GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
6,772 advisories
Filter by severity
HP Onboard Administrator (OA) before 3.50 allows remote attackers to obtain sensitive information...
Moderate
Unreviewed
CVE-2012-0130
was published
May 4, 2022
Redland Raptor (aka libraptor) before 2.0.7, as used by OpenOffice 3.3 and 3.4 Beta, LibreOffice...
Moderate
Unreviewed
CVE-2012-0037
was published
May 4, 2022
Microsoft Internet Explorer 6 through 9 does not properly perform copy-and-paste operations,...
Moderate
Unreviewed
CVE-2012-0010
was published
May 4, 2022
A bug exists where an attacker can read the kernel log through exposed Zircon kernel addresses...
Moderate
Unreviewed
CVE-2022-0882
was published
May 4, 2022
The (1) JScript 5.8 and (2) VBScript 5.8 scripting engines in Microsoft Windows Server 2008 R2...
Moderate
Unreviewed
CVE-2011-0031
was published
May 3, 2022
The RAND scalar function in the Common Code Infrastructure component in IBM DB2 9.5 before FP5...
Moderate
Unreviewed
CVE-2009-4326
was published
May 3, 2022
Mozilla Firefox before 1.8.0.13 and 1.8.1.x before 1.8.1.5 does not perform a security zone check...
Moderate
Unreviewed
CVE-2007-3656
was published
May 3, 2022
Adobe Macromedia Flash Player 7 and 9, when used with Opera before 9.20 or Konqueror before...
Moderate
Unreviewed
CVE-2007-2022
was published
May 3, 2022
The page cache feature in Mozilla Firefox before 1.5.0.10 and 2.x before 2.0.0.2, and SeaMonkey...
Moderate
Unreviewed
CVE-2007-0778
was published
May 3, 2022
Tools/gdomap.c in gdomap in GNUstep Base before 1.20.0 allows local users to read arbitrary files...
Moderate
Unreviewed
CVE-2010-1457
was published
May 2, 2022
WebKit in Apple iOS before 4 on the iPhone and iPod touch does not properly implement the history...
Moderate
Unreviewed
CVE-2010-1407
was published
May 2, 2022
WebKit in Apple Safari before 5.0 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1 on...
Moderate
Unreviewed
CVE-2010-1406
was published
May 2, 2022
The Cascading Style Sheets (CSS) implementation in WebKit in Apple Safari before 5.0 on Mac OS X...
Moderate
Unreviewed
CVE-2010-1393
was published
May 2, 2022
WebKit in Apple Safari before 5.0 on Mac OS X 10.5 through 10.6, and before 4.1 on Mac OS X 10.4,...
Moderate
Unreviewed
CVE-2010-1388
was published
May 2, 2022
Apple Safari before 5.0 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1 on Mac OS X 10...
Moderate
Unreviewed
CVE-2010-1384
was published
May 2, 2022
Opera 10.50 allows remote attackers to obtain sensitive information via crafted XSLT constructs,...
Moderate
Unreviewed
CVE-2010-1310
was published
May 2, 2022
Microsoft Internet Explorer 6, 7, and 8 does not properly determine the origin of script code,...
Moderate
Unreviewed
CVE-2010-1258
was published
May 2, 2022
Exposure of Sensitive Information to an Unauthorized Actor in Apache Tomcat
Moderate
CVE-2010-1157
was published
for
org.apache.tomcat:tomcat
(Maven)
May 2, 2022
The virtual networking stack in VMware Workstation 7.0 before 7.0.1 build 227600, VMware...
Moderate
Unreviewed
CVE-2010-1138
was published
May 2, 2022
The JavaScript implementation in Mozilla Firefox 3.x before 3.5.10 and 3.6.x before 3.6.4, and...
Moderate
Unreviewed
CVE-2010-1125
was published
May 2, 2022
The JavaScript implementation in WebKit allows remote attackers to send selected keystrokes to a...
Moderate
Unreviewed
CVE-2010-1126
was published
May 2, 2022
Unspecified vulnerability in the Power Extension Manager (ch_lightem) extension 1.0.34 and...
Moderate
Unreviewed
CVE-2010-1007
was published
May 2, 2022
Unspecified vulnerability in the IP-Tech JQuarks (com_jquarks) Component before 0.2.4 for Joomla!...
Moderate
Unreviewed
CVE-2010-0670
was published
May 2, 2022
The ParamTraits<SkBitmap>::Read function in common/common_param_traits.cc in Google Chrome before...
Moderate
Unreviewed
CVE-2010-0663
was published
May 2, 2022
Google Chrome before 4.0.249.78 sends an https URL in the Referer header of an http request in...
Moderate
Unreviewed
CVE-2010-0660
was published
May 2, 2022
ProTip!
Advisories are also available from the
GraphQL API