GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,645
Maven
5,000+
npm
4,271
NuGet
760
pip
4,065
Pub
12
RubyGems
957
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
10,449 advisories
Filter by severity
CRLF injection vulnerability in the ftp_putcmd function in PHP before 4.4.7, and 5.x before 5.2.2...
Low
Unreviewed
CVE-2007-2509
was published
May 1, 2022
WebKit in Apple Safari 3 Beta before Update 3.0.3 does not properly recognize an unchecked ...
Moderate
Unreviewed
CVE-2007-2408
was published
May 1, 2022
NMMediaServer.exe in Nero MediaHome 2.5.5.0 and CE 1.3.0.4 allows remote attackers to cause a...
High
Unreviewed
CVE-2007-2322
was published
May 1, 2022
CRLF injection vulnerability in the Digest Authentication support for Mozilla Firefox before 2.0...
Moderate
Unreviewed
CVE-2007-2292
was published
May 1, 2022
A typo in Linux kernel 2.6 before 2.6.21-rc6 and 2.4 before 2.4.35 causes RTA_MAX to be used as...
Moderate
Unreviewed
CVE-2007-2172
was published
May 1, 2022
bgpd/bgp_attr.c in Quagga 0.98.6 and earlier, and 0.99.6 and earlier 0.99 versions, does not...
Moderate
Unreviewed
CVE-2007-1995
was published
May 1, 2022
The Impulse Tracker (IT) and ScreamTracker 3 (S3M) modules in IN_MOD.DLL in AOL Nullsoft Winamp 5...
High
Unreviewed
CVE-2007-1922
was published
May 1, 2022
Unspecified vulnerability in MailDwarf 3.01 and earlier allows remote attackers to send e-mail to...
Moderate
Unreviewed
CVE-2007-1803
was published
May 1, 2022
SPBBCDrv.sys in Symantec Norton Personal Firewall 2006 9.1.0.33 and 9.1.1.7 does not validate...
Moderate
Unreviewed
CVE-2007-1793
was published
May 1, 2022
The SIP channel module in Yet Another Telephony Engine (Yate) before 1.2.0 sets the...
High
Unreviewed
CVE-2007-1693
was published
May 1, 2022
The processor_request function in the debugger server for DataRescue IDA Pro 5.0 and 5.1 does not...
High
Unreviewed
CVE-2007-1666
was published
May 1, 2022
The SymTDI device driver (SYMTDI.SYS) in Symantec Norton Personal Firewall 2006 9.1.1.7 and...
Low
Unreviewed
CVE-2007-1476
was published
May 1, 2022
download.php in McGallery 0.5b allows remote attackers to read arbitrary files and obtain script...
Moderate
Unreviewed
CVE-2007-1478
was published
May 1, 2022
The 4thPass browser (BlackBerry Browser) on the RIM BlackBerry 8100 (Pearl) before 4.2.1 allows...
Moderate
Unreviewed
CVE-2007-1441
was published
May 1, 2022
The web interface in AstroCam 2.0.0 through 2.6.5 allows remote attackers to cause a denial of...
High
Unreviewed
CVE-2007-1426
was published
May 1, 2022
Mozilla Firefox 1.5.x before 1.5.0.12 and 2.x before 2.0.0.4, and SeaMonkey 1.0.9 and 1.1.2,...
Moderate
Unreviewed
CVE-2007-1362
was published
May 1, 2022
NETxAutomation NETxEIB OPC Server before 3.0.1300 does not properly validate OLE for Process...
High
Unreviewed
CVE-2007-1313
was published
May 1, 2022
WordPress 2.1.1, as downloaded from some official distribution sites during February and March...
High
Unreviewed
CVE-2007-1277
was published
May 1, 2022
The Network Analysis Module (NAM) in Cisco Catalyst Series 6000, 6500, and 7600 allows remote...
High
Unreviewed
CVE-2007-1257
was published
May 1, 2022
Unrestricted file upload vulnerability in sitex allows remote attackers to upload arbitrary PHP...
High
Unreviewed
CVE-2007-1235
was published
May 1, 2022
Word (or Word Viewer) in Microsoft Office 2000 SP3, XP SP3, 2003 SP2, 2004 for Mac, and Works...
Moderate
Unreviewed
CVE-2007-1202
was published
May 1, 2022
Unrestricted file upload vulnerability in webSPELL allows remote authenticated administrators to...
Moderate
Unreviewed
CVE-2007-1155
was published
May 1, 2022
index.php in WebMplayer before 0.6.1-Alpha allows remote attackers to execute arbitrary code via...
Moderate
Unreviewed
CVE-2007-1136
was published
May 1, 2022
Unrestricted file upload vulnerability in the onAttachFiles function in the upload tool (inc/lib...
High
Unreviewed
CVE-2007-1097
was published
May 1, 2022
The ATOMIC.TCP signature engine in the Intrusion Prevention System (IPS) feature for Cisco IOS 12...
High
Unreviewed
CVE-2007-0918
was published
May 1, 2022
ProTip!
Advisories are also available from the
GraphQL API