GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,963
Erlang
39
GitHub Actions
38
Go
2,615
Maven
5,000+
npm
4,255
NuGet
760
pip
4,036
Pub
12
RubyGems
953
Rust
1,049
Swift
45
Unreviewed advisories
All unreviewed
5,000+
12,670 advisories
Filter by severity
The sock_getsockopt function in net/core/sock.c in the Linux kernel before 2.6.28.6 does not...
Low
Unreviewed
CVE-2009-0676
was published
May 2, 2022
The skfp_ioctl function in drivers/net/skfp/skfddi.c in the Linux kernel before 2.6.28.6 permits...
Low
Unreviewed
CVE-2009-0675
was published
May 2, 2022
Cross-site scripting (XSS) vulnerability in index.php in the Link module 5.x-2.5 for Drupal 5.10...
Low
Unreviewed
CVE-2009-0603
was published
May 2, 2022
Format string vulnerability in Wireshark 0.99.8 through 1.0.5 on non-Windows platforms allows...
Low
Unreviewed
CVE-2009-0601
was published
May 2, 2022
VI Client in VMware VirtualCenter before 2.5 Update 4, VMware ESXi 3.5 before Update 4, and...
Low
Unreviewed
CVE-2009-0518
was published
May 2, 2022
IBM WebSphere Message Broker 6.1.x before 6.1.0.2 writes a database connection password to the...
Low
Unreviewed
CVE-2009-0503
was published
May 2, 2022
WSPolicy in the Web Services component in IBM WebSphere Application Server (WAS) 7.0.x before 7.0...
Low
Unreviewed
CVE-2009-0504
was published
May 2, 2022
The DBus configuration file for Wicd before 1.5.9 allows arbitrary users to own org.wicd.daemon,...
Low
Unreviewed
CVE-2009-0489
was published
May 2, 2022
Bugzilla 2.x before 2.22.7, 3.0 before 3.0.7, 3.2 before 3.2.1, and 3.3 before 3.3.2 allows...
Low
Unreviewed
CVE-2009-0481
was published
May 2, 2022
Cross-site scripting (XSS) vulnerability in the anonymous comments feature in lib-comment.php in...
Low
Unreviewed
CVE-2009-0455
was published
May 2, 2022
The Installation Factory installation process for IBM WebSphere Application Server (WAS) 6.0.2 on...
Low
Unreviewed
CVE-2009-0437
was published
May 2, 2022
Unspecified vulnerability in IBM WebSphere Application Server (WAS) 5.1.x before 5.1.1.19, 6.0.x...
Low
Unreviewed
CVE-2009-0433
was published
May 2, 2022
PerfServlet in the PMI/Performance Tools component in IBM WebSphere Application Server (WAS) 6.0...
Low
Unreviewed
CVE-2009-0434
was published
May 2, 2022
Untrusted search path vulnerability in trickle 1.07 allows local users to execute arbitrary code...
Low
Unreviewed
CVE-2009-0415
was published
May 2, 2022
Cross-site scripting (XSS) vulnerability in sysconf.cgi in Motorola Wimax modem CPEi300 allows...
Low
Unreviewed
CVE-2009-0393
was published
May 2, 2022
OpenSC before 0.11.7 allows physically proximate attackers to bypass intended PIN requirements...
Low
Unreviewed
CVE-2009-0368
was published
May 2, 2022
Mozilla Firefox 3.x before 3.0.6 does not properly implement the (1) no-store and (2) no-cache...
Low
Unreviewed
CVE-2009-0358
was published
May 2, 2022
Multiple cross-site scripting (XSS) vulnerabilities in Samizdat before 0.6.2 allow remote...
Low
Unreviewed
CVE-2009-0359
was published
May 2, 2022
Cross-domain vulnerability in js/src/jsobj.cpp in Mozilla Firefox 3.x before 3.0.6 allows remote...
Low
Unreviewed
CVE-2009-0354
was published
May 2, 2022
Directory traversal vulnerability in upgrade/index.php in OpenGoo 1.1, when register_globals is...
Low
Unreviewed
CVE-2009-0286
was published
May 2, 2022
listing.php in WebSVN 2.0 and possibly 1.7 beta, when using an SVN authz file, allows remote...
Low
Unreviewed
CVE-2009-0240
was published
May 2, 2022
XTerm in Apple Mac OS X 10.4.11 and 10.5.6, when used with luit, creates tty devices with...
Low
Unreviewed
CVE-2009-0141
was published
May 2, 2022
Race condition in AFP Server in Apple Mac OS X 10.5.6 allows local users to cause a denial of...
Low
Unreviewed
CVE-2009-0142
was published
May 2, 2022
Windows DNS Server in Microsoft Windows 2000 SP4, Server 2003 SP1 and SP2, and Server 2008, when...
Low
Unreviewed
CVE-2009-0093
was published
May 2, 2022
Mozilla Firefox 3.0.5 and earlier 3.0.x versions, when designMode is enabled, allows remote...
Low
Unreviewed
CVE-2009-0071
was published
May 2, 2022
ProTip!
Advisories are also available from the
GraphQL API