GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,126
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,021
Swift
39
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
10,889 advisories
Filter by severity
ZoneAlarm 2.1 through 2.6 and ZoneAlarm Pro 2.4 and 2.6 allows local users to bypass filtering...
Low
Unreviewed
CVE-2001-1548
was published
Apr 30, 2022
The uipc system calls (uipc_syscalls.c) in OpenBSD 2.9 and 3.0 provide user mode return instead...
Low
Unreviewed
CVE-2001-1559
was published
Apr 30, 2022
Linux kernel 2.2.19 enables CAP_SYS_RESOURCE for setuid processes, which allows local users to...
Low
Unreviewed
CVE-2001-1551
was published
Apr 30, 2022
CentraOne 5.2 and Centra ASP with basic authentication enabled creates world-writable base64...
Low
Unreviewed
CVE-2001-1550
was published
Apr 30, 2022
mod_usertrack in Apache 1.3.11 through 1.3.20 generates session ID's using predictable...
Low
Unreviewed
CVE-2001-1534
was published
Apr 30, 2022
Cross-site scripting (XSS) vulnerability in user.php in PostNuke 0.64 allows remote attackers to...
Low
Unreviewed
CVE-2001-1521
was published
Apr 30, 2022
Xircom REX 6000 allows local users to obtain the 10 digit PIN by starting a serial monitor,...
Low
Unreviewed
CVE-2001-1520
was published
Apr 30, 2022
easyNews 1.5 and earlier stores administration passwords in cleartext in settings.php, which...
Low
Unreviewed
CVE-2001-1527
was published
Apr 30, 2022
** DISPUTED ** RunAs (runas.exe) in Windows 2000 stores cleartext authentication information in...
Low
Unreviewed
CVE-2001-1517
was published
Apr 30, 2022
** DISPUTED ** RunAs (runas.exe) in Windows 2000 allows local users to create a spoofed named...
Low
Unreviewed
CVE-2001-1519
was published
Apr 30, 2022
RunAs (runas.exe) in Windows 2000 only creates one session instance at a time, which allows local...
Low
Unreviewed
CVE-2001-1518
was published
Apr 30, 2022
The finger daemon (in.fingerd) in Sun Solaris 2.5 through 8 and SunOS 5.5 through 5.8 allows...
Low
Unreviewed
CVE-2001-1503
was published
Apr 30, 2022
Microsoft Internet Explorer 4.0 through 6.0 could allow local users to differentiate between...
Low
Unreviewed
CVE-2001-1497
was published
Apr 30, 2022
script command in the util-linux package before 2.11n allows local users to overwrite arbitrary...
Low
Unreviewed
CVE-2001-1494
was published
Apr 30, 2022
smcboot in Sun SMC (Sun Management Center) 2.0 in Solaris 8 allows local users to delete...
Low
Unreviewed
CVE-2001-1479
was published
Apr 30, 2022
Microsoft Internet Explorer 5.0 through 6.0 allows attackers to cause a denial of service ...
Low
Unreviewed
CVE-2001-1450
was published
Apr 30, 2022
Buffer overflow in the text editor functionality in HP-UX 10.01 through 11.04 on HP9000 Series...
Low
Unreviewed
CVE-2001-1439
was published
Apr 30, 2022
nidump on MacOS X before 10.3 allows local users to read the encrypted passwords from the...
Low
Unreviewed
CVE-2001-1412
was published
Apr 30, 2022
Unknown vulnerabilities in the UDP port allocation for Linux kernel before 2.2.19 could allow...
Low
Unreviewed
CVE-2001-1400
was published
Apr 30, 2022
process_bug.cgi in Bugzilla before 2.14 does not set the "groupset" bit when a bug is moved...
Low
Unreviewed
CVE-2001-1406
was published
Apr 30, 2022
Certain operations in Linux kernel before 2.2.19 on the x86 architecture copy the wrong number of...
Low
Unreviewed
CVE-2001-1399
was published
Apr 30, 2022
dexconf in XFree86 Xserver 4.1.0-2 creates the /dev/dri directory with insecure permissions (666)...
Low
Unreviewed
CVE-2001-1409
was published
Apr 30, 2022
Bugzilla before 2.14 does not restrict access to sanitycheck.cgi, which allows local users to...
Low
Unreviewed
CVE-2001-1405
was published
Apr 30, 2022
The System V (SYS5) shared memory implementation for Linux kernel before 2.2.19 could allow...
Low
Unreviewed
CVE-2001-1397
was published
Apr 30, 2022
Unknown vulnerabilities in strnlen_user for Linux kernel before 2.2.19, with unknown impact.
Low
Unreviewed
CVE-2001-1396
was published
Apr 30, 2022
ProTip!
Advisories are also available from the
GraphQL API