2 and SP3, Works 8.0, and Works Suite...
High
Unreviewed
CVE-2008-0105
was published
May 1, 2022
Format string vulnerability in the swDebugf function in DuneApp.cpp in White_Dune 0.29 beta791...
High
Unreviewed
CVE-2008-0101
was published
May 1, 2022
Format string vulnerability in the log function in Georgia SoftWorks SSH2 Server (GSW_SSHD) 7.01...
High
Unreviewed
CVE-2008-0097
was published
May 1, 2022
The pa_drop_root function in PulseAudio 0.9.8, and a certain 0.9.9 build, does not check return...
High
Unreviewed
CVE-2008-0008
was published
May 1, 2022
Improper Input Validation in pyftpdlib
High
CVE-2007-6739
was published
for
pyftpdlib
(pip)
May 1, 2022
Menalto Gallery before 2.2.4 does not properly check for malicious file extensions during file...
High
Unreviewed
CVE-2007-6689
was published
May 1, 2022
QK SMTP Server 3 allows remote attackers to cause a denial of service (daemon crash) via a long ...
High
Unreviewed
CVE-2007-6573
was published
May 1, 2022
Unspecified vulnerability in Appian Enterprise Business Process Management (BPM) Suite 5.6 SP1...
High
Unreviewed
CVE-2007-6509
was published
May 1, 2022
The IMWeb.IMWebControl.1 ActiveX control in IMWeb.dll 7.0.0.x, and possibly IMWebControl.dll, in...
High
Unreviewed
CVE-2007-6493
was published
May 1, 2022
Hosting Controller 6.1 Hot fix 3.3 and earlier allows remote attackers to obtain login access via...
High
Unreviewed
CVE-2007-6494
was published
May 1, 2022
The IMWeb.IMWebControl.1 ActiveX control in IMWeb.dll 7.0.0.x, and possibly IMWebControl.dll, in...
High
Unreviewed
CVE-2007-6492
was published
May 1, 2022
The getRenderedEjbql method in the org.jboss.seam.framework.Query class in JBoss Seam 2.x before...
High
Unreviewed
CVE-2007-6433
was published
May 1, 2022
Unspecified vulnerability in Juniper JUNOS 7.3 through 8.4 allows remote attackers to cause a...
High
Unreviewed
CVE-2007-6372
was published
May 1, 2022
Nokia N95 cell phone with RM-159 12.0.013 firmware allows remote attackers to cause a denial of...
High
Unreviewed
CVE-2007-6371
was published
May 1, 2022
Multiple SQL injection vulnerabilities in Drupal and vbDrupal 4.7.x before 4.7.9 and 5.x before 5...
High
Unreviewed
CVE-2007-6299
was published
May 1, 2022
ProTip!
Advisories are also available from the
GraphQL API