GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,778
Erlang
35
GitHub Actions
29
Go
2,334
Maven
5,000+
npm
3,967
NuGet
713
pip
3,763
Pub
12
RubyGems
923
Rust
975
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
10,637 advisories
Filter by severity
Netscape Communicator before version 4.73 and Navigator 4.07 do not properly validate SSL...
Low
Unreviewed
CVE-2000-0406
was published
Apr 30, 2022
Netscape 4.73 and earlier follows symlinks when it imports a new certificate, which allows local...
Low
Unreviewed
CVE-2000-0409
was published
Apr 30, 2022
The Mixed Mode authentication capability in Microsoft SQL Server 7.0 stores the System...
Low
Unreviewed
CVE-2000-0402
was published
Apr 30, 2022
ColdFusion ClusterCATS appends stale query string arguments to a URL during HTML redirection,...
Low
Unreviewed
CVE-2000-0382
was published
Apr 30, 2022
The Netopia R9100 router does not prevent authenticated users from modifying SNMP tables, even if...
Low
Unreviewed
CVE-2000-0379
was published
Apr 30, 2022
dump in Debian GNU/Linux 2.1 does not properly restore symlinks, which allows a local user to...
Low
Unreviewed
CVE-2000-0366
was published
Apr 30, 2022
The kernel in FreeBSD 3.2 follows symbolic links when it creates core dump files, which allows...
Low
Unreviewed
CVE-2000-0375
was published
Apr 30, 2022
Classic Cisco IOS 9.1 and later allows attackers with access to the login prompt to obtain...
Low
Unreviewed
CVE-2000-0368
was published
Apr 30, 2022
The PPP wvdial.lxdialog script in wvdial 1.4 and earlier creates a .config file with world...
Low
Unreviewed
CVE-2000-0361
was published
Apr 30, 2022
The on-line help system options in Cisco routers allows non-privileged users without "enabled"...
Low
Unreviewed
CVE-2000-0345
was published
Apr 30, 2022
The Allaire Spectra container editor preview tool does not properly enforce object security,...
Low
Unreviewed
CVE-2000-0334
was published
Apr 30, 2022
The Windows 2000 domain controller allows a malicious user to modify Active Directory information...
Low
Unreviewed
CVE-2000-0311
was published
Apr 30, 2022
The i386 trace-trap handling in OpenBSD 2.4 with DDB enabled allows a local user to cause a...
Low
Unreviewed
CVE-2000-0309
was published
Apr 30, 2022
aaa_base in SuSE Linux 6.3, and cron.daily in earlier versions, allow local users to delete...
Low
Unreviewed
CVE-2000-0293
was published
Apr 30, 2022
X fontserver xfs allows local users to cause a denial of service via malformed input to the server.
Low
Unreviewed
CVE-2000-0286
was published
Apr 30, 2022
Emacs 20 does not properly set permissions for a slave PTY device when starting a new subprocess,...
Low
Unreviewed
CVE-2000-0269
was published
Apr 30, 2022
Buffer overflow in the Napster client beta 5 allows remote attackers to cause a denial of service...
Low
Unreviewed
CVE-2000-0281
was published
Apr 30, 2022
Buffer overflow in the RealNetworks RealPlayer client versions 6 and 7 allows remote attackers to...
Low
Unreviewed
CVE-2000-0280
was published
Apr 30, 2022
CRYPTOCard CryptoAdmin for PalmOS uses weak encryption to store a user's PIN number, which allows...
Low
Unreviewed
CVE-2000-0275
was published
Apr 30, 2022
The make-temp-name Lisp function in Emacs 20 creates temporary files with predictable names,...
Low
Unreviewed
CVE-2000-0270
was published
Apr 30, 2022
BeOS 4.5 and 5.0 allow local users to cause a denial of service via malformed direct system calls...
Low
Unreviewed
CVE-2000-0276
was published
Apr 30, 2022
The Linux trustees kernel patch allows attackers to cause a denial of service by accessing a file...
Low
Unreviewed
CVE-2000-0274
was published
Apr 30, 2022
Internet Explorer 5.01 allows remote attackers to bypass the cross frame security policy via a...
Low
Unreviewed
CVE-2000-0266
was published
Apr 30, 2022
Panda Security 3.0 with registry editing disabled allows users to edit the registry and gain...
Low
Unreviewed
CVE-2000-0264
was published
Apr 30, 2022
The X font server xfs in Red Hat Linux 6.x allows an attacker to cause a denial of service via a...
Low
Unreviewed
CVE-2000-0263
was published
Apr 30, 2022
ProTip!
Advisories are also available from the
GraphQL API