GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,638
Maven
5,000+
npm
4,264
NuGet
760
pip
4,060
Pub
12
RubyGems
956
Rust
1,056
Swift
45
Unreviewed advisories
All unreviewed
5,000+
5,211 advisories
Filter by severity
Wireshark (formerly Ethereal) 0.9.7 through 1.0.2 allows attackers to cause a denial of service ...
Moderate
Unreviewed
CVE-2008-3932
was published
May 2, 2022
CRLF injection vulnerability in Sys.Web in Mono 2.0 and earlier allows remote attackers to inject...
Moderate
Unreviewed
CVE-2008-3906
was published
May 2, 2022
The open-in-browser command in newsbeuter before 1.1 allows remote attackers to execute arbitrary...
Moderate
Unreviewed
CVE-2008-3907
was published
May 2, 2022
The ApiThread function in the firewall service (aka TmPfw.exe) in Trend Micro Network Security...
Moderate
Unreviewed
CVE-2008-3864
was published
May 2, 2022
A "logic error" in Cisco IOS 12.0 through 12.4, when a Multiprotocol Label Switching (MPLS) VPN...
Moderate
Unreviewed
CVE-2008-3803
was published
May 2, 2022
Swfdec 0.6 before 0.6.8 allows remote attackers to cause a denial of service (application crash)...
Moderate
Unreviewed
CVE-2008-3796
was published
May 2, 2022
The REXML module in Ruby 1.8.6 through 1.8.6-p287, 1.8.7 through 1.8.7-p72, and 1.9 allows...
Moderate
Unreviewed
CVE-2008-3790
was published
May 2, 2022
Realtime Internet Band Rehearsal Low-Latency (Internet) Connection tool (llcon) before 2.1.2...
Moderate
Unreviewed
CVE-2008-3766
was published
May 2, 2022
hcmon.sys in VMware Workstation 6.5.1 and earlier, VMware Player 2.5.1 and earlier, VMware ACE 2...
Moderate
Unreviewed
CVE-2008-3761
was published
May 2, 2022
Variable overwrite vulnerability in libsecure.php in Turnkey PHP Live Helper 2.0.1 and earlier,...
Moderate
Unreviewed
CVE-2008-3763
was published
May 2, 2022
An unspecified ISAPI extension in VMware Server before 1.0.7 build 108231 allows remote attackers...
Moderate
Unreviewed
CVE-2008-3697
was published
May 2, 2022
The decryption function in Flagship Industries Ventrilo 3.0.2 and earlier allows remote attackers...
Moderate
Unreviewed
CVE-2008-3680
was published
May 2, 2022
Unspecified vulnerability in the IMAP server in hMailServer 4.4.1 allows remote authenticated...
Moderate
Unreviewed
CVE-2008-3676
was published
May 2, 2022
PHP 4.4.x before 4.4.9, and 5.x through 5.2.6, when used as a FastCGI module, allows remote...
Moderate
Unreviewed
CVE-2008-3660
was published
May 2, 2022
The IMAP server in NoticeWare Email Server NG 4.6.3 and earlier allows remote attackers to cause...
Moderate
Unreviewed
CVE-2008-3607
was published
May 2, 2022
Skulltag before 0.97d2-RC6 allows remote attackers to cause a denial of service (NULL pointer...
Moderate
Unreviewed
CVE-2008-3597
was published
May 2, 2022
HydraIRC 0.3.164 and earlier allows remote attackers to cause a denial of service (NULL pointer...
Moderate
Unreviewed
CVE-2008-3578
was published
May 2, 2022
vncviewer.exe in RealVNC Windows Client 4.1.2.0 allows remote VNC servers to cause a denial of...
Moderate
Unreviewed
CVE-2008-3493
was published
May 2, 2022
America's Army (aka AA or Army Game Project) 2.8.3.1 and earlier allows remote attackers to cause...
Moderate
Unreviewed
CVE-2008-3492
was published
May 2, 2022
The content layout component in Mozilla Firefox 3.0 and 3.0.1 allows remote attackers to cause a...
Moderate
Unreviewed
CVE-2008-3444
was published
May 2, 2022
Unreal Tournament 3 1.3beta4 and earlier allows remote attackers to cause a denial of service ...
Moderate
Unreviewed
CVE-2008-3410
was published
May 1, 2022
Unreal Tournament 2004 (UT2004) 3369 and earlier allows remote attackers to cause a denial of...
Moderate
Unreviewed
CVE-2008-3396
was published
May 1, 2022
PowerDNS Authoritative Server before 2.9.21.1 drops malformed queries, which might make it easier...
Moderate
Unreviewed
CVE-2008-3337
was published
May 1, 2022
ZDaemon 1.08.07 and earlier allows remote attackers to cause a denial of service (daemon crash)...
Moderate
Unreviewed
CVE-2008-3314
was published
May 1, 2022
retroclient.exe in EMC Dantz Retrospect Backup Client 7.5.116 allows remote attackers to cause a...
Moderate
Unreviewed
CVE-2008-3287
was published
May 1, 2022
ProTip!
Advisories are also available from the
GraphQL API