GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,126
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,021
Swift
39
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
1,333 advisories
Filter by severity
Unspecified vulnerability in the Image Converter functionality in BEA WebLogic Mobility Server 3...
High
Unreviewed
CVE-2007-6384
was published
May 1, 2022
cp.php in DeluxeBB 1.09 does not verify that the membercookie parameter corresponds to the...
High
Unreviewed
CVE-2007-6237
was published
May 1, 2022
index.php in FTP Admin 0.1.0 allows remote attackers to bypass authentication and obtain...
High
Unreviewed
CVE-2007-6234
was published
May 1, 2022
The American Power Conversion (APC) AP7932 0u 30amp Switched Rack Power Distribution Unit (PDU),...
High
Unreviewed
CVE-2007-6226
was published
May 1, 2022
Unspecified vulnerability in main.php of BugHotel Reservation System before 4.9.9 P3 allows...
High
Unreviewed
CVE-2007-6011
was published
May 1, 2022
TestLink before 1.7.1 does not enforce an unspecified authorization mechanism, which has unknown...
High
Unreviewed
CVE-2007-6006
was published
May 1, 2022
blocks/shoutbox_block.php in BtiTracker 1.4.4 does not verify user accounts, which allows remote...
High
Unreviewed
CVE-2007-5988
was published
May 1, 2022
Java in Mac OS X 10.4 through 10.4.11 allows remote attackers to bypass Keychain access controls...
High
Unreviewed
CVE-2007-5862
was published
May 1, 2022
SQLLoginModule in Apache Geronimo 2.0 through 2.1 does not throw an exception for a nonexistent...
High
Unreviewed
CVE-2007-5797
was published
May 1, 2022
The Vonage Motorola Phone Adapter VT 2142-VD does not properly verify that a SIP INVITE message...
High
Unreviewed
CVE-2007-5791
was published
May 1, 2022
adduser.php in PHP-AGTC Membership (AGTC-Membership) System 1.1a does not require authentication,...
High
Unreviewed
CVE-2007-5752
was published
May 1, 2022
Basic Analysis and Security Engine (BASE) before 1.3.8 sends a redirect to the web browser but...
High
Unreviewed
CVE-2007-5578
was published
May 1, 2022
Unspecified vulnerability in HP Select Identity 4.01 through 4.01.010 and 4.10 through 4.13.001...
High
Unreviewed
CVE-2007-5391
was published
May 1, 2022
The Thomson/Alcatel SpeedTouch 7G router, as used for the BT Home Hub 6.2.6.B and earlier, allows...
High
Unreviewed
CVE-2007-5383
was published
May 1, 2022
Sun Java System Access Manager 7.1, when installed in a Sun Java System Application Server 9.1...
High
Unreviewed
CVE-2007-5152
was published
May 1, 2022
NetSupport Manager Client before 10.20.0004 allows remote attackers to bypass the (1) basic and ...
High
Unreviewed
CVE-2007-5057
was published
May 1, 2022
Multiple command handlers in CA (Computer Associates) BrightStor ARCserve Backup for Laptops and...
High
Unreviewed
CVE-2007-5006
was published
May 1, 2022
The logins command in HP-UX B.11.31, B.11.23, and B.11.11 does not correctly report password...
High
Unreviewed
CVE-2007-5008
was published
May 1, 2022
The telnet service in Cisco Video Surveillance IP Gateway Encoder/Decoder (Standalone and Module)...
High
Unreviewed
CVE-2007-4747
was published
May 1, 2022
The SecurityAgent component in Mac OS X 10.4 through 10.4.10 allows attackers with physical...
High
Unreviewed
CVE-2007-4693
was published
May 1, 2022
The login method in LoginModule implementations in Apache Geronimo 2.0 does not throw...
High
Unreviewed
CVE-2007-4548
was published
May 1, 2022
Admin.php in Olate Download (od) 3.4.1 uses an MD5 hash of the admin username, user id, and group...
High
Unreviewed
CVE-2007-4419
was published
May 1, 2022
Fedora Commons before 2.2.1 does not properly handle certain authentication requests involving...
High
Unreviewed
CVE-2007-4364
was published
May 1, 2022
Session fixation vulnerability in Mambo 4.6.2 CMS allows remote attackers to hijack web sessions...
High
Unreviewed
CVE-2007-4203
was published
May 1, 2022
Session fixation vulnerability in Zen Cart 1.3.7 and earlier allows remote attackers to hijack...
High
Unreviewed
CVE-2007-3597
was published
May 1, 2022
ProTip!
Advisories are also available from the
GraphQL API