GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,300
Erlang
31
GitHub Actions
21
Go
2,069
Maven
5,000+
npm
3,744
NuGet
668
pip
3,429
Pub
12
RubyGems
892
Rust
880
Swift
36
Unreviewed advisories
All unreviewed
5,000+
994 advisories
Filter by severity
OpenSSH before 5.1 sets the SO_REUSEADDR socket option when the X11UseLocalhost configuration...
Low
Unreviewed
CVE-2008-3259
was published
May 1, 2022
The snd_seq_oss_synth_make_info function in sound/core/seq/oss/seq_oss_synth.c in the sound...
Low
Unreviewed
CVE-2008-3272
was published
May 1, 2022
Unspecified vulnerability in HP OpenView Select Identity (HPSI) Connectors on Windows, as used in...
Low
Unreviewed
CVE-2008-3539
was published
May 2, 2022
Apple iTunes before 8.0 on Mac OS X 10.4.11, when iTunes Music Sharing is enabled but blocked by...
Low
Unreviewed
CVE-2008-3634
was published
May 2, 2022
Apple Safari before 3.2 does not properly prevent caching of form data for form fields that have...
Low
Unreviewed
CVE-2008-3644
was published
May 2, 2022
The SIP Enablement Services (SES) Server in Avaya SIP Enablement Services 5.0, and Communication...
Low
Unreviewed
CVE-2008-3777
was published
May 2, 2022
Microsoft Bitlocker in Windows Vista before SP1 stores pre-boot authentication passwords in the...
Low
Unreviewed
CVE-2008-3893
was published
May 2, 2022
LILO 22.6.1 and earlier stores pre-boot authentication passwords in the BIOS Keyboard buffer and...
Low
Unreviewed
CVE-2008-3895
was published
May 2, 2022
IBM Lenovo firmware 7CETB5WW 2.05 stores pre-boot authentication passwords in the BIOS Keyboard...
Low
Unreviewed
CVE-2008-3894
was published
May 2, 2022
Grub Legacy 0.97 and earlier stores pre-boot authentication passwords in the BIOS Keyboard buffer...
Low
Unreviewed
CVE-2008-3896
was published
May 2, 2022
DiskCryptor 0.2.6 on Windows stores pre-boot authentication passwords in the BIOS Keyboard buffer...
Low
Unreviewed
CVE-2008-3897
was published
May 2, 2022
TrueCrypt 5.0 stores pre-boot authentication passwords in the BIOS Keyboard buffer and does not...
Low
Unreviewed
CVE-2008-3899
was published
May 2, 2022
Secu Star DriveCrypt Plus Pack 3.9 stores pre-boot authentication passwords in the BIOS Keyboard...
Low
Unreviewed
CVE-2008-3898
was published
May 2, 2022
Software suspend 2 2-2.2.1, when used with the Linux kernel 2.6.16, stores pre-boot...
Low
Unreviewed
CVE-2008-3901
was published
May 2, 2022
Asterisk Open Source 1.2.x before 1.2.32, 1.4.x before 1.4.24.1, and 1.6.0.x before 1.6.0.8;...
Low
Unreviewed
CVE-2008-3903
was published
May 2, 2022
Intel firmware PE94510M.86A.0050.2007.0710.1559 stores pre-boot authentication passwords in the...
Low
Unreviewed
CVE-2008-3900
was published
May 2, 2022
HP firmware 68DTT F.0D stores pre-boot authentication passwords in the BIOS Keyboard buffer and...
Low
Unreviewed
CVE-2008-3902
was published
May 2, 2022
The from_format function in ssmtp.c in ssmtp 2.61 and 2.62, in certain configurations, uses...
Low
Unreviewed
CVE-2008-3962
was published
May 2, 2022
cron.php in MemHT Portal 3.9.0 and earlier allows remote attackers to obtain sensitive...
Low
Unreviewed
CVE-2008-4164
was published
May 2, 2022
VMware VirtualCenter 2.5 before Update 3 build 119838 on Windows displays a user's password in...
Low
Unreviewed
CVE-2008-4278
was published
May 2, 2022
Apache Tomcat information disclosure vulnerability
Low
CVE-2008-4308
was published
for
org.apache.tomcat:tomcat
(Maven)
May 2, 2022
Apple iPhone 2.1 with firmware 5F136, when Require Passcode is enabled and Show SMS Preview is...
Low
Unreviewed
CVE-2008-4593
was published
May 2, 2022
Mozilla Firefox 3.x before 3.0.6 does not properly implement the (1) no-store and (2) no-cache...
Low
Unreviewed
CVE-2009-0358
was published
May 2, 2022
The Installation Factory installation process for IBM WebSphere Application Server (WAS) 6.0.2 on...
Low
Unreviewed
CVE-2009-0437
was published
May 2, 2022
PerfServlet in the PMI/Performance Tools component in IBM WebSphere Application Server (WAS) 6.0...
Low
Unreviewed
CVE-2009-0434
was published
May 2, 2022
ProTip!
Advisories are also available from the
GraphQL API