GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
49
GitHub Actions
50
Go
3,630
Maven
5,000+
npm
5,000+
NuGet
928
pip
4,850
Pub
13
RubyGems
1,045
Rust
1,301
Swift
53
Unreviewed advisories
All unreviewed
5,000+
329,535 advisories
Filter by severity
SQL injection vulnerability in siteadmin/forgot.php in PHP JOBWEBSITE PRO allows remote attackers...
High
Unreviewed
CVE-2008-5977
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in profile_social.php in i-Net Solution Orkut Clone...
Moderate
Unreviewed
CVE-2008-5971
was published
May 17, 2022
SQL injection vulnerability in profile_social.php in i-Net Solution Orkut Clone allows remote...
Moderate
Unreviewed
CVE-2008-5970
was published
May 17, 2022
Nukeviet 2.0 Beta allows remote attackers to bypass authentication and gain administrative access...
High
Unreviewed
CVE-2008-5945
was published
May 17, 2022
SQL injection vulnerability in KTP Computer Customer Database (KTPCCD) CMS, when magic_quotes_gpc...
Moderate
Unreviewed
CVE-2008-5954
was published
May 17, 2022
Multiple cross-site scripting (XSS) vulnerabilities in MODx before 0.9.6.3 allow remote attackers...
Moderate
Unreviewed
CVE-2008-5942
was published
May 17, 2022
Directory traversal vulnerability in Yerba SACphp 6.3 allows remote attackers to read arbitrary...
Moderate
Unreviewed
CVE-2008-5867
was published
May 17, 2022
The SmartPoster implementation on the Nokia 6131 Near Field Communication (NFC) phone with 05.12...
Low
Unreviewed
CVE-2008-5825
was published
May 17, 2022
Memory leak in WebKit.dll in WebKit, as used by Apple Safari 3.2 on Windows Vista SP1, allows...
Moderate
Unreviewed
CVE-2008-5821
was published
May 17, 2022
Multiple unspecified vulnerabilities in PrestaShop e-Commerce Solution before 1.1 Beta 2 (aka 1.1...
High
Unreviewed
CVE-2008-5791
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in WebMail Pro in IceWarp Software Merak Mail Server 9.3...
Moderate
Unreviewed
CVE-2008-5734
was published
May 17, 2022
MediaWiki 1.11, and other versions before 1.13.3, does not properly protect against the download...
Moderate
Unreviewed
CVE-2008-5687
was published
May 17, 2022
xend in Xen 3.3.0 does not properly restrict a guest VM's write access within the /local/domain...
High
Unreviewed
CVE-2008-5716
was published
May 17, 2022
Multiple unspecified vulnerabilities in the ModSecurity (aka mod_security) module 2.5.0 through 2...
Moderate
Unreviewed
CVE-2008-5676
was published
May 17, 2022
Multiple unspecified vulnerabilities in the web management interface in Avaya Communication...
High
Unreviewed
CVE-2008-5709
was published
May 17, 2022
The ACL handling in rsyslog 3.12.1 to 3.20.0, 4.1.0, and 4.1.1 does not follow $AllowedSender...
High
Unreviewed
CVE-2008-5617
was published
May 17, 2022
Unspecified vulnerability in the Feature Pack for Web Services in the Web Services Security...
High
Unreviewed
CVE-2008-5414
was published
May 17, 2022
Unspecified vulnerability in the Web administration interface in Avaya Communication Manager 3.1...
High
Unreviewed
CVE-2008-6711
was published
May 17, 2022
The Web management interface in Avaya SIP Enablement Services (SES) 3.x and 4.0, as used with...
Moderate
Unreviewed
CVE-2008-6707
was published
May 17, 2022
Stack-based buffer overflow in the IPureServer::_Recieve function in S.T.A.L.K.E.R.: Shadow of...
High
Unreviewed
CVE-2008-6703
was published
May 17, 2022
An issue has been discovered in GitLab CE/EE affecting all versions starting with 13.11, 13.12...
Moderate
Unreviewed
CVE-2021-22234
was published
May 24, 2022
A stack-based Buffer Overflow vulnerability in Juniper Networks SBR Carrier with EAP (Extensible...
Critical
Unreviewed
CVE-2021-0276
was published
May 24, 2022
The crypto/tls package of Go through 1.16.5 does not properly assert that the type of public key...
Moderate
Unreviewed
CVE-2021-34558
was published
May 24, 2022
SQL injection vulnerability in GForge 4.5.19 allows remote attackers to execute arbitrary SQL...
High
Unreviewed
CVE-2008-6189
was published
May 17, 2022
includes/bootstrap.inc in Drupal 5.x before 5.12 and 6.x before 6.6, when the server is...
High
Unreviewed
CVE-2008-6171
was published
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API