GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
44
GitHub Actions
47
Go
3,295
Maven
5,000+
npm
5,000+
NuGet
876
pip
4,524
Pub
12
RubyGems
1,008
Rust
1,194
Swift
51
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
11,643 advisories
Filter by severity
On affected 7130 Series FPGA platforms running MOS and recent versions of the MultiAccess FPGA,...
Low
Unreviewed
CVE-2023-6068
was published
Mar 4, 2024
The uipc system calls (uipc_syscalls.c) in OpenBSD 2.9 and 3.0 provide user mode return instead...
Low
Unreviewed
CVE-2001-1559
was published
Apr 30, 2022
Pedestal Software Integrity Protection Driver (IPD) 1.3 and earlier allows privileged attackers,...
Low
Unreviewed
CVE-2003-1233
was published
Apr 29, 2022
mod_gzip 1.3.26.1a and earlier, and possibly later official versions, when running in debug mode...
Low
Unreviewed
CVE-2003-0844
was published
Apr 29, 2022
WFTPD Pro Server 3.21 Release 1, with the XeroxDocutech option enabled, allows local users to...
Low
Unreviewed
CVE-2004-0342
was published
Apr 29, 2022
Shared memory sections and events in IBM DB2 8.1 have default permissions of read and write for...
Low
Unreviewed
CVE-2005-4868
was published
May 1, 2022
Vulnerable endpoints accept user-controlled input through a URL in JSON format which enables...
Low
Unreviewed
CVE-2025-11571
was published
Mar 24, 2026
Incorrect Authorization (CWE-863) vulnerability in Apache Artemis, Apache ActiveMQ Artemis exists...
Low
Unreviewed
CVE-2026-32642
was published
Mar 24, 2026
Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling') vulnerability in...
Low
Unreviewed
CVE-2026-4742
was published
Mar 24, 2026
A flaw was found in the interactive shell of the xmllint command-line tool, used for parsing XML...
Low
Unreviewed
CVE-2025-6170
was published
Jun 16, 2025
A vulnerability, which was classified as problematic, has been found in Bdtask Bhojon Best...
Low
Unreviewed
CVE-2024-1749
was published
Feb 22, 2024
IBM InfoSphere Information Server 11.7 could allow an authenticated privileged user to obtain the...
Low
Unreviewed
CVE-2023-50955
was published
Feb 21, 2024
In wolfSSL 5.8.4, constant-time masking logic in sp_256_get_entry_256_9 is optimized into...
Low
Unreviewed
CVE-2026-3580
was published
Mar 19, 2026
wolfSSL 5.8.4 on RISC-V RV32I architectures lacks a constant-time software implementation for 64...
Low
Unreviewed
CVE-2026-3579
was published
Mar 19, 2026
A security flaw has been discovered in kalcaddle kodbox 1.64. The impacted element is an unknown...
Low
Unreviewed
CVE-2026-4590
was published
Mar 23, 2026
A security vulnerability has been detected in Shenzhen HCC Technology MPOS M6 PLUS 1V.31-N....
Low
Unreviewed
CVE-2026-4582
was published
Mar 23, 2026
A flaw has been found in Shenzhen HCC Technology MPOS M6 PLUS 1V.31-N. This affects an unknown...
Low
Unreviewed
CVE-2026-4584
was published
Mar 23, 2026
A flaw was found in Keycloak. A remote attacker can exploit differential error messages during...
Low
Unreviewed
CVE-2026-4633
was published
Mar 23, 2026
A vulnerability was detected in Shenzhen HCC Technology MPOS M6 PLUS 1V.31-N. Affected by this...
Low
Unreviewed
CVE-2026-4583
was published
Mar 23, 2026
The rasterization process in Inkscape before 0.48.4 allows local users to read arbitrary files...
Low
Unreviewed
CVE-2012-5656
was published
May 17, 2022
net/ipv4/udp.c in the Linux kernel before 2.6.29.1 performs an unlocking step in certain...
Low
Unreviewed
CVE-2009-1243
was published
May 2, 2022
The inode double locking code in fs/ocfs2/file.c in the Linux kernel 2.6.30 before 2.6.30-rc3, 2...
Low
Unreviewed
CVE-2009-1961
was published
May 2, 2022
The nlmclnt_mark_reclaim in clntlock.c in NFS lockd in Linux kernel before 2.6.16 allows remote...
Low
Unreviewed
CVE-2006-5158
was published
May 1, 2022
The Server Message Block (SMB) driver (MRXSMB.SYS) in Microsoft Windows 2000 SP4, XP SP1 and SP2,...
Low
Unreviewed
CVE-2006-2374
was published
May 1, 2022
A vulnerability classified as problematic was found in Totolink X6000R 9.4.0cu.852_B20230719....
Low
Unreviewed
CVE-2024-1661
was published
Feb 20, 2024
ProTip!
Advisories are also available from the
GraphQL API