GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,640
Maven
5,000+
npm
4,265
NuGet
760
pip
4,061
Pub
12
RubyGems
956
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
5,211 advisories
Filter by severity
The CLI_ISCONTAINED macro in libclamav/others.h in ClamAV before 0.95.1 allows remote attackers...
Moderate
Unreviewed
CVE-2009-1371
was published
May 2, 2022
moziloCMS 1.11 allows remote attackers to obtain sensitive information via the (1) gal[]...
Moderate
Unreviewed
CVE-2009-1369
was published
May 2, 2022
CRLF injection vulnerability in da/DA/Login in Sun Java System Delegated Administrator 6.2...
Moderate
Unreviewed
CVE-2009-1357
was published
May 2, 2022
fs/nfs/client.c in the Linux kernel before 2.6.23 does not properly initialize a certain...
Moderate
Unreviewed
CVE-2009-1336
was published
May 2, 2022
The view-source: URI implementation in Mozilla Firefox before 3.0.9, Thunderbird, and SeaMonkey...
Moderate
Unreviewed
CVE-2009-1307
was published
May 2, 2022
The Check Point High-Availability Protocol (CPHAP) dissector in Wireshark 0.9.6 through 1.0.6...
Moderate
Unreviewed
CVE-2009-1268
was published
May 2, 2022
The php_zip_make_relative_path function in php_zip.c in PHP 5.2.x before 5.2.9 allows context...
Moderate
Unreviewed
CVE-2009-1272
was published
May 2, 2022
James Stone Tunapie 2.1 allows remote attackers to execute arbitrary commands via shell...
Moderate
Unreviewed
CVE-2009-1254
was published
May 2, 2022
The vmx_set_msr function in arch/x86/kvm/vmx.c in the VMX implementation in the KVM subsystem in...
Moderate
Unreviewed
CVE-2009-1242
was published
May 2, 2022
Apple Safari 3.2.2 and 4 Beta on Windows allows remote attackers to cause a denial of service ...
Moderate
Unreviewed
CVE-2009-1233
was published
May 2, 2022
Opera 9.64 allows remote attackers to cause a denial of service (application crash) via an XML...
Moderate
Unreviewed
CVE-2009-1234
was published
May 2, 2022
Mozilla Firefox 3.0.8 and earlier 3.0.x versions allows remote attackers to cause a denial of...
Moderate
Unreviewed
CVE-2009-1232
was published
May 2, 2022
Sun Calendar Express Web Server in Sun ONE Calendar Server 6.0 and Sun Java System Calendar...
Moderate
Unreviewed
CVE-2009-1219
was published
May 2, 2022
Apache jUDDI before 2.0 allows attackers to spoof entries in log files via vectors related to...
Moderate
Unreviewed
CVE-2009-1197
was published
May 2, 2022
mod_proxy_ajp.c in the mod_proxy_ajp module in the Apache HTTP Server 2.2.11 allows remote...
Moderate
Unreviewed
CVE-2009-1191
was published
May 2, 2022
The TeX filter in Moodle 1.6 before 1.6.9+, 1.7 before 1.7.7+, 1.8 before 1.8.9, and 1.9 before 1...
Moderate
Unreviewed
CVE-2009-1171
was published
May 2, 2022
The Java Plug-in in Java SE Development Kit (JDK) and Java Runtime Environment (JRE) 6 Update 12,...
Moderate
Unreviewed
CVE-2009-1106
was published
May 2, 2022
requests/status.xml in VLC 0.9.8a allows remote attackers to cause a denial of service (stack...
Moderate
Unreviewed
CVE-2009-1045
was published
May 2, 2022
Help Viewer in Apple Mac OS X 10.4.11 and 10.5 before 10.5.7 does not verify that certain...
Moderate
Unreviewed
CVE-2009-0942
was published
May 2, 2022
Help Viewer in Apple Mac OS X 10.4.11 and 10.5 before 10.5.7 does not verify that HTML pathnames...
Moderate
Unreviewed
CVE-2009-0943
was published
May 2, 2022
The CIM server in IBM Director before 5.20.3 Service Update 2 on Windows allows remote attackers...
Moderate
Unreviewed
CVE-2009-0879
was published
May 2, 2022
CRLF injection vulnerability in the WebLink template in Fujitsu Jasmine2000 Enterprise Edition...
Moderate
Unreviewed
CVE-2009-0868
was published
May 2, 2022
The response_addname function in response.c in Daniel J. Bernstein djbdns 1.05 and earlier does...
Moderate
Unreviewed
CVE-2009-0858
was published
May 2, 2022
The shm_get_stat function in ipc/shm.c in the shm subsystem in the Linux kernel before 2.6.28.5,...
Moderate
Unreviewed
CVE-2009-0859
was published
May 2, 2022
The spnego_gss_accept_sec_context function in lib/gssapi/spnego/spnego_mech.c in MIT Kerberos 5 ...
Moderate
Unreviewed
CVE-2009-0845
was published
May 2, 2022
ProTip!
Advisories are also available from the
GraphQL API