GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,717
Maven
5,000+
npm
4,328
NuGet
761
pip
4,105
Pub
12
RubyGems
958
Rust
1,065
Swift
45
Unreviewed advisories
All unreviewed
5,000+
511 advisories
Filter by severity
Hadoop symlink vulnerability
High
CVE-2012-2945
was published
for
org.apache.hadoop:hadoop-main
(Maven)
Apr 23, 2022
nsr_shutdown in Fujitsu Siemens NetWorker 6.0 allows local users to overwrite arbitrary files via...
High
Unreviewed
CVE-2003-1528
was published
Apr 29, 2022
Windows Internet Naming Service (WINS) allows remote attackers to cause a denial of service ...
High
Unreviewed
CVE-1999-1593
was published
Apr 30, 2022
Unspecified vulnerability in pprosetup in Sun PatchPro 2.0 has unknown impact and attack vectors...
High
Unreviewed
CVE-2002-2374
was published
Apr 30, 2022
cvsupd.sh in CVSup 1.2 allows local users to overwrite arbitrary files and gain privileges via a...
High
Unreviewed
CVE-2002-2382
was published
Apr 30, 2022
BEA WebLogic Portal 10.0 and 9.2 through Maintenance Pack 2, under certain circumstances, can...
High
Unreviewed
CVE-2008-0870
was published
May 1, 2022
w_editeur.c in XWine 1.0.1 for Debian GNU/Linux allows local users to overwrite or print...
High
Unreviewed
CVE-2008-0930
was published
May 1, 2022
expn in the am-utils and net-fs packages for Gentoo, rPath Linux, and other distributions, allows...
High
Unreviewed
CVE-2008-1078
was published
May 1, 2022
aptlinex before 0.91 allows local users to overwrite arbitrary files via a symlink attack on the...
High
Unreviewed
CVE-2008-1901
was published
May 1, 2022
Launch Services in Apple Mac OS X before 10.5, when Open Safe Files is enabled, allows remote...
High
Unreviewed
CVE-2008-2311
was published
May 1, 2022
Joomla! Open Redirect vulnerability
High
CVE-2008-3227
was published
for
joomla/framework
(Composer)
May 1, 2022
Unspecified vulnerability in Links before 2.1, when "only proxies" is enabled, has unknown impact...
High
Unreviewed
CVE-2008-3329
was published
May 1, 2022
Race condition in the jas_stream_tmpfile function in libjasper/base/jas_stream.c in JasPer 1.900...
High
Unreviewed
CVE-2008-3521
was published
May 2, 2022
configvar in Caudium 1.4.12 allows local users to overwrite arbitrary files via a symlink attack...
High
Unreviewed
CVE-2008-3883
was published
May 2, 2022
genmsgidx in Tiger 3.2.2 allows local users to overwrite or delete arbitrary files via a symlink...
High
Unreviewed
CVE-2008-3927
was published
May 2, 2022
gather-messages.sh in Ampache 3.4.1 allows local users to overwrite arbitrary files via a symlink...
High
Unreviewed
CVE-2008-3929
was published
May 2, 2022
Tools/faqwiz/move-faqwiz.sh (aka the generic FAQ wizard moving tool) in Python 2.4.5 might allow...
High
Unreviewed
CVE-2008-4108
was published
May 2, 2022
A certain Debian patch to the run scripts for sabre (aka xsabre) 0.2.4b allows local users to...
High
Unreviewed
CVE-2008-4406
was published
May 2, 2022
The to-upgrade plugin in feta 1.4.16 allows local users to overwrite arbitrary files via a...
High
Unreviewed
CVE-2008-4440
was published
May 2, 2022
freeradius-dialupadmin in freeradius 2.0.4 allows local users to overwrite arbitrary files via a...
High
Unreviewed
CVE-2008-4474
was published
May 2, 2022
alert.d/test.alert in mon 0.99.2 allows local users to overwrite arbitrary files via a symlink...
High
Unreviewed
CVE-2008-4477
was published
May 2, 2022
ibackup 2.27 allows local users to overwrite arbitrary files via a symlink attack on temporary...
High
Unreviewed
CVE-2008-4475
was published
May 2, 2022
qemu-make-debian-root in qemu 0.9.1-5 on Debian GNU/Linux allows local users to overwrite...
High
Unreviewed
CVE-2008-4553
was published
May 2, 2022
fence_manual, as used in fence 2.02.00-r1 and possibly cman, allows local users to modify...
High
Unreviewed
CVE-2008-4580
was published
May 2, 2022
The (1) pj-gs.sh, (2) ps2epsi, (3) pv.sh, and (4) sysvlp.sh scripts in the ESP Ghostscript (espgs...
High
Unreviewed
CVE-2004-0967
was published
May 3, 2022
ProTip!
Advisories are also available from the
GraphQL API