GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
102
GitHub Actions
54
Go
4,347
Maven
5,000+
npm
5,000+
NuGet
1,042
pip
5,000+
Pub
13
RubyGems
1,122
Rust
1,498
Swift
61
Unreviewed advisories
All unreviewed
5,000+
15,587 advisories
Filter by severity
Unspecified vulnerability in the utaudiod daemon in Sun Ray Server Software (SRSS) 4.0, when...
Low
Unreviewed
CVE-2009-2490
was published
May 2, 2022
PerfServlet in the PMI/Performance Tools component in IBM WebSphere Application Server (WAS) 6.0...
Low
Unreviewed
CVE-2009-0434
was published
May 2, 2022
Multiple cross-site scripting (XSS) vulnerabilities in Joomla! 1.5 through 1.5.9 allow remote...
Low
Unreviewed
CVE-2009-1279
was published
May 2, 2022
UCM-CQ in IBM Rational ClearCase 7.0.0.x before 7.0.0.5, 7.0.1.x before 7.0.1.4, and 7.1.x before...
Low
Unreviewed
CVE-2009-1292
was published
May 2, 2022
Apport before 0.108.4 on Ubuntu 8.04 LTS, before 0.119.2 on Ubuntu 8.10, and before 1.0-0ubuntu5...
Low
Unreviewed
CVE-2009-1295
was published
May 2, 2022
The eCryptfs support utilities (ecryptfs-utils) 73-0ubuntu6.1 on Ubuntu 9.04 stores the mount...
Low
Unreviewed
CVE-2009-1296
was published
May 2, 2022
Unspecified vulnerability in the utdmsession program in Sun Ray Server Software (SRSS) 4.0 allows...
Low
Unreviewed
CVE-2009-2489
was published
May 2, 2022
Race condition in GNU screen 4.0.3 allows local users to create or overwrite arbitrary files via...
Low
Unreviewed
CVE-2009-1215
was published
May 2, 2022
An input validation vulnerability exists in Openshift Enterprise due to a 1:1 mapping of tenants...
Low
Unreviewed
CVE-2017-7517
was published
Oct 17, 2022
Cross-site scripting (XSS) vulnerability in add_voting.php in KerviNet Forum 1.1 and earlier...
Low
Unreviewed
CVE-2009-2327
was published
May 2, 2022
listing.php in WebSVN 2.0 and possibly 1.7 beta, when using an SVN authz file, allows remote...
Low
Unreviewed
CVE-2009-0240
was published
May 2, 2022
FreeBSD 6.3, 6.4, 7.1, and 7.2 does not enforce permissions on the SIOCSIFINFO_IN6 IOCTL, which...
Low
Unreviewed
CVE-2009-2208
was published
May 2, 2022
The LAN game feature in Carom3D 5.06 allows remote authenticated users to cause a denial of...
Low
Unreviewed
CVE-2009-2173
was published
May 2, 2022
Multiple cross-site scripting (XSS) vulnerabilities in the Print (aka Printer, e-mail and PDF...
Low
Unreviewed
CVE-2009-3210
was published
May 2, 2022
Cross-site scripting (XSS) vulnerability in the term data detail page in Taxonomy manager 5.x...
Low
Unreviewed
CVE-2009-2083
was published
May 2, 2022
The clone system call in the Linux kernel 2.6.28 and earlier allows local users to send arbitrary...
Low
Unreviewed
CVE-2009-0028
was published
May 2, 2022
The Migration component in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.25 and 7.0...
Low
Unreviewed
CVE-2009-2089
was published
May 2, 2022
Multiple cross-site scripting (XSS) vulnerabilities in the ImageCache module 5.x before 5.x-2.5...
Low
Unreviewed
CVE-2009-3206
was published
May 2, 2022
smbfs in Sun OpenSolaris snv_84 through snv_110, when default mount permissions are used, allows...
Low
Unreviewed
CVE-2009-2031
was published
May 2, 2022
dscl in DS Tools in Apple Mac OS X 10.4.11 and 10.5.6 requires that passwords must be provided as...
Low
Unreviewed
CVE-2009-0013
was published
May 2, 2022
The SIP channel driver in Asterisk Open Source 1.4.22, 1.4.23, and 1.4.23.1; 1.6.0 before 1.6.0.6...
Low
Unreviewed
CVE-2009-0871
was published
May 2, 2022
Cross-site scripting (XSS) vulnerability in the Administration interface in Cisco Customer...
Low
Unreviewed
CVE-2009-2048
was published
May 2, 2022
Unspecified vulnerability in idmap in Sun OpenSolaris snv_88 through snv_110, when a CIFS server...
Low
Unreviewed
CVE-2009-2012
was published
May 2, 2022
Cross-site scripting (XSS) vulnerability in the console in Symantec SecurityExpressions Audit and...
Low
Unreviewed
CVE-2009-3029
was published
May 2, 2022
Unspecified vulnerability in the Auditing component in Oracle Database 9.2.0.8, 9.2.0.8DV, 10.1.0...
Low
Unreviewed
CVE-2009-1972
was published
May 2, 2022
ProTip!
Advisories are also available from the
GraphQL API