GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,992
Erlang
39
GitHub Actions
38
Go
2,634
Maven
5,000+
npm
4,258
NuGet
760
pip
4,051
Pub
12
RubyGems
955
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,305 advisories
Filter by severity
An attempted excessive memory allocation was discovered in the function read_long_names in...
Moderate
Unreviewed
CVE-2019-7148
was published
May 13, 2022
An issue was discovered in OpenJPEG 2.3.0. It allows remote attackers to cause a denial of...
Moderate
Unreviewed
CVE-2019-6988
was published
May 13, 2022
An issue was discovered in Bento4 1.5.1-628. The AP4_ElstAtom class in Core/Ap4ElstAtom.cpp has...
Moderate
Unreviewed
CVE-2019-6966
was published
May 13, 2022
Go before 1.10.8 and 1.11.x before 1.11.5 mishandles P-521 and P-384 elliptic curves, which...
High
Unreviewed
CVE-2019-6486
was published
May 13, 2022
An issue was discovered in PoDoFo 0.9.6. The PdfPagesTreeCache class in doc/PdfPagesTreeCache.cpp...
Moderate
Unreviewed
CVE-2019-10723
was published
May 13, 2022
Kubernetes DoS Vulnerability
Moderate
CVE-2019-1002100
was published
for
k8s.io/kubernetes
(Go)
May 13, 2022
An SRX Series Service Gateway configured for Unified Threat Management (UTM) may experience a...
High
Unreviewed
CVE-2019-0010
was published
May 13, 2022
IBM API Connect 2018.1 through 2018.3.7 could allow an unauthenticated attacker to cause a denial...
High
Unreviewed
CVE-2018-1779
was published
May 13, 2022
A vulnerability in the file descriptor handling of Cisco TelePresence Video Communication Server ...
High
Unreviewed
CVE-2018-0358
was published
May 13, 2022
A vulnerability in the cryptographic hardware accelerator driver of Cisco Adaptive Security...
High
Unreviewed
CVE-2018-15383
was published
May 13, 2022
A vulnerability in the TCP syslog module of Cisco Adaptive Security Appliance (ASA) Software and...
High
Unreviewed
CVE-2018-15399
was published
May 13, 2022
A vulnerability in the egress packet processing functionality of the Cisco StarOS operating...
High
Unreviewed
CVE-2018-0239
was published
May 13, 2022
In ImageMagick 7.0.6-1, a memory exhaustion vulnerability was found in the function ReadMPCImage...
High
Unreviewed
CVE-2017-12430
was published
May 13, 2022
In ImageMagick 7.0.6-1, a memory exhaustion vulnerability was found in the function ReadSUNImage...
High
Unreviewed
CVE-2017-12435
was published
May 13, 2022
In ImageMagick 7.0.6-1, a memory exhaustion vulnerability was found in the function ReadMIFFImage...
High
Unreviewed
CVE-2017-12429
was published
May 13, 2022
In ImageMagick 7.0.6-2, a memory exhaustion vulnerability was found in the function ReadPSDImage...
High
Unreviewed
CVE-2017-12563
was published
May 13, 2022
The ReadOneLayer function in coders/xcf.c in ImageMagick 7.0.6-6 allows remote attackers to cause...
High
Unreviewed
CVE-2017-12691
was published
May 13, 2022
The ReadVIFFImage function in coders/viff.c in ImageMagick 7.0.6-6 allows remote attackers to...
High
Unreviewed
CVE-2017-12692
was published
May 13, 2022
The ReadBMPImage function in coders/bmp.c in ImageMagick 7.0.6-6 allows remote attackers to cause...
High
Unreviewed
CVE-2017-12693
was published
May 13, 2022
The WritePixelCachePixels function in ImageMagick 7.0.6-6 allows remote attackers to cause a...
High
Unreviewed
CVE-2017-12875
was published
May 13, 2022
In ImageMagick 7.0.6-8, the load_level function in coders/xcf.c lacks offset validation, which...
High
Unreviewed
CVE-2017-13133
was published
May 13, 2022
A vulnerability in the email message filtering feature of Cisco AsyncOS Software for Cisco Email...
High
Unreviewed
CVE-2018-15460
was published
May 13, 2022
Docker Registry has Allocation of Resources Without Limits or Throttling
High
CVE-2017-11468
was published
for
github.com/docker/distribution
(Go)
May 13, 2022
Specific IPv6 DHCP packets received by the jdhcpd daemon will cause a memory resource consumption...
High
Unreviewed
CVE-2019-0031
was published
May 13, 2022
A vulnerability in the UDP protocol implementation for Cisco IoT Field Network Director (IoT-FND)...
High
Unreviewed
CVE-2019-1644
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API