GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,748
Erlang
35
GitHub Actions
29
Go
2,321
Maven
5,000+
npm
3,955
NuGet
712
pip
3,736
Pub
12
RubyGems
921
Rust
972
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
10,598 advisories
Filter by severity
AIX techlibss allows local users to overwrite files via a symlink attack.
Low
Unreviewed
CVE-2000-0080
was published
Apr 30, 2022
nviboot boot script in the Debian nvi package allows local users to delete files via malformed...
Low
Unreviewed
CVE-2000-0076
was published
Apr 30, 2022
The recover program in Solstice Backup allows local users to restore sensitive files.
Low
Unreviewed
CVE-2000-0069
was published
Apr 30, 2022
CyberCash Merchant Connection Kit (MCK) allows local users to modify files via a symlink attack.
Low
Unreviewed
CVE-2000-0067
was published
Apr 30, 2022
Internet Explorer 5.0 and 5.01 allows remote attackers to bypass the cross frame security policy...
Low
Unreviewed
CVE-2000-0028
was published
Apr 30, 2022
IMail POP3 daemon uses weak encryption, which allows local users to read files.
Low
Unreviewed
CVE-2000-0019
was published
Apr 30, 2022
strace allows local users to read arbitrary files via memory mapped file names.
Low
Unreviewed
CVE-2000-0006
was published
Apr 30, 2022
FTPPro allows local users to read sensitive information, which is stored in plain text.
Low
Unreviewed
CVE-2000-0008
was published
Apr 30, 2022
/usr/ucb/ps in Sun Microsystems Solaris 8 and 9, and certain earlier releases, allows local users...
Low
Unreviewed
CVE-1999-1587
was published
Apr 30, 2022
Directory traversal vulnerability in Muhammad A. Muquit wwwcount (Count.cgi) 2.3 allows remote...
Low
Unreviewed
CVE-1999-1590
was published
Apr 30, 2022
cpio on FreeBSD 2.1.0, Debian GNU/Linux 3.0, and possibly other operating systems, uses a 0 umask...
Low
Unreviewed
CVE-1999-1572
was published
Apr 30, 2022
FreeBSD 3.2 and possibly other versions allows a local user to cause a denial of service (panic)...
Low
Unreviewed
CVE-1999-1564
was published
Apr 30, 2022
Joe's Own Editor (joe) 2.8 sets the world-readable permission on its crash-save file, DEADJOE,...
Low
Unreviewed
CVE-1999-1545
was published
Apr 30, 2022
/usr/sbin/Mail on SGI IRIX 3.3 and 3.3.1 does not properly set the group ID to the group ID of...
Low
Unreviewed
CVE-1999-1554
was published
Apr 30, 2022
shell-lock in Cactus Software Shell Lock uses weak encryption (trivial encoding) which allows...
Low
Unreviewed
CVE-1999-1540
was published
Apr 30, 2022
When IIS 2 or 3 is upgraded to IIS 4, ism.dll is inadvertently left in /scripts/iisadmin, which...
Low
Unreviewed
CVE-1999-1538
was published
Apr 30, 2022
cgiwrap as used on Cobalt RaQ 2.0 and RaQ 3i does not properly identify the user for running...
Low
Unreviewed
CVE-1999-1530
was published
Apr 30, 2022
Slackware Linux 3.4 pkgtool allows local attacker to read and write to arbitrary files via a...
Low
Unreviewed
CVE-1999-1498
was published
Apr 30, 2022
named in ISC BIND 4.9 and 8.1 allows local users to destroy files via a symlink attack on (1)...
Low
Unreviewed
CVE-1999-1499
was published
Apr 30, 2022
xtvscreen in SuSE Linux 6.0 allows local users to overwrite arbitrary files via a symlink attack...
Low
Unreviewed
CVE-1999-1495
was published
Apr 30, 2022
Sudo 1.5 in Debian Linux 2.1 and Red Hat 6.0 allows local users to determine the existence of...
Low
Unreviewed
CVE-1999-1496
was published
Apr 30, 2022
sadc in IBM AIX 4.1 through 4.3, when called from programs such as timex that are setgid adm,...
Low
Unreviewed
CVE-1999-1486
was published
Apr 30, 2022
(1) acledit and (2) aclput in AIX 4.3 allow local users to create or modify files via a symlink...
Low
Unreviewed
CVE-1999-1480
was published
Apr 30, 2022
A bug in Intel Pentium processor (MMX and Overdrive) allows local users to cause a denial of...
Low
Unreviewed
CVE-1999-1476
was published
Apr 30, 2022
Internet Explorer 4 allows remote attackers (malicious web site operators) to read the contents...
Low
Unreviewed
CVE-1999-1453
was published
Apr 30, 2022
ProTip!
Advisories are also available from the
GraphQL API