GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
70
GitHub Actions
52
Go
3,904
Maven
5,000+
npm
5,000+
NuGet
967
pip
5,000+
Pub
13
RubyGems
1,062
Rust
1,374
Swift
54
Unreviewed advisories
All unreviewed
5,000+
335,683 advisories
Filter by severity
Cross-site scripting (XSS) vulnerability in seeurl.php in Xavier Flahaut URLStreet 1.0 allows...
Moderate
Unreviewed
CVE-2008-6205
was published
May 17, 2022
Unspecified vulnerability in the Web administration interface in Avaya Communication Manager 3.1...
High
Unreviewed
CVE-2008-6711
was published
May 17, 2022
SQL injection vulnerability in siteadmin/forgot.php in PHP JOBWEBSITE PRO allows remote attackers...
High
Unreviewed
CVE-2008-5977
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in profile_social.php in i-Net Solution Orkut Clone...
Moderate
Unreviewed
CVE-2008-5971
was published
May 17, 2022
Conductor.exe in Intrinsic Swimage Encore before 5.0.1.21 contains a hardcoded password, which...
Low
Unreviewed
CVE-2008-6191
was published
May 17, 2022
Multiple unspecified vulnerabilities in PrestaShop e-Commerce Solution before 1.1 Beta 2 (aka 1.1...
High
Unreviewed
CVE-2008-5791
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in WebMail Pro in IceWarp Software Merak Mail Server 9.3...
Moderate
Unreviewed
CVE-2008-5734
was published
May 17, 2022
xend in Xen 3.3.0 does not properly restrict a guest VM's write access within the /local/domain...
High
Unreviewed
CVE-2008-5716
was published
May 17, 2022
MediaWiki 1.11, and other versions before 1.13.3, does not properly protect against the download...
Moderate
Unreviewed
CVE-2008-5687
was published
May 17, 2022
Memory leak in WebKit.dll in WebKit, as used by Apple Safari 3.2 on Windows Vista SP1, allows...
Moderate
Unreviewed
CVE-2008-5821
was published
May 17, 2022
Multiple unspecified vulnerabilities in the web management interface in Avaya Communication...
High
Unreviewed
CVE-2008-5709
was published
May 17, 2022
SQL injection vulnerability in index.php in EACOMM DO-CMS 3.0 allows remote attackers to execute...
High
Unreviewed
CVE-2008-6019
was published
May 17, 2022
Directory traversal vulnerability in Yerba SACphp 6.3 allows remote attackers to read arbitrary...
Moderate
Unreviewed
CVE-2008-5867
was published
May 17, 2022
SQL injection vulnerability in the Views module 6.x before 6.x-2.2 for Drupal allows remote...
High
Unreviewed
CVE-2008-6020
was published
May 17, 2022
Multiple unspecified vulnerabilities in the ModSecurity (aka mod_security) module 2.5.0 through 2...
Moderate
Unreviewed
CVE-2008-5676
was published
May 17, 2022
Unspecified vulnerability in the Feature Pack for Web Services in the Web Services Security...
High
Unreviewed
CVE-2008-5414
was published
May 17, 2022
The ACL handling in rsyslog 3.12.1 to 3.20.0, 4.1.0, and 4.1.1 does not follow $AllowedSender...
High
Unreviewed
CVE-2008-5617
was published
May 17, 2022
A vulnerability in SonicOS where the HTTP server response leaks partial memory by sending a...
High
Unreviewed
CVE-2021-20019
was published
May 24, 2022
Untrusted search path vulnerability in the (1) "VST plugin with Python scripting" and (2) "VST...
Moderate
Unreviewed
CVE-2008-5986
was published
May 17, 2022
internettoolbar/edit.php in YourPlace 1.0.2 and earlier does not end execution when an invalid...
Moderate
Unreviewed
CVE-2008-6774
was published
May 17, 2022
SQL injection vulnerability in EveryBlog 5.x and 6.x, a module for Drupal, allows remote...
High
Unreviewed
CVE-2008-6134
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in EveryBlog 5.x and 6.x, a module for Drupal, allows...
Moderate
Unreviewed
CVE-2008-6135
was published
May 17, 2022
Cross-site request forgery (CSRF) vulnerability in admin.php in AjaXplorer 2.3.3 and 2.3.4 allows...
Moderate
Unreviewed
CVE-2008-6639
was published
May 17, 2022
Multiple SQL injection vulnerabilities in BatmanPorTaL allow remote attackers to execute...
High
Unreviewed
CVE-2008-6640
was published
May 17, 2022
Multiple integer overflows in the scanning engine in Bitdefender for Linux 7.60825 and earlier...
Moderate
Unreviewed
CVE-2008-6661
was published
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API