GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
5,210 advisories
Filter by severity
Bugzilla 2.16.10, 2.17 through 2.18.4, and 2.20 does not properly handle certain characters in...
Moderate
Unreviewed
CVE-2006-0914
was published
May 1, 2022
Linux kernel before 2.6.16.5 does not properly handle uncanonical return addresses on Intel EM64T...
Moderate
Unreviewed
CVE-2006-0744
was published
May 1, 2022
fetchmail 6.3.0 and other versions before 6.3.2 allows remote attackers to cause a denial of...
Moderate
Unreviewed
CVE-2006-0321
was published
May 1, 2022
The XML parser in Mozilla Firefox before 1.5.0.1 and SeaMonkey before 1.0 allows remote attackers...
Moderate
Unreviewed
CVE-2006-0298
was published
May 1, 2022
membership.asp in Mini-Nuke CMS System 1.8.2 and earlier does not verify the old password when...
Moderate
Unreviewed
CVE-2006-0203
was published
May 1, 2022
packets.c in Freeciv 2.0 before 2.0.8 allows remote attackers to cause a denial of service ...
Moderate
Unreviewed
CVE-2006-0047
was published
May 1, 2022
Format string vulnerability in Logger.cc for Spey 0.3.3 allows attackers to cause a denial of...
Moderate
Unreviewed
CVE-2005-4846
was published
May 1, 2022
Opera 8.50 allows remote attackers to cause a denial of service (crash) via a Java applet with a...
Moderate
Unreviewed
CVE-2005-3946
was published
May 1, 2022
Google Talk before 1.0.0.76, with email notification enabled, allows remote attackers to cause a...
Moderate
Unreviewed
CVE-2005-3678
was published
May 1, 2022
Serv-U FTP Server before 6.1.0.4 allows attackers to cause a denial of service (crash) via (1)...
Moderate
Unreviewed
CVE-2005-3467
was published
May 1, 2022
The IMAP server in IMail Server 8.20 in Ipswitch Collaboration Suite (ICS) before 2.02 allows...
Moderate
Unreviewed
CVE-2005-2923
was published
May 1, 2022
client.cpp in BNBT EasyTracker 7.7r3.2004.10.27 and earlier allows remote attackers to cause a...
Moderate
Unreviewed
CVE-2005-2806
was published
May 1, 2022
Opera 8.01, when the "Arial Unicode MS" font (ARIALUNI.TTF) is installed, does not properly...
Moderate
Unreviewed
CVE-2005-2405
was published
May 1, 2022
Net-SNMP 5.0.x before 5.0.10.2, 5.2.x before 5.2.1.2, and 5.1.3, when net-snmp is using stream...
Moderate
Unreviewed
CVE-2005-2177
was published
May 1, 2022
phpcart.php in PHPCart 3.2 allows remote attackers to change product price information by...
Moderate
Unreviewed
CVE-2005-1398
was published
May 1, 2022
AppKit in Mac OS X 10.3.9 allows attackers to cause a denial of service (Cocoa application crash)...
Moderate
Unreviewed
CVE-2005-1330
was published
May 1, 2022
FileZilla FTP server before 0.9.6 allows remote attackers to cause a denial of service via a...
Moderate
Unreviewed
CVE-2005-0850
was published
May 1, 2022
schpw.c in the kpasswd service in kadmind in MIT Kerberos 5 (aka krb5) before 1.11.3 does not...
Moderate
Unreviewed
CVE-2002-2443
was published
Apr 30, 2022
NWFTPD.nlm before 5.03b in the FTP server in Novell NetWare allows remote authenticated users to...
Moderate
Unreviewed
CVE-2002-2433
was published
Apr 30, 2022
Sendmail 8.12.0 through 8.12.6 truncates log messages longer than 100 characters, which allows...
Moderate
Unreviewed
CVE-2002-2423
was published
Apr 30, 2022
webs.c in GoAhead WebServer before 2.1.4 allows remote attackers to cause a denial of service ...
Moderate
Unreviewed
CVE-2002-2429
was published
Apr 30, 2022
webs.c in GoAhead WebServer before 2.1.4 allows remote attackers to cause a denial of service ...
Moderate
Unreviewed
CVE-2002-2428
was published
Apr 30, 2022
Allied Telesyn AT-8024 1.3.1 and Rapier 24 switches allow remote authenticated users to cause a...
Moderate
Unreviewed
CVE-2002-2415
was published
Apr 30, 2022
Buffer overflow in HTTP server in LiteServe 2.0, 2.0.1 and 2.0.2 allows remote attackers to cause...
Moderate
Unreviewed
CVE-2002-2406
was published
Apr 30, 2022
Serv-U FTP server 3.0, 3.1 and 4.0.0.4 does not accept new connections while validating user...
Moderate
Unreviewed
CVE-2002-2393
was published
Apr 30, 2022
ProTip!
Advisories are also available from the
GraphQL API