GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
9,964 advisories
Filter by severity
The WOHyperlink implementation in WebObjects in Apple Xcode tools before 3.1 appends local...
Moderate
Unreviewed
CVE-2008-2318
was published
May 1, 2022
Microsoft Windows Vista through SP1 and Server 2008 do not properly import the default IPsec...
High
Unreviewed
CVE-2008-2246
was published
May 1, 2022
Microsoft Internet Explorer 7 can save encrypted pages in the cache even when the...
Low
Unreviewed
CVE-2008-2159
was published
May 1, 2022
Unspecified vulnerability in Sun Java System Application Server 7 2004Q2 before Update 6, Web...
Moderate
Unreviewed
CVE-2008-2120
was published
May 1, 2022
The VMware Consolidated Backup (VCB) command-line utilities in VMware ESX 3.0.1 through 3.0.3 and...
Low
Unreviewed
CVE-2008-2101
was published
May 1, 2022
The POP3 server (EPSTPOP3S.EXE) 4.22 in E-Post Mail Server 4.10 allows remote attackers to obtain...
Moderate
Unreviewed
CVE-2008-2049
was published
May 1, 2022
Open redirect vulnerability in WebID/IISWebAgentIF.dll in RSA Authentication Agent 5.3.0.258 for...
Moderate
Unreviewed
CVE-2008-2027
was published
May 1, 2022
miniBB 2.2, and possibly earlier, when register_globals is enabled, allows remote attackers to...
Moderate
Unreviewed
CVE-2008-2028
was published
May 1, 2022
The AssignUser function in template.class.php in PHPizabi 0.848b C1 HFP3 performs unsafe macro...
Moderate
Unreviewed
CVE-2008-2018
was published
May 1, 2022
The drive_init function in QEMU 0.9.1 determines the format of a raw disk image based on the...
Moderate
Unreviewed
CVE-2008-2004
was published
May 1, 2022
Unspecified vulnerability in phpMyAdmin before 2.11.5.2, when running on shared hosts, allows...
Low
Unreviewed
CVE-2008-1924
was published
May 1, 2022
phpdemo/viewsource.php in Advanced Software Engineering ChartDirector 4.1 allows remote attackers...
Moderate
Unreviewed
CVE-2008-1782
was published
May 1, 2022
ezRADIUS 0.1 stores sensitive information under the web root with insufficient access control,...
High
Unreviewed
CVE-2008-1752
was published
May 1, 2022
WoltLab Community Framework (WCF) 1.0.6 in WoltLab Burning Board 3.0.5 allows remote attackers to...
Moderate
Unreviewed
CVE-2008-1717
was published
May 1, 2022
PHP-Nuke Platinum 7.6.b.5 allows remote attackers to obtain configuration information via a...
Moderate
Unreviewed
CVE-2008-1680
was published
May 1, 2022
The PPTP VPN service in Watchguard Firebox before 10, when performing the MS-CHAPv2...
Moderate
Unreviewed
CVE-2008-1618
was published
May 1, 2022
The kernel in IBM AIX 6.1 allows local users with ProbeVue privileges to read arbitrary kernel...
Moderate
Unreviewed
CVE-2008-1598
was published
May 1, 2022
CFNetwork in Safari in Apple Mac OS X before 10.5.3 automatically sends an SSL client certificate...
Moderate
Unreviewed
CVE-2008-1580
was published
May 1, 2022
The sso_util program in Single Sign-On in Apple Mac OS X before 10.5.3 places passwords on the...
Low
Unreviewed
CVE-2008-1578
was published
May 1, 2022
Wiki Server in Apple Mac OS X 10.5 before 10.5.3 allows remote attackers to obtain sensitive...
Moderate
Unreviewed
CVE-2008-1579
was published
May 1, 2022
phpMyAdmin before 2.11.5.1 stores the MySQL (1) username and (2) password, and the (3) Blowfish...
Low
Unreviewed
CVE-2008-1567
was published
May 1, 2022
BolinOS 4.6.1 allows remote attackers to obtain sensitive information via a direct request to...
Moderate
Unreviewed
CVE-2008-1557
was published
May 1, 2022
ZyXEL Prestige routers, including P-660, P-661, and P-662 models with firmware 3.40(AGD.2)...
Moderate
Unreviewed
CVE-2008-1523
was published
May 1, 2022
PEEL, possibly 3.x and earlier, allows remote attackers to obtain configuration information via a...
Moderate
Unreviewed
CVE-2008-1506
was published
May 1, 2022
Unspecified vulnerability in the Windows client API in Novell GroupWise 7 before SP3 and 6.5...
Low
Unreviewed
CVE-2008-1330
was published
May 1, 2022
ProTip!
Advisories are also available from the
GraphQL API