GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,319
Erlang
31
GitHub Actions
21
Go
2,077
Maven
5,000+
npm
3,746
NuGet
674
pip
3,435
Pub
12
RubyGems
892
Rust
881
Swift
37
Unreviewed advisories
All unreviewed
5,000+
103 advisories
Filter by severity
A vulnerability was found in Radare2 in version 5.3.1. Improper input validation when reading a...
High
Unreviewed
CVE-2021-3673
was published
May 24, 2022
An Unchecked Return Value vulnerability in the authd (authentication daemon) of Juniper Networks...
Moderate
Unreviewed
CVE-2021-31366
was published
May 24, 2022
In the CODESYS V2 web server prior to V1.1.9.22 crafted web server requests can trigger a parser...
High
Unreviewed
CVE-2021-34585
was published
May 24, 2022
In the standard library in Rust before 1.50.0, read_to_end() does not validate the return value...
High
Unreviewed
CVE-2021-28875
was published
May 24, 2022
Unchecked return value in the BIOS firmware for some Intel(R) Processors may allow a privileged...
Moderate
Unreviewed
CVE-2021-0155
was published
May 13, 2022
The URL parser in Microsoft Internet Information Services (IIS) 5.1 on Windows XP Professional...
High
Unreviewed
CVE-2005-4360
was published
May 1, 2022
mount and umount in util-linux and loop-aes-utils call the setuid and setgid functions in the...
High
Unreviewed
CVE-2007-5191
was published
May 1, 2022
The ReadGROUP4Image function in coders/tiff.c in ImageMagick before 7.0.1-10 does not check the...
Moderate
Unreviewed
CVE-2016-10061
was published
May 13, 2022
The ConcatenateImages function in MagickWand/magick-cli.c in ImageMagick before 7.0.1-10 does not...
Moderate
Unreviewed
CVE-2016-10060
was published
May 13, 2022
A null-pointer dereference vulnerability was found in libtirpc before version 0.3.3-rc3. The...
High
Unreviewed
CVE-2018-14622
was published
May 13, 2022
The functions ReadDCMImage in coders/dcm.c, ReadPWPImage in coders/pwp.c, ReadCALSImage in coders...
Moderate
Unreviewed
CVE-2018-16643
was published
May 13, 2022
An issue was discovered in the Linux kernel through 5.16-rc6. kfd_parse_subtype_iolink in drivers...
Moderate
Unreviewed
CVE-2022-3108
was published
Dec 14, 2022
In Wireshark 3.0.0, the TSDNS dissector could crash. This was addressed in epan/dissectors/packet...
High
Unreviewed
CVE-2019-10902
was published
May 13, 2022
QEMU can have an infinite loop in hw/rdma/vmw/pvrdma_dev_ring.c because return values are not...
High
Unreviewed
CVE-2018-20216
was published
May 13, 2022
In Wireshark 2.6.0 to 2.6.1 and 2.4.0 to 2.4.7, the CoAP protocol dissector could crash. This was...
High
Unreviewed
CVE-2018-14367
was published
May 13, 2022
A remote denial of service vulnerability in libhevc in Mediaserver could enable an attacker to...
High
Unreviewed
CVE-2017-0599
was published
May 13, 2022
A remote code execution vulnerability in the Android media framework (libhevc). Product: Android....
High
Unreviewed
CVE-2017-0720
was published
May 13, 2022
A denial of service vulnerability in the Android media framework (libstagefright). Product:...
High
Unreviewed
CVE-2017-0774
was published
May 13, 2022
dmcrypt-get-device, as shipped in the eject package of Debian and Ubuntu, does not check the...
High
Unreviewed
CVE-2017-6964
was published
May 13, 2022
Unchecked return value from xmlTextReaderExpand
High
CVE-2022-23476
was published
for
nokogiri
(RubyGems)
Dec 8, 2022
Dell BIOS versions contain an Unchecked Return Value vulnerability. A local authenticated...
Moderate
Unreviewed
CVE-2022-31225
was published
Sep 13, 2022
Dell BIOS versions contain an Unchecked Return Value vulnerability. A local authenticated...
Moderate
Unreviewed
CVE-2022-31220
was published
Sep 13, 2022
Unchecked return value in the firmware for some Intel(R) Processors may allow a privileged user...
Moderate
Unreviewed
CVE-2021-0107
was published
Feb 11, 2022
An issue has been found in PBC through 2022-8-27. A SEGV issue detected in the function...
High
Unreviewed
CVE-2022-38936
was published
Sep 25, 2022
go-merkledag's ProtoNode may be modified such that common method calls may panic
High
CVE-2022-23495
was published
for
github.com/ipfs/go-merkledag
(Go)
Dec 8, 2022
ProTip!
Advisories are also available from the
GraphQL API