GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,717
Maven
5,000+
npm
4,328
NuGet
761
pip
4,105
Pub
12
RubyGems
958
Rust
1,065
Swift
45
Unreviewed advisories
All unreviewed
5,000+
12,820 advisories
Filter by severity
The (1) Conn_GetCipherInfo and (2) Conn_UsesSSL functions in src/ngircd/conn.c in ngIRCd 13 and...
Low
Unreviewed
CVE-2009-4652
was published
May 2, 2022
Multiple cross-site scripting (XSS) vulnerabilities in editprofile.php in Viscacha 0.8 Gold allow...
Low
Unreviewed
CVE-2009-4567
was published
May 2, 2022
Cross-site scripting (XSS) vulnerability in the Submitted By module 6.x before 6.x-1.3 for Drupal...
Low
Unreviewed
CVE-2009-4559
was published
May 2, 2022
Cross-site scripting (XSS) vulnerability in the Image Assist module 5.x-1.x before 5.x-1.8, 5.x-2...
Low
Unreviewed
CVE-2009-4557
was published
May 2, 2022
Cross-site scripting (XSS) vulnerability in the Webform module 5.x before 5.x-2.8 and 6.x before...
Low
Unreviewed
CVE-2009-4532
was published
May 2, 2022
Multiple cross-site scripting (XSS) vulnerabilities in the Workflow module 5.x before 5.x-2.4 and...
Low
Unreviewed
CVE-2009-4513
was published
May 2, 2022
Cross-site scripting (XSS) vulnerability in the OpenSocial Shindig-Integrator module 5.x and 6.x...
Low
Unreviewed
CVE-2009-4514
was published
May 2, 2022
vccleaner in VideoCache 1.9.2 allows local users with Squid proxy user privileges to overwrite...
Low
Unreviewed
CVE-2009-4454
was published
May 2, 2022
Cross-site scripting (XSS) vulnerability in the Sections module 5.x before 5.x-1.3 and 6.x before...
Low
Unreviewed
CVE-2009-4429
was published
May 2, 2022
The (1) setfacl and (2) getfacl commands in XFS acl 2.2.47, when running in recursive (-R) mode,...
Low
Unreviewed
CVE-2009-4411
was published
May 2, 2022
The (1) CHAP and (2) MS-CHAP-V2 authentication capabilities in the PPP Access Concentrator (PPPAC...
Low
Unreviewed
CVE-2009-4409
was published
May 2, 2022
Cross-site scripting (XSS) vulnerability in the Menu module (modules/menu/menu.admin.inc) in...
Low
Unreviewed
CVE-2009-4370
was published
May 2, 2022
Cross-site scripting (XSS) vulnerability in the Locale module (modules/locale/locale.module) in...
Low
Unreviewed
CVE-2009-4371
was published
May 2, 2022
Cross-site scripting (XSS) vulnerability in the Contact module (modules/contact/contact.admin.inc...
Low
Unreviewed
CVE-2009-4369
was published
May 2, 2022
Multiple cross-site scripting (XSS) vulnerabilities in CutePHP CuteNews 1.4.6, when...
Low
Unreviewed
CVE-2009-4249
was published
May 2, 2022
Multiple cross-site scripting (XSS) vulnerabilities in TestLink before 1.8.5 allow remote...
Low
Unreviewed
CVE-2009-4237
was published
May 2, 2022
Merkaartor 0.14 allows local users to append data to arbitrary files via a symlink attack on the ...
Low
Unreviewed
CVE-2009-4193
was published
May 2, 2022
Cross-site scripting (XSS) vulnerability in index.php in CutePHP CuteNews 1.4.6 and UTF-8...
Low
Unreviewed
CVE-2009-4172
was published
May 2, 2022
TYPO3 Direct Mail Extension Vulnerable to Cross-Site Scripting (XSS)
Low
CVE-2009-4159
was published
for
directmailteam/direct-mail
(Composer)
May 2, 2022
nm-connection-editor in NetworkManager (NM) 0.7.x exports connection objects over D-Bus upon...
Low
Unreviewed
CVE-2009-4145
was published
May 2, 2022
Multiple directory traversal vulnerabilities in CutePHP CuteNews 1.4.6, when magic_quotes_gpc is...
Low
Unreviewed
CVE-2009-4116
was published
May 2, 2022
The StartServiceCtrlDispatcher function in the cvpnd service (cvpnd.exe) in Cisco VPN client for...
Low
Unreviewed
CVE-2009-4118
was published
May 2, 2022
TYPSoft FTP Server 1.10 allows remote authenticated users to cause a denial of service (crash) by...
Low
Unreviewed
CVE-2009-4105
was published
May 2, 2022
Multiple unspecified vulnerabilities in ldap_cachemgr (aka the LDAP client configuration cache...
Low
Unreviewed
CVE-2009-4080
was published
May 2, 2022
Unspecified vulnerability in Guest Additions in Sun xVM VirtualBox 1.6.x and 2.0.x before 2.0.12,...
Low
Unreviewed
CVE-2009-3940
was published
May 2, 2022
ProTip!
Advisories are also available from the
GraphQL API