GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,126
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,021
Swift
39
Unreviewed advisories
All unreviewed
5,000+
1,163 advisories
Filter by severity
rm_mlcache_file in bos.rte.install in AIX 5.1.0 through 5.3.0 allows local users to overwrite...
Low
Unreviewed
CVE-2006-1247
was published
May 1, 2022
openexec in OpenBase SQL before 10.0.1 allows local users to create arbitrary files via a symlink...
Low
Unreviewed
CVE-2006-5851
was published
May 1, 2022
Certain setuid DB2 binaries in IBM DB2 before 9 Fix Pack 2 for Linux and Unix allow local users...
Moderate
Unreviewed
CVE-2007-1027
was published
May 1, 2022
Session fixation vulnerability in eggblog 3.1.0 and earlier allows remote attackers to hijack web...
Moderate
Unreviewed
CVE-2007-2978
was published
May 1, 2022
The init.d script for the X.Org X11 xfs font server on various Linux distributions might allow...
Moderate
Unreviewed
CVE-2007-3103
was published
May 1, 2022
The main function in skkdic-expr.c in SKK Tools 1.2 allows local users to overwrite or delete...
Moderate
Unreviewed
CVE-2007-3916
was published
May 1, 2022
(1) xenbaked and (2) xenmon.py in Xen 3.1 and earlier allow local users to truncate arbitrary...
Moderate
Unreviewed
CVE-2007-3919
was published
May 1, 2022
gforge 3.1 and 4.5.14 allows local users to truncate arbitrary files via a symlink attack on...
Low
Unreviewed
CVE-2007-3921
was published
May 1, 2022
CoolKey 1.1.0 allows local users to overwrite arbitrary files via a symlink attack on temporary...
Low
Unreviewed
CVE-2007-4129
was published
May 1, 2022
KDE Konqueror 3.5.7 allows remote attackers to spoof the URL address bar by calling setInterval...
Moderate
Unreviewed
CVE-2007-4224
was published
May 1, 2022
The DataLoader::doStart function in dataloader.cpp in QGit 1.5.6 and other versions up to 2pre1...
Moderate
Unreviewed
CVE-2007-4631
was published
May 1, 2022
The session extension in PHP before 5.2.4 might allow local users to bypass open_basedir...
Moderate
Unreviewed
CVE-2007-4652
was published
May 1, 2022
cp, when running with an option to preserve symlinks on multiple OSes, allows local, user...
Moderate
Unreviewed
CVE-2007-4998
was published
May 1, 2022
hugin, as used on various operating systems including SUSE openSUSE 10.2 and 10.3, allows local...
Low
Unreviewed
CVE-2007-5200
was published
May 1, 2022
guilt 0.27 allows local users to overwrite arbitrary files via a symlink attack on a guilt.log....
Low
Unreviewed
CVE-2007-5207
was published
May 1, 2022
The (1) tramp-make-temp-file and (2) tramp-make-tramp-temp-file functions in Tramp 2.1.10...
Moderate
Unreviewed
CVE-2007-5377
was published
May 1, 2022
The web console in CA (formerly Computer Associates) eTrust ITM (Threat Manager) 8.1 allows...
Moderate
Unreviewed
CVE-2007-5437
was published
May 1, 2022
sealert in setroubleshoot 2.0.5 allows local users to overwrite arbitrary files via a symlink...
Moderate
Unreviewed
CVE-2007-5495
was published
May 1, 2022
db2dasrrm in the DB2 Administration Server (DAS) in IBM DB2 Universal Database 9.5 before Fix...
Moderate
Unreviewed
CVE-2007-5664
was published
May 1, 2022
Open redirect vulnerability in command.php in SiteBar 3.3.8 allows remote attackers to redirect...
Moderate
Unreviewed
CVE-2007-5695
was published
May 1, 2022
vobcopy 0.5.14 allows local users to append data to an arbitrary file, or create an arbitrary new...
Moderate
Unreviewed
CVE-2007-5718
was published
May 1, 2022
The e_hostname function in commands.c in BitchX 1.1a allows local users to overwrite arbitrary...
Moderate
Unreviewed
CVE-2007-5839
was published
May 1, 2022
feynmf.pl in feynmf 1.08, as used in TeXLive 2007, allows local users to overwrite arbitrary...
Moderate
Unreviewed
CVE-2007-5940
was published
May 1, 2022
Audacity 1.3.2 creates a temporary directory with a predictable name without checking for...
Moderate
Unreviewed
CVE-2007-6061
was published
May 1, 2022
sylprint.pl in claws mail tools (claws-mail-tools) allows local users to overwrite arbitrary...
Low
Unreviewed
CVE-2007-6208
was published
May 1, 2022
ProTip!
Advisories are also available from the
GraphQL API