GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
40
GitHub Actions
38
Go
2,820
Maven
5,000+
npm
4,444
NuGet
774
pip
4,215
Pub
12
RubyGems
970
Rust
1,089
Swift
47
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
11,302 advisories
Filter by severity
Symantec AntiVirus Corporate Edition 9.0.1.x and 9.0.4.x, and possibly other versions, when...
Low
Unreviewed
CVE-2005-2766
was published
May 1, 2022
Avaya VPNRemote before 4.2.33 stores credentials in cleartext in process memory, which allows...
Low
Unreviewed
CVE-2005-2762
was published
May 1, 2022
Apple QuickTime Player before 7.0.3 allows user-assisted attackers to cause a denial of service ...
Low
Unreviewed
CVE-2005-2755
was published
May 1, 2022
The malloc function in the libSystem library in Apple Mac OS X 10.3.9 and 10.4.2 allows local...
Low
Unreviewed
CVE-2005-2748
was published
May 1, 2022
Software Update in Mac OS X 10.4.2, when the user marks all updates to be ignored, exits without...
Low
Unreviewed
CVE-2005-2750
was published
May 1, 2022
Unspecified vulnerability in the Finder Get Info window for Mac OS X 10.4 up to 10.4.2 causes...
Low
Unreviewed
CVE-2005-2749
was published
May 1, 2022
memberd in Mac OS X 10.4 up to 10.4.2, in certain situations, does not quickly synchronize access...
Low
Unreviewed
CVE-2005-2751
was published
May 1, 2022
An unspecified kernel interface in Mac OS X 10.4.2 and earlier does not properly clear memory...
Low
Unreviewed
CVE-2005-2752
was published
May 1, 2022
Keychain Access in Mac OS X 10.4.2 and earlier keeps a password visible even if a keychain times...
Low
Unreviewed
CVE-2005-2739
was published
May 1, 2022
Directory traversal vulnerability in Astaro Security Linux 6.0, when using Webmin, allows remote...
Low
Unreviewed
CVE-2005-2731
was published
May 1, 2022
The inputtrap utility in QNX RTOS 6.1.0, 6.3, and possibly earlier versions does not properly...
Low
Unreviewed
CVE-2005-2725
was published
May 1, 2022
The search_binary_handler function in exec.c in Linux 2.4 kernel on 64-bit x86 architectures does...
Low
Unreviewed
CVE-2005-2708
was published
May 1, 2022
Multiple cross-site scripting (XSS) vulnerabilities in PostNuke 0.760-RC4b allows remote...
Low
Unreviewed
CVE-2005-2689
was published
May 1, 2022
pwmconfig in LM_sensors before 2.9.1 creates temporary files insecurely, which allows local users...
Low
Unreviewed
CVE-2005-2672
was published
May 1, 2022
masqmail before 0.2.18 allows local users to overwrite arbitrary files via a symlink attack on a...
Low
Unreviewed
CVE-2005-2663
was published
May 1, 2022
Whisper 32 1.16, and possibly earlier versions, stores passwords in plaintext in memory, which...
Low
Unreviewed
CVE-2005-2664
was published
May 1, 2022
apachetop 0.12.5 and earlier, when running in debug mode, allows local users to create or append...
Low
Unreviewed
CVE-2005-2660
was published
May 1, 2022
Polygen before 1.0.6 generates precompiled grammar objects with world-writable permissions, which...
Low
Unreviewed
CVE-2005-2656
was published
May 1, 2022
The syscall32_setup_pages function in syscall32.c for Linux kernel 2.6.12 and later, on the 64...
Low
Unreviewed
CVE-2005-2617
was published
May 1, 2022
Mozilla Thunderbird 1.0 and Firefox 1.0.6 allows remote attackers to obfuscate URIs via a long...
Low
Unreviewed
CVE-2005-2602
was published
May 1, 2022
Mentor ADSL-FR4II router running firmware 2.00.0111 stores the web administration password in...
Low
Unreviewed
CVE-2005-2586
was published
May 1, 2022
The find_target function in ptrace32.c in the Linux kernel 2.4.x before 2.4.29 does not properly...
Low
Unreviewed
CVE-2005-2553
was published
May 1, 2022
The web server for Network Associates ePolicy Orchestrator Agent 3.5.0 (patch 3) uses insecure...
Low
Unreviewed
CVE-2005-2554
was published
May 1, 2022
OpenVPN before 2.0.1, when running in "dev tap" Ethernet bridging mode, allows remote...
Low
Unreviewed
CVE-2005-2533
was published
May 1, 2022
Race condition in OpenVPN before 2.0.1, when --duplicate-cn is not enabled, allows remote...
Low
Unreviewed
CVE-2005-2534
was published
May 1, 2022
ProTip!
Advisories are also available from the
GraphQL API