GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,856
Erlang
36
GitHub Actions
36
Go
2,486
Maven
5,000+
npm
4,104
NuGet
735
pip
3,918
Pub
12
RubyGems
945
Rust
1,017
Swift
39
Unreviewed advisories
All unreviewed
5,000+
12,392 advisories
Filter by severity
Cross-site scripting (XSS) vulnerability in the LoginToboggan module 5.x-1.x-dev before 20070712...
Low
Unreviewed
CVE-2007-3818
was published
May 1, 2022
Multiple cross-site scripting (XSS) vulnerabilities in SiteScape Forum before 7.3 allow remote...
Low
Unreviewed
CVE-2007-3807
was published
May 1, 2022
MySQL Community Server before 5.0.45 allows remote authenticated users to gain update privileges...
Low
Unreviewed
CVE-2007-3782
was published
May 1, 2022
The process scheduler in the Linux kernel 2.4 performs scheduling based on CPU billing gathered...
Low
Unreviewed
CVE-2007-3720
was published
May 1, 2022
The 4BSD process scheduler in the FreeBSD kernel performs scheduling based on CPU billing...
Low
Unreviewed
CVE-2007-3722
was published
May 1, 2022
The process scheduler in the Linux kernel 2.6.16 gives preference to "interactive" processes that...
Low
Unreviewed
CVE-2007-3719
was published
May 1, 2022
The process scheduler in the Sun Solaris kernel does not make use of the process statistics kept...
Low
Unreviewed
CVE-2007-3723
was published
May 1, 2022
The process scheduler in the Microsoft Windows XP kernel does not make use of the process...
Low
Unreviewed
CVE-2007-3724
was published
May 1, 2022
The ULE process scheduler in the FreeBSD kernel gives preference to "interactive" processes that...
Low
Unreviewed
CVE-2007-3721
was published
May 1, 2022
The _sanitize_globals function in CodeIgniter 1.5.3 before 20070628 allows remote attackers to...
Low
Unreviewed
CVE-2007-3706
was published
May 1, 2022
Sun Java System Access Manager (formerly Java System Identity Server) before 20070710, when the...
Low
Unreviewed
CVE-2007-3700
was published
May 1, 2022
Multiple cross-site request forgery (CSRF) vulnerabilities in DotClear 1.2.6 allow remote...
Low
Unreviewed
CVE-2007-3688
was published
May 1, 2022
Cross-site scripting (XSS) vulnerability in rpc.php in Unobtrusive Ajax Star Rating Bar before 1...
Low
Unreviewed
CVE-2007-3685
was published
May 1, 2022
Unspecified vulnerability in DomainPOP in Alt-N Technologies MDaemon before 9.61 allows remote...
Low
Unreviewed
CVE-2007-3622
was published
May 1, 2022
vtiger CRM before 5.0.3, when a migrated build is used, allows remote authenticated users to read...
Low
Unreviewed
CVE-2007-3601
was published
May 1, 2022
Multiple cross-site scripting (XSS) vulnerabilities in AdventNet ManageEngine OpManager 6 and 7...
Low
Unreviewed
CVE-2007-3594
was published
May 1, 2022
Cross-site scripting (XSS) vulnerability in infusions/shoutbox_panel/shoutbox_panel.php in PHP...
Low
Unreviewed
CVE-2007-3559
was published
May 1, 2022
The Research in Motion BlackBerry 7270 before 4.0 SP1 Bundle 108 does not properly manage...
Low
Unreviewed
CVE-2007-3443
was published
May 1, 2022
Format string vulnerability on the Research in Motion BlackBerry 7270 before 4.0 SP1 Bundle 108...
Low
Unreviewed
CVE-2007-3442
was published
May 1, 2022
The GDM daemon in GNOME Display Manager (GDM) before 2.14.13, 2.16.x before 2.16.7, 2.18.x before...
Low
Unreviewed
CVE-2007-3381
was published
May 1, 2022
Unspecified vulnerability in the kernel in Red Hat Enterprise Linux (RHEL) 4 on the x86_64...
Low
Unreviewed
CVE-2007-3379
was published
May 1, 2022
The Avahi daemon in Avahi before 0.6.20 allows attackers to cause a denial of service (exit) via...
Low
Unreviewed
CVE-2007-3372
was published
May 1, 2022
wakeup in Ingres database server 2006 9.0.4, r3, 2.6, and 2.5, as used in multiple CA (Computer...
Low
Unreviewed
CVE-2007-3337
was published
May 1, 2022
Multiple cross-site scripting (XSS) vulnerabilities in Papoo Light 3.6 before 20070611 allow...
Low
Unreviewed
CVE-2007-3269
was published
May 1, 2022
Multiple cross-site scripting (XSS) vulnerabilities in Xythos Enterprise Document Manager (XEDM)...
Low
Unreviewed
CVE-2007-3254
was published
May 1, 2022
ProTip!
Advisories are also available from the
GraphQL API