GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,871
Erlang
37
GitHub Actions
36
Go
2,504
Maven
5,000+
npm
4,149
NuGet
735
pip
3,949
Pub
12
RubyGems
945
Rust
1,025
Swift
39
Unreviewed advisories
All unreviewed
5,000+
11,469 advisories
Filter by severity
Unrestricted file upload vulnerability in ajax/addComment.php in telepark.wiki 2.4.23 and earlier...
High
Unreviewed
CVE-2009-4090
was published
May 2, 2022
CRLF injection vulnerability in Xerver HTTP Server 4.31 and 4.32 allows remote attackers to...
Moderate
Unreviewed
CVE-2009-4086
was published
May 2, 2022
Home FTP Server 1.10.1.139 allows remote attackers to cause a denial of service (daemon outage)...
Moderate
Unreviewed
CVE-2009-4051
was published
May 2, 2022
The do_insn_fetch function in arch/x86/kvm/emulate.c in the x86 emulator in the KVM subsystem in...
High
Unreviewed
CVE-2009-4031
was published
May 2, 2022
The vio_verify_callback function in viosslfactories.c in MySQL 5.0.x before 5.0.88 and 5.1.x...
Moderate
Unreviewed
CVE-2009-4028
was published
May 2, 2022
The management interface on the 2wire Gateway 1700HG, 1701HG, 1800HW, 2071, 2700HG, and 2701HG-T...
High
Unreviewed
CVE-2009-3962
was published
May 2, 2022
Incomplete blacklist vulnerability in browser/download/download_exe.cc in Google Chrome before 3...
High
Unreviewed
CVE-2009-3931
was published
May 2, 2022
The download functionality in Team Services in Microsoft Office SharePoint Server 2007 12.0.0...
Moderate
Unreviewed
CVE-2009-3830
was published
May 2, 2022
Amiro.CMS 5.4.0.0 and earlier allows remote attackers to obtain sensitive information via an...
Moderate
Unreviewed
CVE-2009-3802
was published
May 2, 2022
Unrestricted file upload vulnerability in Opial 1.0 allows remote attackers to execute arbitrary...
High
Unreviewed
CVE-2009-3753
was published
May 2, 2022
The update_cr8_intercept function in arch/x86/kvm/x86.c in the KVM subsystem in the Linux kernel...
Moderate
Unreviewed
CVE-2009-3640
was published
May 2, 2022
The decode_entities function in util.c in HTML-Parser before 3.63 allows context-dependent...
Moderate
Unreviewed
CVE-2009-3627
was published
May 2, 2022
The ATI Rage 128 (aka r128) driver in the Linux kernel before 2.6.31-git11 does not properly...
Moderate
Unreviewed
CVE-2009-3620
was published
May 2, 2022
Dopewars 1.5.12 allows remote attackers to cause a denial of service (segmentation fault) via a...
Moderate
Unreviewed
CVE-2009-3591
was published
May 2, 2022
packet-paltalk.c in the Paltalk dissector in Wireshark 1.2.0 through 1.2.2, on SPARC and certain...
Moderate
Unreviewed
CVE-2009-3549
was published
May 2, 2022
DataWizard Technologies FtpXQ FTP Server 3.0 allows remote authenticated users to cause a denial...
Moderate
Unreviewed
CVE-2009-3545
was published
May 2, 2022
aavmKer4.sys in avast! Home and Professional for Windows before 4.8.1356 does not properly...
Moderate
Unreviewed
CVE-2009-3523
was published
May 2, 2022
Adobe Reader and Acrobat 7.x before 7.1.4, 8.x before 8.1.7, and 9.x before 9.2 do not properly...
High
Unreviewed
CVE-2009-3458
was published
May 2, 2022
npvmgr.exe in BakBone NetVault Backup 8.22 Build 29 allows remote attackers to cause a denial of...
Moderate
Unreviewed
CVE-2009-3448
was published
May 2, 2022
Polipo 1.0.4, and possibly other versions, allows remote attackers to cause a denial of service ...
Moderate
Unreviewed
CVE-2009-3305
was published
May 2, 2022
The php_openssl_apply_verification_policy function in PHP before 5.2.11 does not properly perform...
High
Unreviewed
CVE-2009-3291
was published
May 2, 2022
Apple Safari on iPhone OS 3.0.1 allows remote attackers to cause a denial of service (application...
Moderate
Unreviewed
CVE-2009-3271
was published
May 2, 2022
The saveForwardAttachments procedure in the Compose Mail functionality in vtiger CRM 5.0.4 allows...
High
Unreviewed
CVE-2009-3250
was published
May 2, 2022
OpenSSL before 0.9.8m does not check for a NULL return value from bn_wexpand function calls in (1...
High
Unreviewed
CVE-2009-3245
was published
May 2, 2022
SolarWinds TFTP Server 9.2.0.111 and earlier allows remote attackers to cause a denial of service...
Moderate
Unreviewed
CVE-2009-3115
was published
May 2, 2022
ProTip!
Advisories are also available from the
GraphQL API