GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,324
Erlang
31
GitHub Actions
21
Go
2,087
Maven
5,000+
npm
3,751
NuGet
674
pip
3,437
Pub
12
RubyGems
892
Rust
881
Swift
37
Unreviewed advisories
All unreviewed
5,000+
2,816 advisories
Filter by severity
The mp4ff_read_stts function in common/mp4ff/mp4atom.c in Freeware Advanced Audio Decoder 2 ...
Moderate
Unreviewed
CVE-2017-9223
was published
May 17, 2022
In avrc_ctrl_pars_vendor_cmd of avrc_pars_ct.cc, there is a possible out of bounds read due to...
Moderate
Unreviewed
CVE-2022-20221
was published
Jul 14, 2022
In CCCI, there is a possible out of bounds read due to a missing bounds check. This could lead to...
Moderate
Unreviewed
CVE-2022-21769
was published
Jul 7, 2022
The lame_init_params function in lame.c in libmp3lame.a in LAME 3.99.5 allows remote attackers to...
Moderate
Unreviewed
CVE-2015-9099
was published
May 17, 2022
Adobe Acrobat Reader versions 22.001.20142 (and earlier), 20.005.30334 (and earlier) and 17.012...
Moderate
Unreviewed
CVE-2022-34239
was published
Jul 16, 2022
An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m allows remote...
Moderate
Unreviewed
CVE-2016-9433
was published
May 17, 2022
coders/tiff.c in ImageMagick before 6.9.5-3 allows remote attackers to cause a denial of service ...
Moderate
Unreviewed
CVE-2016-5010
was published
May 17, 2022
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and...
Moderate
Unreviewed
CVE-2017-3032
was published
May 17, 2022
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and...
Moderate
Unreviewed
CVE-2017-3021
was published
May 17, 2022
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and...
Moderate
Unreviewed
CVE-2017-3031
was published
May 17, 2022
tiffttopnm in netpbm 10.47.63 does not properly use the libtiff TIFFRGBAImageGet function, which...
Moderate
Unreviewed
CVE-2017-5849
was published
May 17, 2022
The mp4ff_read_mdhd function in common/mp4ff/mp4atom.c in Freeware Advanced Audio Decoder 2 ...
Moderate
Unreviewed
CVE-2017-9221
was published
May 17, 2022
The mp4ff_read_stsd function in common/mp4ff/mp4atom.c in Freeware Advanced Audio Decoder 2 ...
Moderate
Unreviewed
CVE-2017-9218
was published
May 17, 2022
A denial of service vulnerability exists in the handling of the MXIT protocol in Pidgin....
Moderate
Unreviewed
CVE-2016-2366
was published
May 17, 2022
The fnmatch function in the GNU C Library (aka glibc or libc6) before 2.22 might allow context...
Moderate
Unreviewed
CVE-2015-8984
was published
May 17, 2022
This vulnerability allows remote attackers to disclose sensitive information on affected...
Moderate
Unreviewed
CVE-2022-28681
was published
Jul 19, 2022
Heap-based buffer overflow in coders/psd.c in ImageMagick allows remote attackers to cause a...
Moderate
Unreviewed
CVE-2016-7521
was published
May 17, 2022
Heap-based buffer overflow in coders/hdr.c in ImageMagick allows remote attackers to cause a...
Moderate
Unreviewed
CVE-2016-7520
was published
May 17, 2022
The ReadWPGImage function in coders/wpg.c in ImageMagick allows remote attackers to cause a...
Moderate
Unreviewed
CVE-2016-7533
was published
May 17, 2022
coders/sun.c in ImageMagick before 6.9.0-4 Beta allows remote attackers to cause a denial of...
Moderate
Unreviewed
CVE-2015-8958
was published
May 17, 2022
The WriteCaffHeader function in cli/caff.c in Wavpack before 5.1.0 allows remote attackers to...
Moderate
Unreviewed
CVE-2016-10170
was published
May 17, 2022
A vulnerability has been identified in PADS Standard/Plus Viewer (All versions). The affected...
Moderate
Unreviewed
CVE-2022-34282
was published
Jul 13, 2022
The zzip_mem_entry_extra_block function in memdisk.c in zziplib 0.13.62 allows remote attackers...
Moderate
Unreviewed
CVE-2017-5977
was published
May 17, 2022
The parse_dict_node function in bplist.c in libplist allows attackers to cause a denial of...
Moderate
Unreviewed
CVE-2017-5834
was published
May 17, 2022
The JPEG decoder in ImageMagick before 6.8.9-9 allows local users to cause a denial of service ...
Moderate
Unreviewed
CVE-2014-8716
was published
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API