GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,342
Erlang
31
GitHub Actions
22
Go
2,106
Maven
5,000+
npm
3,764
NuGet
679
pip
3,451
Pub
12
RubyGems
892
Rust
886
Swift
37
Unreviewed advisories
All unreviewed
5,000+
437 advisories
Filter by severity
A high rate of VLAN authentication attempts sent from an adjacent host on the local broadcast...
Moderate
Unreviewed
CVE-2018-0006
was published
May 13, 2022
A vulnerability in the web interface of Cisco Integrated Management Controller (IMC) Supervisor...
Moderate
Unreviewed
CVE-2018-15404
was published
May 13, 2022
An issue was discovered in GraphicsMagick 1.3.26. An allocation failure vulnerability was found...
Moderate
Unreviewed
CVE-2017-18229
was published
May 13, 2022
In ZZIPlib 0.13.68, there is an uncontrolled memory allocation and a crash in the...
Moderate
Unreviewed
CVE-2018-6869
was published
May 13, 2022
The ReadTIFFImage function in coders/tiff.c in ImageMagick 7.0.7-23 Q16 does not properly...
Moderate
Unreviewed
CVE-2018-7443
was published
May 13, 2022
wasm::WasmBinaryBuilder::readUserSection in wasm-binary.cpp in Binaryen 1.38.22 triggers an...
Moderate
Unreviewed
CVE-2019-7704
was published
May 13, 2022
An issue was discovered in AP4_Array<AP4_CttsTableEntry>::EnsureCapacity in Core/Ap4Array.h in...
Moderate
Unreviewed
CVE-2019-7698
was published
May 13, 2022
An issue was discovered in OpenJPEG 2.3.0. It allows remote attackers to cause a denial of...
Moderate
Unreviewed
CVE-2019-6988
was published
May 13, 2022
An attempted excessive memory allocation was discovered in the function read_long_names in...
Moderate
Unreviewed
CVE-2019-7148
was published
May 13, 2022
An issue was discovered in Bento4 1.5.1-628. The AP4_ElstAtom class in Core/Ap4ElstAtom.cpp has...
Moderate
Unreviewed
CVE-2019-6966
was published
May 13, 2022
An issue was discovered in PoDoFo 0.9.6. The PdfPagesTreeCache class in doc/PdfPagesTreeCache.cpp...
Moderate
Unreviewed
CVE-2019-10723
was published
May 13, 2022
Kubernetes DoS Vulnerability
Moderate
CVE-2019-1002100
was published
for
k8s.io/kubernetes
(Go)
May 13, 2022
Stack consumption vulnerability in the fnmatch implementation in apr_fnmatch.c in the Apache...
Moderate
Unreviewed
CVE-2011-0419
was published
May 13, 2022
The xhci_ring_fetch function in hw/usb/hcd-xhci.c in QEMU (aka Quick Emulator) allows local guest...
Moderate
Unreviewed
CVE-2016-8576
was published
May 13, 2022
Crafted packets destined to the management interface (fxp0) of an SRX340 or SRX345 services...
Moderate
Unreviewed
CVE-2019-0038
was published
May 13, 2022
On EX2300, EX3400, EX4600, QFX3K and QFX5K series, firewall filter configuration cannot perform...
Moderate
Unreviewed
CVE-2019-0005
was published
May 13, 2022
Vixie Cron before the 3.0pl1-133 Debian package allows local users to cause a denial of service ...
Moderate
Unreviewed
CVE-2019-9705
was published
May 13, 2022
A flaw was found in glusterfs server through versions 4.1.4 and 3.1.2 which allowed repeated...
Moderate
Unreviewed
CVE-2018-14660
was published
May 13, 2022
An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed...
Moderate
Unreviewed
CVE-2019-9072
was published
May 13, 2022
An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed...
Moderate
Unreviewed
CVE-2019-9073
was published
May 13, 2022
An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed...
Moderate
Unreviewed
CVE-2019-9076
was published
May 13, 2022
The _zip_read_eocd64 function in zip_open.c in libzip before 1.3.0 mishandles EOCD records, which...
Moderate
Unreviewed
CVE-2017-14107
was published
May 13, 2022
It was found in Ceph versions before 13.2.4 that authenticated ceph RGW users can cause a denial...
Moderate
Unreviewed
CVE-2018-16846
was published
May 13, 2022
Allocation of Resources Without Limits or Throttling in Spring Framework
Moderate
CVE-2022-22971
was published
for
org.springframework:spring-messaging
(Maven)
May 13, 2022
An issue has been discovered in GitLab affecting all versions before 14.8.6, all versions...
Moderate
Unreviewed
CVE-2022-1428
was published
May 12, 2022
ProTip!
Advisories are also available from the
GraphQL API