GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,871
Erlang
37
GitHub Actions
36
Go
2,517
Maven
5,000+
npm
4,152
NuGet
736
pip
3,953
Pub
12
RubyGems
946
Rust
1,026
Swift
39
Unreviewed advisories
All unreviewed
5,000+
11,472 advisories
Filter by severity
The OpenType Compact Font Format (CFF) driver in Microsoft Windows XP SP2 and SP3, Windows Server...
High
Unreviewed
CVE-2011-0033
was published
May 3, 2022
Microsoft Data Access Components (MDAC) 2.8 SP1 and SP2, and Windows Data Access Components (WDAC...
High
Unreviewed
CVE-2011-0027
was published
May 3, 2022
IcedTea 1.7 before 1.7.8, 1.8 before 1.8.5, and 1.9 before 1.9.5 does not properly verify...
Moderate
Unreviewed
CVE-2011-0025
was published
May 3, 2022
Tor before 0.2.1.29 and 0.2.2.x before 0.2.2.21-alpha does not properly check the amount of...
Moderate
Unreviewed
CVE-2011-0015
was published
May 3, 2022
slapd (aka ns-slapd) in 389 Directory Server 1.2.7.5 (aka Red Hat Directory Server 8.2.x or...
High
Unreviewed
CVE-2011-0019
was published
May 3, 2022
The email function in manage_sql.c in OpenVAS Manager 1.0.x through 1.0.3 and 2.0.x through 2...
High
Unreviewed
CVE-2011-0018
was published
May 3, 2022
MediaWiki before 1.16.1, when user or site JavaScript or CSS is enabled, allows remote attackers...
Moderate
Unreviewed
CVE-2011-0003
was published
May 3, 2022
ISC BIND 9.0.x through 9.3.x, 9.4 before 9.4.3-P5, 9.5 before 9.5.2-P2, 9.6 before 9.6.1-P3, and...
Moderate
Unreviewed
CVE-2010-0097
was published
May 3, 2022
The Common Code Infrastructure component in IBM DB2 9.5 before FP5 and 9.7 before FP1 does not...
Moderate
Unreviewed
CVE-2009-4327
was published
May 3, 2022
The Client Interfaces component in IBM DB2 8.2 before FP18, 9.1 before FP8, 9.5 before FP5, and 9...
Moderate
Unreviewed
CVE-2009-4325
was published
May 3, 2022
Unspecified vulnerability in the server in IBM DB2 8 before FP17a, 9.1 before FP6a, and 9.5...
Moderate
Unreviewed
CVE-2009-0173
was published
May 3, 2022
Unspecified vulnerability in IBM DB2 8 before FP17a, 9.1 before FP6a, and 9.5 before FP3a allows...
Moderate
Unreviewed
CVE-2009-0172
was published
May 3, 2022
Unspecified vulnerability in the JDBC Applet Server Service (aka db2jds) in IBM DB2 UDB 8 before...
Moderate
Unreviewed
CVE-2008-3960
was published
May 3, 2022
NetBSD 3.0, 3.1, and 4.0, when a pppoe instance exists, does not properly check the length of a...
High
Unreviewed
CVE-2008-3584
was published
May 3, 2022
sys/netinet6/icmp6.c in the kernel in FreeBSD 6.3 through 7.1, NetBSD 3.0 through 4.0, and...
High
Unreviewed
CVE-2008-3530
was published
May 3, 2022
The IPv6 Neighbor Discovery Protocol (NDP) implementation in (1) FreeBSD 6.3 through 7.1, (2)...
High
Unreviewed
CVE-2008-2476
was published
May 3, 2022
The display driver allocattr functions in NetBSD 3.0 through 4.0_BETA2, and NetBSD-current before...
Low
Unreviewed
CVE-2007-3654
was published
May 3, 2022
PerlRun.pm in Apache mod_perl before 1.30, and RegistryCooker.pm in mod_perl 2.x, does not...
Moderate
Unreviewed
CVE-2007-1349
was published
May 3, 2022
The WDDX deserializer in the wddx extension in PHP 5 before 5.2.1 and PHP 4 before 4.4.5 does not...
Moderate
Unreviewed
CVE-2007-0908
was published
May 3, 2022
The accept function in NetBSD-current before 20061023, NetBSD 3.0 and 3.0.1 before 20061024, and...
Low
Unreviewed
CVE-2006-6653
was published
May 3, 2022
fetchmail before 6.3.6-rc4 does not properly enforce TLS and may transmit cleartext passwords...
High
Unreviewed
CVE-2006-5867
was published
May 3, 2022
Mozilla Network Security Service (NSS) library before 3.11.3, as used in Mozilla Firefox before 1...
Moderate
Unreviewed
CVE-2006-4340
was published
May 3, 2022
RIPd in Quagga 0.98 and 0.99 before 20060503 does not properly implement configurations that (1)...
Moderate
Unreviewed
CVE-2006-2223
was published
May 3, 2022
Mozilla Firefox 1.x before 1.5.0.2 and 1.0.x before 1.0.8, Mozilla Suite before 1.7.13, and...
Moderate
Unreviewed
CVE-2006-1729
was published
May 3, 2022
digestmd5.c in the CMU Cyrus Simple Authentication and Security Layer (SASL) library 2.1.18, and...
Low
Unreviewed
CVE-2006-1721
was published
May 3, 2022
ProTip!
Advisories are also available from the
GraphQL API