GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,992
Erlang
39
GitHub Actions
38
Go
2,634
Maven
5,000+
npm
4,258
NuGet
760
pip
4,051
Pub
12
RubyGems
955
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
11,561 advisories
Filter by severity
Adobe Reader and Acrobat 7.x before 7.1.4, 8.x before 8.1.7, and 9.x before 9.2 do not properly...
High
Unreviewed
CVE-2009-2981
was published
May 2, 2022
Google Chrome 1.0.154.48 and earlier allows remote attackers to cause a denial of service (CPU...
Moderate
Unreviewed
CVE-2009-2955
was published
May 2, 2022
Microsoft Internet Explorer 6.0.2900.2180 and earlier allows remote attackers to cause a denial...
Moderate
Unreviewed
CVE-2009-2954
was published
May 2, 2022
The tgbvpn.sys driver in TheGreenBow IPSec VPN Client 4.61.003 allows local users to cause a...
Low
Unreviewed
CVE-2009-2918
was published
May 2, 2022
The strListGetItem function in src/HttpHeaderTools.c in Squid 2.7 allows remote attackers to...
Moderate
Unreviewed
CVE-2009-2855
was published
May 2, 2022
WP-Syntax plugin 0.9.1 and earlier for Wordpress, with register_globals enabled, allows remote...
Moderate
Unreviewed
CVE-2009-2852
was published
May 2, 2022
The kernel in Apple Mac OS X before 10.6.2 does not properly handle task state segments, which...
Moderate
Unreviewed
CVE-2009-2835
was published
May 2, 2022
httpd.c in httpd in the management GUI in DD-WRT 24 sp1, and other versions before build 12533,...
High
Unreviewed
CVE-2009-2765
was published
May 2, 2022
Sun VirtualBox 2.2 through 3.0.2 r49928 allows guest OS users to cause a denial of service (Linux...
Moderate
Unreviewed
CVE-2009-2715
was published
May 2, 2022
src/network/ssl/qsslcertificate.cpp in Nokia Trolltech Qt 4.x does not properly handle a '\0'...
Moderate
Unreviewed
CVE-2009-2700
was published
May 2, 2022
The exif_read_data function in the Exif module in PHP before 5.2.10 allows remote attackers to...
Moderate
Unreviewed
CVE-2009-2687
was published
May 2, 2022
mshtml.dll in Microsoft Internet Explorer 7 and 8 on Windows XP SP3 allows remote attackers to...
Moderate
Unreviewed
CVE-2009-2655
was published
May 2, 2022
Mozilla Firefox before 3.0.13, and 3.5.x before 3.5.2, allows remote attackers to spoof the...
Moderate
Unreviewed
CVE-2009-2654
was published
May 2, 2022
The huft_build function in inflate.c in gzip before 1.3.13 creates a hufts (aka huffman) table...
Moderate
Unreviewed
CVE-2009-2624
was published
May 2, 2022
Squid 3.0 through 3.0.STABLE16 and 3.1 through 3.1.0.11 allows remote attackers to cause a denial...
Moderate
Unreviewed
CVE-2009-2622
was published
May 2, 2022
src/remote/server.cpp in fbserver.exe in Firebird SQL 1.5 before 1.5.6, 2.0 before 2.0.6, 2.1...
Moderate
Unreviewed
CVE-2009-2620
was published
May 2, 2022
Multiple session fixation vulnerabilities in IBM Tivoli Identity Manager (ITIM) 5.0.0.6 allow...
Moderate
Unreviewed
CVE-2009-2583
was published
May 2, 2022
RealNetworks Helix Server and Helix Mobile Server before 13.0.0 allow remote attackers to cause a...
Moderate
Unreviewed
CVE-2009-2534
was published
May 2, 2022
rmserver in RealNetworks Helix Server and Helix Mobile Server before 13.0.0 allows remote...
Moderate
Unreviewed
CVE-2009-2533
was published
May 2, 2022
The kernel in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold and SP1,...
Moderate
Unreviewed
CVE-2009-2516
was published
May 2, 2022
The Graphics Device Interface (GDI) in win32k.sys in the kernel in Microsoft Windows 2000 SP4, XP...
High
Unreviewed
CVE-2009-2513
was published
May 2, 2022
Active Directory Federation Services (ADFS) in Microsoft Windows Server 2003 SP2 and Server 2008...
High
Unreviewed
CVE-2009-2509
was published
May 2, 2022
Mozilla Firefox before 3.0.12, and 3.5.x before 3.5.2, allows remote SOCKS5 proxy servers to...
Moderate
Unreviewed
CVE-2009-2470
was published
May 2, 2022
WordPress 2.7.1 places the username of a post's author in an HTML comment, which allows remote...
Moderate
Unreviewed
CVE-2009-2431
was published
May 2, 2022
Tor before 0.2.0.35 allows remote attackers to cause a denial of service (application crash) via...
Moderate
Unreviewed
CVE-2009-2425
was published
May 2, 2022
ProTip!
Advisories are also available from the
GraphQL API