GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
40
GitHub Actions
41
Go
3,005
Maven
5,000+
npm
4,733
NuGet
788
pip
4,343
Pub
12
RubyGems
987
Rust
1,137
Swift
50
Unreviewed advisories
All unreviewed
5,000+
317,251 advisories
Filter by severity
SQL injection vulnerability in KTP Computer Customer Database (KTPCCD) CMS, when magic_quotes_gpc...
Moderate
Unreviewed
CVE-2008-5954
was published
May 17, 2022
Nukeviet 2.0 Beta allows remote attackers to bypass authentication and gain administrative access...
High
Unreviewed
CVE-2008-5945
was published
May 17, 2022
xend in Xen 3.3.0 does not properly restrict a guest VM's write access within the /local/domain...
High
Unreviewed
CVE-2008-5716
was published
May 17, 2022
Multiple unspecified vulnerabilities in the web management interface in Avaya Communication...
High
Unreviewed
CVE-2008-5709
was published
May 17, 2022
Multiple unspecified vulnerabilities in the ModSecurity (aka mod_security) module 2.5.0 through 2...
Moderate
Unreviewed
CVE-2008-5676
was published
May 17, 2022
Multiple PHP remote file inclusion vulnerabilities in Meet#Web 0.8 allow remote attackers to...
High
Unreviewed
CVE-2008-6066
was published
May 17, 2022
Directory traversal vulnerability in Yerba SACphp 6.3 allows remote attackers to read arbitrary...
Moderate
Unreviewed
CVE-2008-5867
was published
May 17, 2022
Untrusted search path vulnerability in the (1) "VST plugin with Python scripting" and (2) "VST...
Moderate
Unreviewed
CVE-2008-5986
was published
May 17, 2022
The SmartPoster implementation on the Nokia 6131 Near Field Communication (NFC) phone with 05.12...
Low
Unreviewed
CVE-2008-5825
was published
May 17, 2022
MediaWiki 1.11, and other versions before 1.13.3, does not properly protect against the download...
Moderate
Unreviewed
CVE-2008-5687
was published
May 17, 2022
The ACL handling in rsyslog 3.12.1 to 3.20.0, 4.1.0, and 4.1.1 does not follow $AllowedSender...
High
Unreviewed
CVE-2008-5617
was published
May 17, 2022
SQL injection vulnerability in profile_social.php in i-Net Solution Orkut Clone allows remote...
Moderate
Unreviewed
CVE-2008-5970
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in seeurl.php in Xavier Flahaut URLStreet 1.0 allows...
Moderate
Unreviewed
CVE-2008-6205
was published
May 17, 2022
internettoolbar/edit.php in YourPlace 1.0.2 and earlier does not end execution when an invalid...
Moderate
Unreviewed
CVE-2008-6774
was published
May 17, 2022
connection.php in FlashChat 5.0.8 allows remote attackers to bypass the role filter mechanism and...
High
Unreviewed
CVE-2008-6799
was published
May 17, 2022
wp-admin/upgrade.php in WordPress, probably 2.6.x, allows remote attackers to upgrade the...
High
Unreviewed
CVE-2008-6767
was published
May 17, 2022
Stack-based buffer overflow in the IPureServer::_Recieve function in S.T.A.L.K.E.R.: Shadow of...
High
Unreviewed
CVE-2008-6703
was published
May 17, 2022
Multiple PHP remote file inclusion vulnerabilities in ComScripts TEAM Quick Classifieds 1.0 via...
High
Unreviewed
CVE-2008-6543
was published
May 17, 2022
Potential speculative code store bypass in all supported CPU products, in conjunction with...
Moderate
Unreviewed
CVE-2021-26313
was published
May 24, 2022
Conductor.exe in Intrinsic Swimage Encore before 5.0.1.21 contains a hardcoded password, which...
Low
Unreviewed
CVE-2008-6191
was published
May 17, 2022
The Web management interface in Avaya SIP Enablement Services (SES) 3.x and 4.0, as used with...
Moderate
Unreviewed
CVE-2008-6707
was published
May 17, 2022
JBook stores sensitive information under the web root with insufficient access control, which...
Moderate
Unreviewed
CVE-2008-6375
was published
May 17, 2022
Multiple cross-site scripting (XSS) vulnerabilities in Camera Life 2.6.2b8 allow remote attackers...
Moderate
Unreviewed
CVE-2008-6295
was published
May 17, 2022
Multiple cross-site scripting (XSS) vulnerabilities in MODx before 0.9.6.3 allow remote attackers...
Moderate
Unreviewed
CVE-2008-5942
was published
May 17, 2022
Multiple unspecified vulnerabilities in PrestaShop e-Commerce Solution before 1.1 Beta 2 (aka 1.1...
High
Unreviewed
CVE-2008-5791
was published
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API