GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,748
Erlang
35
GitHub Actions
29
Go
2,321
Maven
5,000+
npm
3,955
NuGet
712
pip
3,736
Pub
12
RubyGems
921
Rust
972
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
10,598 advisories
Filter by severity
Microsoft Windows 2000 allows local users to cause a denial of service by corrupting the local...
Low
Unreviewed
CVE-2000-0771
was published
Apr 30, 2022
A function in Internet Explorer 4.x and 5.x does not properly verify the domain of a frame within...
Low
Unreviewed
CVE-2000-0768
was published
Apr 30, 2022
The ActiveX control for invoking a scriptlet in Internet Explorer 4.x and 5.x renders arbitrary...
Low
Unreviewed
CVE-2000-0767
was published
Apr 30, 2022
Vulnerability in HP OpenView Network Node Manager (NMM) version 6.1 related to passwords.
Low
Unreviewed
CVE-2000-0754
was published
Apr 30, 2022
DiskCheck script diskcheck.pl in Red Hat Linux 6.2 allows local users to create or overwrite...
Low
Unreviewed
CVE-2000-0715
was published
Apr 30, 2022
Helix GNOME Updater helix-update 0.5 and earlier does not properly create /tmp directories, which...
Low
Unreviewed
CVE-2000-0723
was published
Apr 30, 2022
FreeBSD 5.x, 4.x, and 3.x allows local users to cause a denial of service by executing a program...
Low
Unreviewed
CVE-2000-0729
was published
Apr 30, 2022
CGIMail.exe CGI program in Stalkerlab Mailers 1.1.2 allows remote attackers to read arbitrary...
Low
Unreviewed
CVE-2000-0726
was published
Apr 30, 2022
A race condition in MandrakeUpdate allows local users to modify RPM files while they are in the ...
Low
Unreviewed
CVE-2000-0718
was published
Apr 30, 2022
WorldClient email client in MDaemon 2.8 includes the session ID in the referer field of an HTTP...
Low
Unreviewed
CVE-2000-0716
was published
Apr 30, 2022
The faxrunq and faxrunqd in the mgetty package allows local users to create or modify arbitrary...
Low
Unreviewed
CVE-2000-0691
was published
Apr 30, 2022
The CVS 1.10.8 client trusts pathnames that are provided by the CVS server, which allows the...
Low
Unreviewed
CVE-2000-0679
was published
Apr 30, 2022
Vulnerability in gpm in Caldera Linux allows local users to delete arbitrary files or conduct a...
Low
Unreviewed
CVE-2000-0667
was published
Apr 30, 2022
The default installation of VirusScan 4.5 and NetShield 4.5 has insecure permissions for the...
Low
Unreviewed
CVE-2000-0650
was published
Apr 30, 2022
IIS 4.0 allows remote attackers to obtain the internal IP address of the server via an HTTP 1.0...
Low
Unreviewed
CVE-2000-0649
was published
Apr 30, 2022
Vulnerability in Mandrake Linux usermode package allows local users to to reboot or halt the system.
Low
Unreviewed
CVE-2000-0633
was published
Apr 30, 2022
LPRng 3.6.x improperly installs lpd as setuid root, which can allow local users to append lpd...
Low
Unreviewed
CVE-2000-0615
was published
Apr 30, 2022
Blackboard CourseInfo 4.0 stores the local and SQL administrator user names and passwords in...
Low
Unreviewed
CVE-2000-0605
was published
Apr 30, 2022
SmartFTP Daemon 0.2 allows a local user to access arbitrary files by uploading and specifying an...
Low
Unreviewed
CVE-2000-0565
was published
Apr 30, 2022
SGI MIPSPro compilers C, C++, F77 and F90 generate temporary files in /tmp with predictable file...
Low
Unreviewed
CVE-2000-0578
was published
Apr 30, 2022
IRIX crontab creates temporary files with predictable file names and with the umask of the user,...
Low
Unreviewed
CVE-2000-0579
was published
Apr 30, 2022
eTrust Intrusion Detection System (formerly SessionWall-3) uses weak encryption (XOR) to store...
Low
Unreviewed
CVE-2000-0559
was published
Apr 30, 2022
Race condition in IPFilter firewall 3.4.3 and earlier, when configured with overlapping "return...
Low
Unreviewed
CVE-2000-0553
was published
Apr 30, 2022
ICQwebmail client for ICQ 2000A creates a world readable temporary file during login and does not...
Low
Unreviewed
CVE-2000-0552
was published
Apr 30, 2022
Linux gpm program allows local users to cause a denial of service by flooding the /dev/gpmctl...
Low
Unreviewed
CVE-2000-0531
was published
Apr 30, 2022
ProTip!
Advisories are also available from the
GraphQL API