GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,126
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,021
Swift
39
Unreviewed advisories
All unreviewed
5,000+
12,432 advisories
Filter by severity
WebKit in Apple Safari before 4.0 allows remote attackers to spoof the browser's display of (1)...
Low
Unreviewed
CVE-2009-1710
was published
May 2, 2022
CFNetwork in Apple Safari before 4.0 on Windows does not properly protect the temporary files...
Low
Unreviewed
CVE-2009-1716
was published
May 2, 2022
Race condition in the Reset Safari implementation in Apple Safari before 4.0 on Windows might...
Low
Unreviewed
CVE-2009-1707
was published
May 2, 2022
Safari in Apple iPhone OS 1.0 through 2.2.1 and iPhone OS for iPod touch 1.1 through 2.2.1 does...
Low
Unreviewed
CVE-2009-1680
was published
May 2, 2022
The Profiles component in Apple iPhone OS 1.0 through 2.2.1 and iPhone OS for iPod touch 1.1...
Low
Unreviewed
CVE-2009-1679
was published
May 2, 2022
The Mailer component in Evolution 2.26.1 and earlier uses world-readable permissions for the ...
Low
Unreviewed
CVE-2009-1631
was published
May 2, 2022
Multiple cross-site scripting (XSS) vulnerabilities in Leap CMS 0.1.4 allow remote attackers to...
Low
Unreviewed
CVE-2009-1614
was published
May 2, 2022
img/main.cgi on the Cisco Linksys WVC54GCA wireless video camera with firmware 1.00R22 and 1...
Low
Unreviewed
CVE-2009-1556
was published
May 2, 2022
ASP.NET in Microsoft .NET Framework 2.0 SP1 and SP2 and 3.5 Gold and SP1, when ASP 2.0 is used in...
Low
Unreviewed
CVE-2009-1536
was published
May 2, 2022
Application Access Server (A-A-S) 2.0.48 stores (1) passwords and (2) the port keyword in...
Low
Unreviewed
CVE-2009-1466
was published
May 2, 2022
Cross-site scripting (XSS) vulnerability in the Create New Page form in razorCMS 0.3 RC2 and...
Low
Unreviewed
CVE-2009-1461
was published
May 2, 2022
NTRtScan.exe in Trend Micro OfficeScan Client 8.0 SP1 and 8.0 SP1 Patch 1 allows local users to...
Low
Unreviewed
CVE-2009-1435
was published
May 2, 2022
The eCryptfs support utilities (ecryptfs-utils) 73-0ubuntu6.1 on Ubuntu 9.04 stores the mount...
Low
Unreviewed
CVE-2009-1296
was published
May 2, 2022
Apport before 0.108.4 on Ubuntu 8.04 LTS, before 0.119.2 on Ubuntu 8.10, and before 1.0-0ubuntu5...
Low
Unreviewed
CVE-2009-1295
was published
May 2, 2022
UCM-CQ in IBM Rational ClearCase 7.0.0.x before 7.0.0.5, 7.0.1.x before 7.0.1.4, and 7.1.x before...
Low
Unreviewed
CVE-2009-1292
was published
May 2, 2022
Multiple cross-site scripting (XSS) vulnerabilities in Joomla! 1.5 through 1.5.9 allow remote...
Low
Unreviewed
CVE-2009-1279
was published
May 2, 2022
XScreenSaver in Sun Solaris 10 and OpenSolaris before snv_109, and Solaris 8 and 9 with GNOME 2.0...
Low
Unreviewed
CVE-2009-1276
was published
May 2, 2022
net/ipv4/udp.c in the Linux kernel before 2.6.29.1 performs an unlocking step in certain...
Low
Unreviewed
CVE-2009-1243
was published
May 2, 2022
Race condition in GNU screen 4.0.3 allows local users to create or overwrite arbitrary files via...
Low
Unreviewed
CVE-2009-1215
was published
May 2, 2022
The _dbus_validate_signature_with_reason function (dbus-marshal-validate.c) in D-Bus (aka DBus)...
Low
Unreviewed
CVE-2009-1189
was published
May 2, 2022
Buffer overflow in the util_path_encode function in udev/lib/libudev-util.c in udev before 1.4.1...
Low
Unreviewed
CVE-2009-1186
was published
May 2, 2022
IBM WebSphere Application Server (WAS) 7.0 before 7.0.0.3 uses weak permissions (777) for files...
Low
Unreviewed
CVE-2009-1173
was published
May 2, 2022
Cisco IOS XR 3.8.1 and earlier allows remote attackers to cause a denial of service (process...
Low
Unreviewed
CVE-2009-1154
was published
May 2, 2022
Unspecified vulnerability in the Password Policy component in Oracle Database 11.1.0.6 allows...
Low
Unreviewed
CVE-2009-0988
was published
May 2, 2022
IBM WebSphere MQ 6.0 before 6.0.2.8 and 7.0 before 7.0.1.0 does not properly handle long group...
Low
Unreviewed
CVE-2009-0905
was published
May 2, 2022
ProTip!
Advisories are also available from the
GraphQL API