GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
6,770 advisories
Filter by severity
Oracle iPlanet Web Server (formerly Sun Java System Web Server or Sun ONE Web Server) 6.1 before...
Moderate
Unreviewed
CVE-2009-2445
was published
May 2, 2022
KerviNet Forum 1.1 and earlier allows remote attackers to obtain sensitive information via a...
Moderate
Unreviewed
CVE-2009-2329
was published
May 2, 2022
CMS Chainuk 1.2 and earlier allows remote attackers to obtain sensitive information via (1) a...
Moderate
Unreviewed
CVE-2009-2332
was published
May 2, 2022
OXID eShop 4.x before 4.1.4-21266, 3.x, and 2.x allows remote attackers to obtain sensitive...
Moderate
Unreviewed
CVE-2009-2266
was published
May 2, 2022
stardict 3.0.1, when Enable Net Dict is configured, sends the contents of the clipboard to a...
Moderate
Unreviewed
CVE-2009-2260
was published
May 2, 2022
pivot/tb.php in Pivot 1.40.4 and 1.40.7 allows remote attackers to obtain sensitive information...
Moderate
Unreviewed
CVE-2009-2134
was published
May 2, 2022
Elvin 1.2.0 allows remote attackers to read the PHP source code of (1) login.ei, (2) jump_bug.ei,...
Moderate
Unreviewed
CVE-2009-2130
was published
May 2, 2022
admin.php in SkyBlueCanvas 1.1 r237 allows remote authenticated administrators to obtain...
Moderate
Unreviewed
CVE-2009-2115
was published
May 2, 2022
The embedded web server on the Cisco Video Surveillance 2500 Series IP Camera with firmware...
Moderate
Unreviewed
CVE-2009-2046
was published
May 2, 2022
libpng before 1.2.37 does not properly parse 1-bit interlaced images with width values that are...
Moderate
Unreviewed
CVE-2009-2042
was published
May 2, 2022
The secure login page in the Administrative Console component in IBM WebSphere Application Server...
Moderate
Unreviewed
CVE-2009-1898
was published
May 2, 2022
The Configservice APIs in the Administrative Console component in IBM WebSphere Application...
Moderate
Unreviewed
CVE-2009-1900
was published
May 2, 2022
Adobe Flash Player before 9.0.246.0 and 10.x before 10.0.32.18, and Adobe AIR before 1.5.2,...
Moderate
Unreviewed
CVE-2009-1870
was published
May 2, 2022
Mozilla Firefox before 3.0.11 and SeaMonkey before 1.1.17 associate local documents with external...
Moderate
Unreviewed
CVE-2009-1835
was published
May 2, 2022
FreePBX 2.5.1, and other 2.4.x, 2.5.x, and pre-release 2.6.x versions, generates different error...
Moderate
Unreviewed
CVE-2009-1803
was published
May 2, 2022
The web interface in Open Computer and Software Inventory Next Generation (OCS Inventory NG) 1.01...
Moderate
Unreviewed
CVE-2009-1769
was published
May 2, 2022
The Private Browsing feature in Apple Safari before 4.0 on Windows does not remove cookies from...
Moderate
Unreviewed
CVE-2009-1706
was published
May 2, 2022
The XSLT implementation in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and...
Moderate
Unreviewed
CVE-2009-1700
was published
May 2, 2022
The Cisco Linksys WVC54GCA wireless video camera with firmware 1.00R22 and 1.00R24 sends...
Moderate
Unreviewed
CVE-2009-1555
was published
May 2, 2022
The process_stat function in Memcached 1.2.8 discloses memory-allocation statistics in response...
Moderate
Unreviewed
CVE-2009-1494
was published
May 2, 2022
Memory leak in the dequote_bytea function in quote.c in the DBD::Pg (aka DBD-Pg or libdbd-pg-perl...
Moderate
Unreviewed
CVE-2009-1341
was published
May 2, 2022
Mozilla Firefox before 3.0.9 and SeaMonkey before 1.1.17 allow user-assisted remote attackers to...
Moderate
Unreviewed
CVE-2009-1311
was published
May 2, 2022
The web login functionality (c/portal/login) in Novell Teaming 1.0 through SP3 (1.0.3) generates...
Moderate
Unreviewed
CVE-2009-1293
was published
May 2, 2022
private/login.ssi in the Advanced Management Module (AMM) on the IBM BladeCenter, including the...
Moderate
Unreviewed
CVE-2009-1289
was published
May 2, 2022
The process_stat function in (1) Memcached before 1.2.8 and (2) MemcacheDB 1.2.0 discloses (a)...
Moderate
Unreviewed
CVE-2009-1255
was published
May 2, 2022
ProTip!
Advisories are also available from the
GraphQL API