GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,333
Erlang
31
GitHub Actions
22
Go
2,095
Maven
5,000+
npm
3,762
NuGet
678
pip
3,447
Pub
12
RubyGems
892
Rust
882
Swift
37
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
10,124 advisories
Filter by severity
chpass in OpenBSD 2.0 through 3.2 allows local users to read portions of arbitrary files via a...
Low
Unreviewed
CVE-2003-1366
was published
Apr 29, 2022
Microsoft URLScan 2.5, with the RemoveServerHeader option enabled, allows remote attackers to...
Low
Unreviewed
CVE-2003-1306
was published
Apr 29, 2022
Unspecified vulnerability in xscreensaver 4.12, and possibly other versions, allows attackers to...
Low
Unreviewed
CVE-2003-1295
was published
Apr 29, 2022
cgihtml 1.69 allows local users to overwrite arbitrary files via a symlink attack on certain...
Low
Unreviewed
CVE-2003-1281
was published
Apr 29, 2022
Winamp 3.0 allows remote attackers to cause a denial of service (crash) via a .b4s file with a...
Low
Unreviewed
CVE-2003-1273
was published
Apr 29, 2022
Netscape 7.0 and Mozilla 5.0 do not immediately delete messages in the trash folder when users...
Low
Unreviewed
CVE-2003-1265
was published
Apr 29, 2022
Buffer overflow in CuteFTP 5.0 and 5.0.1 allows local users to cause a denial of service (crash)...
Low
Unreviewed
CVE-2003-1261
was published
Apr 29, 2022
NtCreateSymbolicLinkObject in ntdll.dll in Integrity Protection Driver (IPD) 1.2 and 1.3 allows...
Low
Unreviewed
CVE-2003-1246
was published
Apr 29, 2022
BEA WebLogic Server and Express 7.0 and 7.0.0.1 stores certain secrets concerning password...
Low
Unreviewed
CVE-2003-1226
was published
Apr 29, 2022
The default CredentialMapper for BEA WebLogic Server and Express 7.0 and 7.0.0.1 stores passwords...
Low
Unreviewed
CVE-2003-1225
was published
Apr 29, 2022
Pedestal Software Integrity Protection Driver (IPD) 1.3 and earlier allows privileged attackers,...
Low
Unreviewed
CVE-2003-1233
was published
Apr 29, 2022
Weblogic.admin for BEA WebLogic Server and Express 7.0 and 7.0.0.1 displays the...
Low
Unreviewed
CVE-2003-1224
was published
Apr 29, 2022
Buffer overflow in NullSoft Shoutcast Server 1.9.2 allows local users to cause a denial of...
Low
Unreviewed
CVE-2003-1174
was published
Apr 29, 2022
Buffer overflow in the Yahoo! Audio Conferencing (aka Voice Chat) ActiveX control before 1,0,0,45...
Low
Unreviewed
CVE-2003-1129
was published
Apr 29, 2022
Rit Research Labs The Bat! 1.0.11 through 2.0 creates new accounts with insecure ACLs, which...
Low
Unreviewed
CVE-2003-1133
was published
Apr 29, 2022
Buffer overflow in Yahoo! Messenger 5.6 allows remote attackers to cause a denial of service ...
Low
Unreviewed
CVE-2003-1135
was published
Apr 29, 2022
Sun Java 1.3.1, 1.4.1, and 1.4.2 allows local users to cause a denial of service (JVM crash),...
Low
Unreviewed
CVE-2003-1134
was published
Apr 29, 2022
ScriptLogic 4.01, and possibly other versions before 4.14, uses insecure permissions for the LOGS...
Low
Unreviewed
CVE-2003-1122
was published
Apr 29, 2022
Race condition in SSH Tectia Server 4.0.3 and 4.0.4 for Unix, when the password change plugin ...
Low
Unreviewed
CVE-2003-1120
was published
Apr 29, 2022
Unknown vulnerability in Internet Explorer 5.01 SP3 through 6.0 SP1 allows remote attackers to...
Low
Unreviewed
CVE-2003-1105
was published
Apr 29, 2022
shar on HP-UX B.11.00, B.11.04, and B.11.11 creates temporary files with predictable names in ...
Low
Unreviewed
CVE-2003-1099
was published
Apr 29, 2022
Unknown vulnerability in mail for Solaris 2.6 through 9 allows local users to read the email of...
Low
Unreviewed
CVE-2003-1080
was published
Apr 29, 2022
A race condition in the at command for Solaris 2.6 through 9 allows local users to delete...
Low
Unreviewed
CVE-2003-1073
was published
Apr 29, 2022
Unknown vulnerability in UFS for Solaris 9 for SPARC, with logging enabled, allows local users to...
Low
Unreviewed
CVE-2003-1077
was published
Apr 29, 2022
rpc.walld (wall daemon) for Solaris 2.6 through 9 allows local users to send messages to logged...
Low
Unreviewed
CVE-2003-1071
was published
Apr 29, 2022
ProTip!
Advisories are also available from the
GraphQL API