GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
5,051 advisories
Filter by severity
Multiple "command injection" vulnerabilities in Phorum 3.4 through 3.4.2 allow remote attackers...
High
Unreviewed
CVE-2003-1487
was published
Apr 29, 2022
SonicWall Pro running firmware 6.4.0.1 allows remote attackers to cause a denial of service ...
High
Unreviewed
CVE-2003-1490
was published
Apr 29, 2022
guestbook.cgi in cPanel 5.0 allows remote attackers to execute arbitrary commands via the...
High
Unreviewed
CVE-2003-1425
was published
Apr 29, 2022
DotBr 0.1 allows remote attackers to execute arbitrary shell commands via the cmd parameter to (1...
High
Unreviewed
CVE-2003-1405
was published
Apr 29, 2022
PHP remote file inclusion vulnerability in hit.php for Kietu 2.0 and 2.3 allows remote attackers...
High
Unreviewed
CVE-2003-1402
was published
Apr 29, 2022
foo.php3 in DotBr 0.1 allows remote attackers to obtain sensitive information via a direct...
High
Unreviewed
CVE-2003-1403
was published
Apr 29, 2022
Aprelium Technologies Abyss Web Server 1.1.2, and possibly other versions before 1.1.4, allows...
High
Unreviewed
CVE-2003-1364
was published
Apr 29, 2022
Cisco PIX firewall 5.x.x, and 6.3.1 and earlier, allows remote attackers to cause a denial of...
High
Unreviewed
CVE-2003-1003
was published
Apr 29, 2022
The Windows Internet Naming Service (WINS) for Microsoft Windows Server 2003, and possibly...
High
Unreviewed
CVE-2003-0825
was published
Apr 29, 2022
Cisco IOS 11.x and 12.0 through 12.2 allows remote attackers to cause a denial of service ...
High
Unreviewed
CVE-2003-0567
was published
Apr 29, 2022
Sed Injection Vulnerability in GitHub repository hestiacp/hestiacp prior to 1.5.12. An...
High
Unreviewed
CVE-2022-1509
was published
Apr 29, 2022
NVIDIA Jetson Linux Driver Package contains a vulnerability in the Cboot module tegrabl_cbo.c,...
High
Unreviewed
CVE-2022-28193
was published
Apr 28, 2022
ballcat-codegen template engine remote code execution injection
High
CVE-2022-24881
was published
for
com.hccake:ballcat-codegen
(Maven)
Apr 27, 2022
gnome-keyring does not discard stored secrets when using gnome_keyring_lock_all_sync function
High
Unreviewed
CVE-2012-6111
was published
Apr 23, 2022
ecryptfs-utils: suid helper does not restrict mounting filesystems with nosuid,nodev which...
High
Unreviewed
CVE-2012-3409
was published
Apr 23, 2022
FreeBSD: Input Validation Flaw allows local users to gain elevated privileges
High
Unreviewed
CVE-2012-4576
was published
Apr 23, 2022
An issue was discovered in dhclient 4.3.1-6 due to an embedded path variable.
High
Unreviewed
CVE-2012-2248
was published
Apr 23, 2022
mono 2.10.x ASP.NET Web Form Hash collision DoS
High
Unreviewed
CVE-2012-3543
was published
Apr 23, 2022
xlockmore before 5.43 'dclock' security bypass vulnerability
High
Unreviewed
CVE-2012-4524
was published
Apr 23, 2022
pam_shield before 0.9.4: Default configuration does not perform protective action
High
Unreviewed
CVE-2012-2350
was published
Apr 23, 2022
RubyGems passenger gem allows remote attackers to delete files
High
CVE-2012-6135
was published
for
passenger
(RubyGems)
Apr 23, 2022
Falconpl before 0.9.6.9-git20120606 misuses the libcurl API which may allow remote attackers to...
High
Unreviewed
CVE-2012-6070
was published
Apr 23, 2022
Jenkins allows Data Insertion and Execution of Code by those with Read and HTTP Access
High
CVE-2012-4438
was published
for
org.jenkins-ci.main:jenkins-core
(Maven)
Apr 23, 2022
A potential vulnerability in LenovoVariable SMI Handler due to insufficient validation in some...
High
Unreviewed
CVE-2021-3970
was published
Apr 23, 2022
A potential vulnerability in the SMI callback function used in the Legacy BIOS mode driver in...
High
Unreviewed
CVE-2021-4212
was published
Apr 23, 2022
ProTip!
Advisories are also available from the
GraphQL API