GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,478
Erlang
33
GitHub Actions
24
Go
2,208
Maven
5,000+
npm
3,865
NuGet
696
pip
3,642
Pub
12
RubyGems
913
Rust
919
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
10,393 advisories
Filter by severity
Novell NetWare 6.5 SP 1.1, when installing or upgrading using the Overlay CDs and performing a...
Low
Unreviewed
CVE-2004-2414
was published
Apr 29, 2022
Netenberg Fantastico De Luxe 2.8 uses database file names that contain the associated usernames,...
Low
Unreviewed
CVE-2004-2398
was published
Apr 29, 2022
Off-by-one error in passwd 0.68 and earlier, when using the --stdin option, causes passwd to use...
Low
Unreviewed
CVE-2004-2394
was published
Apr 29, 2022
Memory leak in passwd 0.68 allows local users to cause a denial of service (memory consumption)...
Low
Unreviewed
CVE-2004-2395
was published
Apr 29, 2022
Memory leak in Microsoft Windows XP and Windows Server 2003 allows local users to cause a denial...
Low
Unreviewed
CVE-2004-2365
was published
Apr 29, 2022
The /.inlook/.crypt file for inlook 0.7.3 and earlier is installed with world readable...
Low
Unreviewed
CVE-2004-2337
was published
Apr 29, 2022
ColdFusion MX 6.1 and 6.1 J2EE allows local users to bypass sandbox security restrictions and...
Low
Unreviewed
CVE-2004-2331
was published
Apr 29, 2022
IBM Informix Dynamic Server (IDS) before 9.40.xC3 allows local users to (1) create or overwrite...
Low
Unreviewed
CVE-2004-2319
was published
Apr 29, 2022
Directory traversal vulnerability in webadmin.nsf in Lotus Domino R6 6.5.1 allows local users to...
Low
Unreviewed
CVE-2004-2311
was published
Apr 29, 2022
BEA WebLogic Server and Express 8.1 SP1 and earlier allows local users in the Operator role to...
Low
Unreviewed
CVE-2004-2321
was published
Apr 29, 2022
Directory traversal vulnerability in Crob FTP Server 3.5.1 allows local users to browse outside...
Low
Unreviewed
CVE-2004-2309
was published
Apr 29, 2022
Race condition in the sysfs_read_file and sysfs_write_file functions in Linux kernel before 2.6...
Low
Unreviewed
CVE-2004-2302
was published
Apr 29, 2022
MTools Mformat before 3.9.9, when installed setuid root, creates files with world-readable and...
Low
Unreviewed
CVE-2004-2303
was published
Apr 29, 2022
F-Secure Anti-Virus 5.41 and 5.42 on Windows, Client Security 5.50 and 5.52, 4.60 for Samba...
Low
Unreviewed
CVE-2004-2276
was published
Apr 29, 2022
Xconfig in Hummingbird Exceed before 9.0.0.1, when the Screen Definition is password-protected,...
Low
Unreviewed
CVE-2004-2258
was published
Apr 29, 2022
Microsoft Internet Explorer 6 allows remote attackers to spoof the address bar to facilitate...
Low
Unreviewed
CVE-2004-2219
was published
Apr 29, 2022
Zero G Software InstallAnywhere 5.0.6, 5.0.7, and earlier allows local users to overwrite...
Low
Unreviewed
CVE-2004-2231
was published
Apr 29, 2022
Heap-based buffer overflow in isakmpd on OpenBSD 3.4 through 3.6 allows local users to cause a...
Low
Unreviewed
CVE-2004-2230
was published
Apr 29, 2022
Application Access Server (A-A-S) 1.0.37 and earlier allows remote authenticated users to cause a...
Low
Unreviewed
CVE-2004-2169
was published
Apr 29, 2022
cryptoloop on Linux kernel 2.6.x, when used on certain file systems with a block size 1024 or...
Low
Unreviewed
CVE-2004-2135
was published
Apr 29, 2022
dm-crypt on Linux kernel 2.6.x, when used on certain file systems with a block size 1024 or...
Low
Unreviewed
CVE-2004-2136
was published
Apr 29, 2022
Multiple scripts on SuSE Linux 9.0 allow local users to overwrite arbitrary files via a symlink...
Low
Unreviewed
CVE-2004-2097
was published
Apr 29, 2022
Opera Web Browser 7.0 through 7.23 allows remote attackers to trick users into executing a...
Low
Unreviewed
CVE-2004-2083
was published
Apr 29, 2022
ActivePerl 5.8.x and others, and Larry Wall's Perl 5.6.1 and others, when running on Windows...
Low
Unreviewed
CVE-2004-2022
was published
Apr 29, 2022
Wget 1.9 and 1.9.1 allows local users to overwrite arbitrary files via a symlink attack on the...
Low
Unreviewed
CVE-2004-2014
was published
Apr 29, 2022
ProTip!
Advisories are also available from the
GraphQL API