GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,638
Maven
5,000+
npm
4,262
NuGet
760
pip
4,058
Pub
12
RubyGems
956
Rust
1,056
Swift
45
Unreviewed advisories
All unreviewed
5,000+
5,211 advisories
Filter by severity
The Linux kernel 2.6.24 and 2.6.25 before 2.6.25.9 allows local users to cause a denial of...
Moderate
Unreviewed
CVE-2008-2372
was published
May 1, 2022
mDNSResponder in the Bonjour Namespace Provider in Apple Bonjour for Windows before 1.0.5 allows...
Moderate
Unreviewed
CVE-2008-2326
was published
May 1, 2022
The Journal module in Tru-Zone Nuke ET 3.x allows remote attackers to obtain access to arbitrary...
Moderate
Unreviewed
CVE-2008-2134
was published
May 1, 2022
Asterisk Open Source 1.0.x and 1.2.x before 1.2.29 and Business Edition A.x.x and B.x.x before B...
Moderate
Unreviewed
CVE-2008-2119
was published
May 1, 2022
Call of Duty 4 (CoD4) 1.5 and earlier allows remote authenticated users to cause a denial of...
Moderate
Unreviewed
CVE-2008-2106
was published
May 1, 2022
The FTP service in Acritum Femitter Server 1.03 allows remote attackers to cause a denial of...
Moderate
Unreviewed
CVE-2008-2032
was published
May 1, 2022
VicFTPS 5.0 allows remote attackers to cause a denial of service (crash) via a crafted LIST...
Moderate
Unreviewed
CVE-2008-2031
was published
May 1, 2022
Apple iCal 3.0.1 on Mac OS X allows remote CalDAV servers, and user-assisted remote attackers, to...
Moderate
Unreviewed
CVE-2008-2006
was published
May 1, 2022
Foxit Reader 2.2 allows remote attackers to cause a denial of service (crash) and possibly...
Moderate
Unreviewed
CVE-2008-1942
was published
May 1, 2022
NMMediaServer.exe in Nero MediaHome 3.3.3.0 and earlier, as used in Nero 8.3.2.1 and earlier,...
Moderate
Unreviewed
CVE-2008-1905
was published
May 1, 2022
ExBB Italia 0.22 and earlier only checks GET requests that use the QUERY_STRING for certain path...
Moderate
Unreviewed
CVE-2008-1862
was published
May 1, 2022
plugins/maps/db_handler.php in LinPHA 1.3.3 and earlier does not require authentication for a...
Moderate
Unreviewed
CVE-2008-1856
was published
May 1, 2022
ClamAV before 0.93 allows remote attackers to bypass the scanning enging via a RAR file with an...
Moderate
Unreviewed
CVE-2008-1835
was published
May 1, 2022
delete.php in Prozilla Top 100 1.2 allows remote authenticated users to delete statistics and...
Moderate
Unreviewed
CVE-2008-1785
was published
May 1, 2022
Sophos Anti-Virus 7.0.5, and other 7.x versions, when Runtime Behavioural Analysis is enabled,...
Moderate
Unreviewed
CVE-2008-1737
was published
May 1, 2022
Multiple integer overflows in (1) filter/image-png.c and (2) filter/image-zoom.c in CUPS 1.3...
Moderate
Unreviewed
CVE-2008-1722
was published
May 1, 2022
Absolute path traversal vulnerability in dload.php in the my_gallery 2.3 plugin for e107 allows...
Moderate
Unreviewed
CVE-2008-1702
was published
May 1, 2022
The CairoFont::create function in CairoFontEngine.cc in Poppler, possibly before 0.8.0, as used...
Moderate
Unreviewed
CVE-2008-1693
was published
May 1, 2022
Unspecified vulnerability in SLMail.exe in SLMail Pro 6.3.1.0 and earlier allows remote attackers...
Moderate
Unreviewed
CVE-2008-1691
was published
May 1, 2022
Sympa before 5.4 allows remote attackers to cause a denial of service (daemon crash) via an e...
Moderate
Unreviewed
CVE-2008-1648
was published
May 1, 2022
The arrayShrink function (lib/Array.c) in Squid 2.6.STABLE17 allows attackers to cause a denial...
Moderate
Unreviewed
CVE-2008-1612
was published
May 1, 2022
The (1) ltmmCaptureCtrl Class, (2) ltmmConvertCtrl Class, and (3) ltmmPlayCtrl Class ActiveX...
Moderate
Unreviewed
CVE-2008-1605
was published
May 1, 2022
Safari on Apple iPhone before 2.0 and iPod touch before 2.0 misinterprets a menu button press as...
Moderate
Unreviewed
CVE-2008-1589
was published
May 1, 2022
Safari on Apple iPhone before 2.0 and iPod touch before 2.0 allows remote attackers to spoof the...
Moderate
Unreviewed
CVE-2008-1588
was published
May 1, 2022
Apple QuickTime before 7.5 uses the url.dll!FileProtocolHandler handler for unrecognized URIs in...
Moderate
Unreviewed
CVE-2008-1585
was published
May 1, 2022
ProTip!
Advisories are also available from the
GraphQL API