GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,515
Erlang
33
GitHub Actions
25
Go
2,215
Maven
5,000+
npm
3,876
NuGet
697
pip
3,648
Pub
12
RubyGems
913
Rust
924
Swift
38
Unreviewed advisories
All unreviewed
5,000+
127,508 advisories
Filter by severity
Directory traversal vulnerability in Cerberus FTP Server 1.5 and earlier allows remote attackers...
Moderate
Unreviewed
CVE-2001-1295
was published
Apr 30, 2022
Buffer overflow in SHOUTcast Server 1.8.2 allows remote attackers to cause a denial of service ...
Moderate
Unreviewed
CVE-2001-1304
was published
Apr 30, 2022
Webodex PHP script 1.0 and earlier allows remote attackers to include arbitrary files from remote...
Moderate
Unreviewed
CVE-2001-1298
was published
Apr 30, 2022
ICQ 2001a Alpha and earlier allows remote attackers to automatically add arbitrary UINs to an ICQ...
Moderate
Unreviewed
CVE-2001-1305
was published
Apr 30, 2022
cvmlogin and statfile in Paul Jarc idtools before 2001.06.27 do not properly check the return...
Moderate
Unreviewed
CVE-2001-1324
was published
Apr 30, 2022
Microsoft Exchange 5.5 2000 allows remote attackers to cause a denial of service (hang) via...
Moderate
Unreviewed
CVE-2001-1319
was published
Apr 30, 2022
pmake before 2.1.35 in Turbolinux 6.05 and earlier is installed with setuid root privileges,...
Moderate
Unreviewed
CVE-2001-1327
was published
Apr 30, 2022
Block_render_url.class in PHPSlash 0.6.1 allows remote attackers with PHPSlash administrator...
Moderate
Unreviewed
CVE-2001-1334
was published
Apr 30, 2022
Beck GmbH IPC@Chip TelnetD service supports only one connection and does not disconnect a user...
Moderate
Unreviewed
CVE-2001-1340
was published
Apr 30, 2022
Directory traversal vulnerability in CesarFTP 0.98b and earlier allows remote authenticated users...
Moderate
Unreviewed
CVE-2001-1335
was published
Apr 30, 2022
Beck IPC GmbH IPC@CHIP TelnetD server generates different responses when given valid and invalid...
Moderate
Unreviewed
CVE-2001-1338
was published
Apr 30, 2022
Beck IPC GmbH IPC@CHIP Embedded-Webserver allows remote attackers to cause a denial of service...
Moderate
Unreviewed
CVE-2001-1337
was published
Apr 30, 2022
Apache before 1.3.20 on Windows and OS/2 systems allows remote attackers to cause a denial of...
Moderate
Unreviewed
CVE-2001-1342
was published
Apr 30, 2022
The Beck GmbH IPC@Chip embedded web server installs the chipcfg.cgi program by default, which...
Moderate
Unreviewed
CVE-2001-1341
was published
Apr 30, 2022
bctool in Jetico BestCrypt 0.7 and earlier trusts the user-supplied PATH to find and execute an...
Moderate
Unreviewed
CVE-2001-1345
was published
Apr 30, 2022
Windows 2000 allows local users to cause a denial of service and possibly gain privileges by...
Moderate
Unreviewed
CVE-2001-1347
was published
Apr 30, 2022
NetWin Authentication module (NWAuth) 2.0 and 3.0b, as implemented in SurgeFTP, DMail, and...
Moderate
Unreviewed
CVE-2001-1354
was published
Apr 30, 2022
Vulnerability in iPlanet Web Server 4 included in Virtualvault Operating System (VVOS) 4.0...
Moderate
Unreviewed
CVE-2001-1368
was published
Apr 30, 2022
netscript before 1.6.3 parses dynamic variables, which could allow remote attackers to alter...
Moderate
Unreviewed
CVE-2001-1366
was published
Apr 30, 2022
Oracle 9i Application Server 1.0.2 allows remote attackers to obtain the physical path of a file...
Moderate
Unreviewed
CVE-2001-1372
was published
Apr 30, 2022
The "echo simulation" traffic analysis countermeasure in OpenSSH before 2.9.9p2 sends an...
Moderate
Unreviewed
CVE-2001-1382
was published
Apr 30, 2022
MailSafe in Zone Labs ZoneAlarm 2.6 and earlier and ZoneAlarm Pro 2.6 and 2.4 does not block...
Moderate
Unreviewed
CVE-2001-1373
was published
Apr 30, 2022
initscript in setserial 2.17-4 and earlier uses predictable temporary file names, which could...
Moderate
Unreviewed
CVE-2001-1383
was published
Apr 30, 2022
The Apache module for PHP 4.0.0 through PHP 4.0.4, when disabled with the 'engine = off' option...
Moderate
Unreviewed
CVE-2001-1385
was published
Apr 30, 2022
tcl/tk package (tcltk) 8.3.1 searches for its libraries in the current working directory before...
Moderate
Unreviewed
CVE-2001-1375
was published
Apr 30, 2022
ProTip!
Advisories are also available from the
GraphQL API