GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
5,051 advisories
Filter by severity
The server driver (srv.sys) in Microsoft Windows NT 4.0, 2000, XP, and Server 2003 allows remote...
High
Unreviewed
CVE-2006-3942
was published
May 1, 2022
Microsoft Internet Explorer 6 allows remote attackers to execute arbitrary code by using the...
High
Unreviewed
CVE-2006-3450
was published
May 1, 2022
Microsoft Internet Explorer 5 SP4 and 6 do not properly garbage collect when "multiple imports...
High
Unreviewed
CVE-2006-3451
was published
May 1, 2022
WebEx Downloader ActiveX Control and WebEx Downloader Java before 2.1.0.0 do not validate...
High
Unreviewed
CVE-2006-3423
was published
May 1, 2022
SCTP in Linux kernel before 2.6.16.17 allows remote attackers to cause a denial of service (crash...
High
Unreviewed
CVE-2006-1858
was published
May 1, 2022
Apache Struts vulnerable to Improper Input Validation
High
CVE-2006-1546
was published
for
struts:struts
(Maven)
May 1, 2022
Improper Input Validation in Apache Struts
High
CVE-2006-1547
was published
for
struts:struts
(Maven)
May 1, 2022
Unspecified vulnerability in Stack Group Bidding Protocol (SGBP) support in Cisco IOS 12.0...
High
Unreviewed
CVE-2006-0340
was published
May 1, 2022
The Windows Graphical Device Interface library (GDI32.DLL) in Microsoft Windows allows remote...
High
Unreviewed
CVE-2005-4560
was published
May 1, 2022
Macromedia Flash plugin (1) Flash.ocx 7.0.19.0 (Windows) and earlier and (2) libflashplayer.so...
High
Unreviewed
CVE-2005-3591
was published
May 1, 2022
The _httpsrequest function in Snoopy 1.2, as used in products such as (1) MagpieRSS, (2)...
High
Unreviewed
CVE-2005-3330
was published
May 1, 2022
The filecopy function in misc.c in Clam AntiVirus (ClamAV) before 0.85, on Mac OS, allows remote...
High
Unreviewed
CVE-2005-1795
was published
May 1, 2022
setup.php in phpStat 1.5 allows remote attackers to bypass authentication and gain administrator...
High
Unreviewed
CVE-2005-1787
was published
May 1, 2022
apage.cgi in WebAPP 0.9.9.2.1, and possibly earlier versions, allows remote attackers to execute...
High
Unreviewed
CVE-2005-1628
was published
May 1, 2022
Netfilter in Linux kernel 2.6.8.1 allows remote attackers to cause a denial of service (kernel...
High
Unreviewed
CVE-2005-0209
was published
May 1, 2022
TikiWiki before 1.8.5 does not properly validate files that have been uploaded to the temp...
High
Unreviewed
CVE-2005-0200
was published
May 1, 2022
AWStats 6.1, and other versions before 6.3, allows remote attackers to execute arbitrary commands...
High
Unreviewed
CVE-2005-0116
was published
May 1, 2022
The License Logging service for Windows NT Server, Windows 2000 Server, and Windows Server 2003...
High
Unreviewed
CVE-2005-0050
was published
May 1, 2022
acWEB 1.14 allows remote attackers to cause a denial of service (crash) via an HTTP request for a...
High
Unreviewed
CVE-2002-2421
was published
Apr 30, 2022
site_searcher.cgi in Super Site Searcher allows remote attackers to execute arbitrary commands...
High
Unreviewed
CVE-2002-2420
was published
Apr 30, 2022
Linksys WET11 firmware 1.31 and 1.32 allows remote attackers to cause a denial of service (crash)...
High
Unreviewed
CVE-2002-2371
was published
Apr 30, 2022
Simple WAIS (SWAIS) 1.11 allows remote attackers to execute arbitrary commands via the shell...
High
Unreviewed
CVE-2002-2365
was published
Apr 30, 2022
Netgear FM114P firmware 1.3 wireless firewall allows remote attackers to cause a denial of...
High
Unreviewed
CVE-2002-2354
was published
Apr 30, 2022
ICQ client 2001b, 2002a and 2002b allows remote attackers to cause a denial of service (CPU...
High
Unreviewed
CVE-2002-2329
was published
Apr 30, 2022
Active Directory in Windows 2000, when supporting Kerberos V authentication and GSSAPI, allows...
High
Unreviewed
CVE-2002-2328
was published
Apr 30, 2022
ProTip!
Advisories are also available from the
GraphQL API