GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,750
Erlang
35
GitHub Actions
29
Go
2,323
Maven
5,000+
npm
3,956
NuGet
712
pip
3,739
Pub
12
RubyGems
921
Rust
973
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
10,609 advisories
Filter by severity
shell-lock in Cactus Software Shell Lock uses weak encryption (trivial encoding) which allows...
Low
Unreviewed
CVE-1999-1540
was published
Apr 30, 2022
When IIS 2 or 3 is upgraded to IIS 4, ism.dll is inadvertently left in /scripts/iisadmin, which...
Low
Unreviewed
CVE-1999-1538
was published
Apr 30, 2022
cgiwrap as used on Cobalt RaQ 2.0 and RaQ 3i does not properly identify the user for running...
Low
Unreviewed
CVE-1999-1530
was published
Apr 30, 2022
named in ISC BIND 4.9 and 8.1 allows local users to destroy files via a symlink attack on (1)...
Low
Unreviewed
CVE-1999-1499
was published
Apr 30, 2022
Slackware Linux 3.4 pkgtool allows local attacker to read and write to arbitrary files via a...
Low
Unreviewed
CVE-1999-1498
was published
Apr 30, 2022
sadc in IBM AIX 4.1 through 4.3, when called from programs such as timex that are setgid adm,...
Low
Unreviewed
CVE-1999-1486
was published
Apr 30, 2022
xtvscreen in SuSE Linux 6.0 allows local users to overwrite arbitrary files via a symlink attack...
Low
Unreviewed
CVE-1999-1495
was published
Apr 30, 2022
Sudo 1.5 in Debian Linux 2.1 and Red Hat 6.0 allows local users to determine the existence of...
Low
Unreviewed
CVE-1999-1496
was published
Apr 30, 2022
(1) acledit and (2) aclput in AIX 4.3 allow local users to create or modify files via a symlink...
Low
Unreviewed
CVE-1999-1480
was published
Apr 30, 2022
A bug in Intel Pentium processor (MMX and Overdrive) allows local users to cause a denial of...
Low
Unreviewed
CVE-1999-1476
was published
Apr 30, 2022
SunOS 4.1.4 on a Sparc 20 machine allows local users to cause a denial of service (kernel panic)...
Low
Unreviewed
CVE-1999-1449
was published
Apr 30, 2022
Internet Explorer 4 allows remote attackers (malicious web site operators) to read the contents...
Low
Unreviewed
CVE-1999-1453
was published
Apr 30, 2022
Internet Explorer 3 records a history of all URL's that are visited by a user in DAT files...
Low
Unreviewed
CVE-1999-1446
was published
Apr 30, 2022
GINA in Windows NT 4.0 allows attackers with physical access to display a portion of the...
Low
Unreviewed
CVE-1999-1452
was published
Apr 30, 2022
gcc 2.7.2 allows local users to overwrite arbitrary files via a symlink attack on temporary .i, ...
Low
Unreviewed
CVE-1999-1439
was published
Apr 30, 2022
PIM software for Royal daVinci does not properly password-protext access to data stored in the ...
Low
Unreviewed
CVE-1999-1430
was published
Apr 30, 2022
Linux 2.0.34 does not properly prevent users from sending SIGIO signals to arbitrary processes,...
Low
Unreviewed
CVE-1999-1441
was published
Apr 30, 2022
DIT TransferPro installs devices with world-readable and world-writable permissions, which could...
Low
Unreviewed
CVE-1999-1429
was published
Apr 30, 2022
ping in Solaris 2.3 through 2.6 allows local users to cause a denial of service (crash) via a...
Low
Unreviewed
CVE-1999-1423
was published
Apr 30, 2022
Vulnerability in AIX 4.1.4 and HP-UX 10.01 and 9.05 allows local users to cause a denial of...
Low
Unreviewed
CVE-1999-1408
was published
Apr 30, 2022
The access permissions for a UNIX domain socket are ignored in Solaris 2.x and SunOS 4.x, and...
Low
Unreviewed
CVE-1999-1402
was published
Apr 30, 2022
ifdhcpc-done script for configuring DHCP on Red Hat Linux 5 allows local users to append text to...
Low
Unreviewed
CVE-1999-1407
was published
Apr 30, 2022
dumpreg in Red Hat Linux 5.1 opens /dev/mem with O_RDWR access, which allows local users to cause...
Low
Unreviewed
CVE-1999-1406
was published
Apr 30, 2022
The Economist screen saver 1999 with the "Password Protected" option enabled allows users with...
Low
Unreviewed
CVE-1999-1400
was published
Apr 30, 2022
Perl 5.004_04 and earlier follows symbolic links when running with the -e option, which allows...
Low
Unreviewed
CVE-1999-1386
was published
Apr 30, 2022
ProTip!
Advisories are also available from the
GraphQL API