GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,635
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,064 advisories
Filter by severity
(a) mount and (b) umount in util-linux 2.14.1, 2.17.2, and probably other versions allow local...
Low
Unreviewed
CVE-2013-0157
was published
May 5, 2022
The SUSE Audit Log Keeper daemon before 0.2.1-0.4.6.1 for SUSE Manager and Spacewalk uses world...
Low
Unreviewed
CVE-2012-0421
was published
May 4, 2022
Postfix 2.5 before 2.5.4 and 2.6 before 2.6-20080814 delivers to a mailbox file even when this...
Low
Unreviewed
CVE-2008-2937
was published
May 3, 2022
NET$SESSION_CONTROL.EXE in DECnet-Plus in OpenVMS ALPHA 7.3-2 and Alpha 8.2 writes a password to...
Low
Unreviewed
CVE-2006-4537
was published
May 3, 2022
Unspecified vulnerability in Adobe ColdFusion 8.0, 8.0.1, and 9.0 allows local users to obtain...
Low
Unreviewed
CVE-2010-1294
was published
May 2, 2022
probers/udisks-dm-export.c in udisks before 1.0.1 exports UDISKS_DM_TARGETS_PARAMS information to...
Low
Unreviewed
CVE-2010-1149
was published
May 2, 2022
The Free Software Foundation (FSF) Berkeley DB NSS module (aka libnss-db) 2.2.3pre1 reads the...
Low
Unreviewed
CVE-2010-0826
was published
May 2, 2022
Microsoft Internet Explorer 6 and 7 on Windows XP and Vista does not prevent script from...
Low
Unreviewed
CVE-2010-0808
was published
May 2, 2022
sutil/ncpumount.c in ncpumount in ncpfs 2.2.6 produces certain detailed error messages about the...
Low
Unreviewed
CVE-2010-0790
was published
May 2, 2022
pkexec.c in pkexec in libpolkit in PolicyKit 0.96 allows local users to determine the existence...
Low
Unreviewed
CVE-2010-0750
was published
May 2, 2022
Tor 0.2.2.x before 0.2.2.7-alpha, when functioning as a directory mirror, does not prevent...
Low
Unreviewed
CVE-2010-0384
was published
May 2, 2022
Bournal before 1.4.1 on FreeBSD 8.0, when the -K option is used, places a ccrypt key on the...
Low
Unreviewed
CVE-2010-0119
was published
May 2, 2022
The Web Post Protection feature in McAfee Host Data Loss Prevention (DLP) 3.x before 3.0.100.10...
Low
Unreviewed
CVE-2009-5117
was published
May 2, 2022
Pentaho BI Server 1.7.0.1062 and earlier does not set the autocomplete tag to off on web pages...
Low
Unreviewed
CVE-2009-5100
was published
May 2, 2022
nm-connection-editor in NetworkManager (NM) 0.7.x exports connection objects over D-Bus upon...
Low
Unreviewed
CVE-2009-4145
was published
May 2, 2022
Unspecified vulnerability in Userpoints 6.x before 6.x-1.1, a module for Drupal, allows remote...
Low
Unreviewed
CVE-2009-3782
was published
May 2, 2022
The tcf_fill_node function in net/sched/cls_api.c in the netlink subsystem in the Linux kernel 2...
Low
Unreviewed
CVE-2009-3612
was published
May 2, 2022
Twiddle in Red Hat JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.2 before 4.2...
Low
Unreviewed
CVE-2009-3554
was published
May 2, 2022
arch/x86/ia32/ia32entry.S in the Linux kernel before 2.6.31.4 on the x86_64 platform does not...
Low
Unreviewed
CVE-2009-2910
was published
May 2, 2022
The monitor perl script in the Sybase database plug-in in SpringSource Hyperic HQ before 4.3...
Low
Unreviewed
CVE-2009-2899
was published
May 2, 2022
Sun Virtual Desktop Infrastructure (VDI) 3.0, when anonymous binding is enabled, does not...
Low
Unreviewed
CVE-2009-2856
was published
May 2, 2022
The UIKit component in Apple iPhone OS 3.0, and iPhone OS 3.0.1 for iPod touch, allows physically...
Low
Unreviewed
CVE-2009-2796
was published
May 2, 2022
The mm_for_maps function in fs/proc/base.c in the Linux kernel 2.6.30.4 and earlier allows local...
Low
Unreviewed
CVE-2009-2691
was published
May 2, 2022
smbfs in Sun OpenSolaris snv_84 through snv_110, when default mount permissions are used, allows...
Low
Unreviewed
CVE-2009-2031
was published
May 2, 2022
ProTip!
Advisories are also available from the
GraphQL API