GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,635
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
6,768 advisories
Filter by severity
The Servlet Engine and Web Container in IBM WebSphere Application Server (WAS) before 6.0.2.17,...
Moderate
Unreviewed
CVE-2006-6637
was published
May 1, 2022
tiki-wiki_rss.php in Tikiwiki 1.9.5, 1.9.2, and possibly other versions allows remote attackers...
Moderate
Unreviewed
CVE-2006-6457
was published
May 1, 2022
Adobe ColdFusion MX 7 through 7.0.2, and JRun 4, when run on Microsoft IIS, allows remote...
Moderate
Unreviewed
CVE-2006-5858
was published
May 1, 2022
The SSL server in AEP Smartgate 4.3b allows remote attackers to determine existence of...
Moderate
Unreviewed
CVE-2006-5725
was published
May 1, 2022
Tikiwiki 1.9.5 allows remote attackers to obtain sensitive information (MySQL username and...
Moderate
Unreviewed
CVE-2006-5702
was published
May 1, 2022
muforum (µforum) 0.4c stores membres/members.dat under the web document root with insufficient...
Moderate
Unreviewed
CVE-2006-4595
was published
May 1, 2022
IBM WebSphere Application Server (WAS) before 6.0.2.13 allows context-dependent attackers to...
Moderate
Unreviewed
CVE-2006-4223
was published
May 1, 2022
The do_gameinfo function in BomberClone 0.11.6 and earlier, and possibly other functions, does...
Moderate
Unreviewed
CVE-2006-4006
was published
May 1, 2022
Alkacon OpenCms Exposes JSP Source Code
Moderate
CVE-2006-3936
was published
for
org.opencms:opencms-core
(Maven)
May 1, 2022
Apache Tomcat Reveals Directories
Moderate
CVE-2006-3835
was published
for
org.apache.tomcat:tomcat
(Maven)
May 1, 2022
BT Voyager 2091 Wireless firmware 2.21.05.08m_A2pB018c1.d16d and earlier, and 3.01m and earlier,...
Moderate
Unreviewed
CVE-2006-3561
was published
May 1, 2022
Net Portal Dynamic System (NPDS) 5.10 and earlier allows remote attackers to obtain sensitive...
Moderate
Unreviewed
CVE-2006-2950
was published
May 1, 2022
Internet Explorer 6 allows user-assisted remote attackers to read arbitrary files by tricking a...
Moderate
Unreviewed
CVE-2006-2900
was published
May 1, 2022
Mozilla Suite 1.7.13, Mozilla Firefox 1.5.0.3 and possibly other versions before before 1.8.0,...
Moderate
Unreviewed
CVE-2006-2613
was published
May 1, 2022
index.php in Destiney Links Script 2.1.2 allows remote attackers to obtain the installation path...
Moderate
Unreviewed
CVE-2006-2535
was published
May 1, 2022
Microsoft Internet Explorer 5.01 SP4 and 6 SP1 and earlier allows remote attackers to conduct...
Moderate
Unreviewed
CVE-2006-2384
was published
May 1, 2022
NmConsole/utility/RenderMap.asp in Ipswitch WhatsUp Professional 2006 and WhatsUp Professional...
Moderate
Unreviewed
CVE-2006-2356
was published
May 1, 2022
The HTTP proxy in Symantec Gateway Security 5000 Series 2.0.1 and 3.0, and Enterprise Firewall 8...
Moderate
Unreviewed
CVE-2006-2341
was published
May 1, 2022
A component in Microsoft Outlook Express 6 allows remote attackers to bypass domain restrictions...
Moderate
Unreviewed
CVE-2006-2111
was published
May 1, 2022
MAXdev MDPro 1.0.73 and 1.0.72, and possibly other versions before 1.076, allows remote attackers...
Moderate
Unreviewed
CVE-2006-1677
was published
May 1, 2022
The Motorola PEBL U6 08.83.76R, the Motorola V600, and possibly the Motorola E398 and other...
Moderate
Unreviewed
CVE-2006-1367
was published
May 1, 2022
Michael Salzer Guestbox 0.6, and other versions before 0.8, allows remote attackers to obtain the...
Moderate
Unreviewed
CVE-2006-0861
was published
May 1, 2022
PyBlosxom before 1.3.2, when running on certain webservers, allows remote attackers to read...
Moderate
Unreviewed
CVE-2006-0707
was published
May 1, 2022
TinyPHPForum 3.6 and earlier stores the (1) users/[USERNAME].hash and (2) users/[USERNAME].email...
Moderate
Unreviewed
CVE-2006-0103
was published
May 1, 2022
The netlink subsystem in the Linux kernel 2.4.x before 2.4.37.6 and 2.6.x before 2.6.13-rc1 does...
Moderate
Unreviewed
CVE-2005-4881
was published
May 1, 2022
ProTip!
Advisories are also available from the
GraphQL API