GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,645
Maven
5,000+
npm
4,271
NuGet
760
pip
4,065
Pub
12
RubyGems
957
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
10,449 advisories
Filter by severity
Mozilla Firefox 1.5.0.6 allows remote attackers to cause a denial of service (crash) via a...
Moderate
Unreviewed
CVE-2006-4310
was published
May 1, 2022
Microsoft Internet Explorer 6.0 SP1 allows remote attackers to cause a denial of service (crash)...
Moderate
Unreviewed
CVE-2006-4301
was published
May 1, 2022
MySQL before 5.0.25 and 5.1 before 5.1.12 evaluates arguments of suid routines in the security...
Moderate
Unreviewed
CVE-2006-4227
was published
May 1, 2022
The server driver (srv.sys) in Microsoft Windows NT 4.0, 2000, XP, and Server 2003 allows remote...
High
Unreviewed
CVE-2006-3942
was published
May 1, 2022
OSSP shiela 1.1.5 and earlier allows remote authenticated users to execute arbitrary commands on...
Moderate
Unreviewed
CVE-2006-3633
was published
May 1, 2022
Microsoft Internet Explorer 6 allows remote attackers to execute arbitrary code by using the...
High
Unreviewed
CVE-2006-3450
was published
May 1, 2022
Microsoft Internet Explorer 5 SP4 and 6 do not properly garbage collect when "multiple imports...
High
Unreviewed
CVE-2006-3451
was published
May 1, 2022
WebEx Downloader ActiveX Control and WebEx Downloader Java before 2.1.0.0 do not validate...
High
Unreviewed
CVE-2006-3423
was published
May 1, 2022
Microsoft Internet Explorer 6.0 does not properly handle Drag and Drop events, which allows...
Moderate
Unreviewed
CVE-2006-3281
was published
May 1, 2022
Microsoft Excel allows user-assisted attackers to execute arbitrary javascript and redirect users...
Moderate
Unreviewed
CVE-2006-3014
was published
May 1, 2022
Sylpheed-Claws before 2.2.2 and Sylpheed before 2.2.6 allow remote attackers to bypass the URI...
Low
Unreviewed
CVE-2006-2920
was published
May 1, 2022
Mozilla Firefox 1.5.0.4, 2.0.x before 2.0.0.8, Mozilla Suite 1.7.13, Mozilla SeaMonkey 1.0.2 and...
Moderate
Unreviewed
CVE-2006-2894
was published
May 1, 2022
Firefox 1.5.0.2 does not fix all test cases associated with CVE-2006-1729, which allows remote...
Moderate
Unreviewed
CVE-2006-2782
was published
May 1, 2022
phpBB 2.0.20 does not verify user-specified input variable types before being passed to type...
Moderate
Unreviewed
CVE-2006-2219
was published
May 1, 2022
phpBB 2.0.20 does not properly verify user-specified input variables used as limits to SQL...
Moderate
Unreviewed
CVE-2006-2220
was published
May 1, 2022
The com_rss option (rss.php) in (1) Mambo and (2) Joomla! allows remote attackers to cause a...
Moderate
Unreviewed
CVE-2006-1957
was published
May 1, 2022
SCTP in Linux kernel before 2.6.16.17 allows remote attackers to cause a denial of service (crash...
High
Unreviewed
CVE-2006-1858
was published
May 1, 2022
Internet Explorer 6 for Windows XP SP2 and earlier allows remote attackers to spoof the address...
Moderate
Unreviewed
CVE-2006-1626
was published
May 1, 2022
Linux kernel before 2.6.13 allows local users to cause a denial of service (crash) via a dio...
Moderate
Unreviewed
CVE-2006-1528
was published
May 1, 2022
The sys_add_key function in the keyring code in Linux kernel 2.6.16.1 and 2.6.17-rc1, and...
Moderate
Unreviewed
CVE-2006-1522
was published
May 1, 2022
Microsoft Internet Explorer 5.01 through 6 allows remote attackers to conduct phishing attacks by...
Low
Unreviewed
CVE-2006-1192
was published
May 1, 2022
Bugzilla 2.16.10, 2.17 through 2.18.4, and 2.20 does not properly handle certain characters in...
Moderate
Unreviewed
CVE-2006-0914
was published
May 1, 2022
Linux kernel before 2.6.16.5 does not properly handle uncanonical return addresses on Intel EM64T...
Moderate
Unreviewed
CVE-2006-0744
was published
May 1, 2022
Unspecified vulnerability in Stack Group Bidding Protocol (SGBP) support in Cisco IOS 12.0...
High
Unreviewed
CVE-2006-0340
was published
May 1, 2022
fetchmail 6.3.0 and other versions before 6.3.2 allows remote attackers to cause a denial of...
Moderate
Unreviewed
CVE-2006-0321
was published
May 1, 2022
ProTip!
Advisories are also available from the
GraphQL API