GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
6,770 advisories
Filter by severity
IBM DB2 9.1 before FP7 returns incorrect query results in certain situations related to the order...
Moderate
Unreviewed
CVE-2009-1239
was published
May 2, 2022
Sun Java System Identity Manager (IdM) 7.0 through 8.0 responds differently to failed use of the...
Moderate
Unreviewed
CVE-2009-1076
was published
May 2, 2022
Apple iPhone OS 1.0 through 2.2.1 and iPhone OS for iPod touch 1.1 through 2.2.1 stores an...
Moderate
Unreviewed
CVE-2009-0958
was published
May 2, 2022
The HRM-S service in Fujitsu Enhanced Support Facility 3.0 and 3.0.1 allows remote attackers to...
Moderate
Unreviewed
CVE-2009-0867
was published
May 2, 2022
showme.php in CelerBB 0.0.2 allows remote attackers to obtain "reserved information" via the user...
Moderate
Unreviewed
CVE-2009-0852
was published
May 2, 2022
mapserv in MapServer 4.x before 4.10.4 and 5.x before 5.2.2 allows remote attackers to read...
Moderate
Unreviewed
CVE-2009-0842
was published
May 2, 2022
TYPO3 leaks a hash secret in an error message
Moderate
CVE-2009-0815
was published
for
typo3/cms
(Composer)
May 2, 2022
Exposure of Sensitive Information to an Unauthorized Actor in Apache Tomcat
Moderate
CVE-2009-0783
was published
for
org.apache.tomcat:tomcat
(Maven)
May 2, 2022
Red Hat Network (RHN) Satellite Server 5.3 and 5.4 does not properly rewrite unspecified URLs,...
Moderate
Unreviewed
CVE-2009-0788
was published
May 2, 2022
filter.php in PHPFootball 1.6 and earlier allows remote attackers to retrieve password hashes via...
Moderate
Unreviewed
CVE-2009-0711
was published
May 2, 2022
images/captcha.php in RavenNuke 2.30 allows remote attackers to obtain sensitive information via...
Moderate
Unreviewed
CVE-2009-0678
was published
May 2, 2022
Trend Micro InterScan Web Security Virtual Appliance (IWSVA) 3.x and InterScan Web Security Suite...
Moderate
Unreviewed
CVE-2009-0612
was published
May 2, 2022
Exposure of Sensitive Information in Apache Tomcat
Moderate
CVE-2009-0580
was published
for
org.apache.tomcat:tomcat
(Maven)
May 2, 2022
Untrusted search path vulnerability in Adobe Flash Player 9.x before 9.0.159.0 and 10.x before 10...
Moderate
Unreviewed
CVE-2009-0521
was published
May 2, 2022
The web interface in the Rockwell Automation ControlLogix 1756-ENBT/A EtherNet/IP Bridge Module...
Moderate
Unreviewed
CVE-2009-0474
was published
May 2, 2022
Online Grades 3.2.4 allows remote attackers to obtain configuration information via a direct...
Moderate
Unreviewed
CVE-2009-0453
was published
May 2, 2022
The login module in Sun Java System Access Manager 6 2005Q1 (aka 6.3), 7 2005Q4 (aka 7.0), and 7...
Moderate
Unreviewed
CVE-2009-0348
was published
May 2, 2022
Microsoft Windows XP, Server 2003 and 2008, and Vista exposes I/O activity measurements of all...
Moderate
Unreviewed
CVE-2009-0320
was published
May 2, 2022
Sun Java System Application Server (AS) 8.1 and 8.2 allows remote attackers to read the Web...
Moderate
Unreviewed
CVE-2009-0278
was published
May 2, 2022
Unspecified vulnerability in WebAccess in Novell GroupWise 6.5, 7.0, 7.01, 7.02x, 7.03, 7.03HP1a,...
Moderate
Unreviewed
CVE-2009-0274
was published
May 2, 2022
The Windows Printing Service in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2,...
Moderate
Unreviewed
CVE-2009-0229
was published
May 2, 2022
Apple iTunes before 8.1 does not properly inform the user about the origin of an authentication...
Moderate
Unreviewed
CVE-2009-0143
was published
May 2, 2022
IAX2 in Asterisk Open Source 1.2.x before 1.2.31, 1.4.x before 1.4.23-rc4, and 1.6.x before 1.6.0...
Moderate
Unreviewed
CVE-2009-0041
was published
May 2, 2022
Apple Mail.app 3.5 on Mac OS X, when "Store draft messages on the server" is enabled, stores...
Moderate
Unreviewed
CVE-2008-4491
was published
May 2, 2022
The sctp_auth_ep_set_hmacs function in net/sctp/auth.c in the Stream Control Transmission...
Moderate
Unreviewed
CVE-2008-4445
was published
May 2, 2022
ProTip!
Advisories are also available from the
GraphQL API