GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
40
GitHub Actions
40
Go
2,974
Maven
5,000+
npm
4,621
NuGet
788
pip
4,317
Pub
12
RubyGems
984
Rust
1,131
Swift
49
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
11,490 advisories
Filter by severity
Multiple cross-site scripting (XSS) vulnerabilities in FlexBB 0.5.5 BETA allow remote attackers...
Low
Unreviewed
CVE-2006-1810
was published
May 1, 2022
Cross-site scripting (XSS) vulnerability in index.php in Lifetype 1.0.3 allows remote attackers...
Low
Unreviewed
CVE-2006-1808
was published
May 1, 2022
Cross-site scripting (XSS) vulnerability in index.php in Musicbox 2.3.3 and earlier allows remote...
Low
Unreviewed
CVE-2006-1806
was published
May 1, 2022
Cross-site scripting (XSS) vulnerability in tablepublisher.cgi in UPDI Network Enterprise @1...
Low
Unreviewed
CVE-2006-1795
was published
May 1, 2022
Cross-site scripting (XSS) vulnerability in Adobe Document Server for Reader Extensions 6.0...
Low
Unreviewed
CVE-2006-1786
was published
May 1, 2022
Adobe Document Server for Reader Extensions 6.0 includes a user's session (jsession) ID in the...
Low
Unreviewed
CVE-2006-1787
was published
May 1, 2022
Adobe Document Server for Reader Extensions 6.0, during log on, provides different error messages...
Low
Unreviewed
CVE-2006-1788
was published
May 1, 2022
Unspecified vulnerability in Solaris 8 and 9 allows local users to obtain the LDAP Directory...
Low
Unreviewed
CVE-2006-1782
was published
May 1, 2022
Cross-site scripting (XSS) vulnerability in PatroNet CMS allows remote attackers to inject...
Low
Unreviewed
CVE-2006-1783
was published
May 1, 2022
Adobe Document Server for Reader Extensions 6.0 allows remote authenticated users to inject...
Low
Unreviewed
CVE-2006-1785
was published
May 1, 2022
The Bourne shell (sh) in Solaris 8, 9, and 10 allows local users to cause a denial of service (sh...
Low
Unreviewed
CVE-2006-1780
was published
May 1, 2022
Cross-site scripting (XSS) vulnerability in allgemein_transfer.php in SWSoft Confixx 3.1.2 allows...
Low
Unreviewed
CVE-2006-1759
was published
May 1, 2022
Cross-site scripting (XSS) vulnerability in index.php in Vegadns 0.99 allows remote attackers to...
Low
Unreviewed
CVE-2006-1757
was published
May 1, 2022
Multiple cross-site scripting (XSS) vulnerabilities in the backend in MvBlog before 1.6 allow...
Low
Unreviewed
CVE-2006-1752
was published
May 1, 2022
Cross-site scripting vulnerability in index.php in blur6ex 0.3.452 allows remote attackers to...
Low
Unreviewed
CVE-2006-1761
was published
May 1, 2022
A cron job in fcheck before 2.7.59 allows local users to overwrite arbitrary files via a symlink...
Low
Unreviewed
CVE-2006-1753
was published
May 1, 2022
Multiple cross-site scripting (XSS) vulnerabilities in index.php in Autogallery 0.41 allow remote...
Low
Unreviewed
CVE-2006-1750
was published
May 1, 2022
Cross-site scripting (XSS) vulnerability in XMB Forum 1.9.5 allows remote attackers to inject...
Low
Unreviewed
CVE-2006-1748
was published
May 1, 2022
Cross-site scripting (XSS) vulnerability in login.php in Bitweaver 1.3 allows remote attackers to...
Low
Unreviewed
CVE-2006-1745
was published
May 1, 2022
Mozilla Firefox 1.5 before 1.5.0.2 and SeaMonkey before 1.0.1 causes certain windows to become...
Low
Unreviewed
CVE-2006-1725
was published
May 1, 2022
Cross-site scripting (XSS) vulnerability in the private archive script (private.py) in GNU...
Low
Unreviewed
CVE-2006-1712
was published
May 1, 2022
Oracle Database 9.2.0.0 to 10.2.0.3 allows local users with "SELECT" privileges for a base table...
Low
Unreviewed
CVE-2006-1705
was published
May 1, 2022
Cross-site scripting (XSS) vulnerability in the Pages module in Shadowed Portal allows remote...
Low
Unreviewed
CVE-2006-1701
was published
May 1, 2022
Cross-site scripting (XSS) vulnerability in index.php in Aweb Banner Generator 3.0 and earlier...
Low
Unreviewed
CVE-2006-1699
was published
May 1, 2022
The fbgs script in the fbi package 2.01-1.4, when the TMPDIR environment variable is not defined,...
Low
Unreviewed
CVE-2006-1695
was published
May 1, 2022
ProTip!
Advisories are also available from the
GraphQL API