GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,638
Maven
5,000+
npm
4,264
NuGet
760
pip
4,060
Pub
12
RubyGems
956
Rust
1,056
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,315 advisories
Filter by severity
An issue was discovered in PoDoFo 0.9.6. The PdfPagesTreeCache class in doc/PdfPagesTreeCache.cpp...
Moderate
Unreviewed
CVE-2019-10723
was published
May 13, 2022
Go before 1.10.8 and 1.11.x before 1.11.5 mishandles P-521 and P-384 elliptic curves, which...
High
Unreviewed
CVE-2019-6486
was published
May 13, 2022
An issue was discovered in Bento4 1.5.1-628. The AP4_ElstAtom class in Core/Ap4ElstAtom.cpp has...
Moderate
Unreviewed
CVE-2019-6966
was published
May 13, 2022
An attempted excessive memory allocation was discovered in the function read_long_names in...
Moderate
Unreviewed
CVE-2019-7148
was published
May 13, 2022
An issue was discovered in OpenJPEG 2.3.0. It allows remote attackers to cause a denial of...
Moderate
Unreviewed
CVE-2019-6988
was published
May 13, 2022
The parseSWF_ACTIONRECORD function in util/parser.c in libming through 0.4.8 allows remote...
High
Unreviewed
CVE-2019-7581
was published
May 13, 2022
The readBytes function in util/read.c in libming through 0.4.8 allows remote attackers to have...
High
Unreviewed
CVE-2019-7582
was published
May 13, 2022
An issue was discovered in AP4_Array<AP4_CttsTableEntry>::EnsureCapacity in Core/Ap4Array.h in...
Moderate
Unreviewed
CVE-2019-7698
was published
May 13, 2022
wasm::WasmBinaryBuilder::readUserSection in wasm-binary.cpp in Binaryen 1.38.22 triggers an...
Moderate
Unreviewed
CVE-2019-7704
was published
May 13, 2022
In Tor before 0.3.3.12, 0.3.4.x before 0.3.4.11, 0.3.5.x before 0.3.5.8, and 0.4.x before 0.4.0.2...
High
Unreviewed
CVE-2019-8955
was published
May 13, 2022
The ReadTIFFImage function in coders/tiff.c in ImageMagick 7.0.7-23 Q16 does not properly...
Moderate
Unreviewed
CVE-2018-7443
was published
May 13, 2022
In ZZIPlib 0.13.68, there is an uncontrolled memory allocation and a crash in the...
Moderate
Unreviewed
CVE-2018-6869
was published
May 13, 2022
remember_Ktype in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.30, allows...
High
Unreviewed
CVE-2018-12934
was published
May 13, 2022
An issue was discovered in GraphicsMagick 1.3.26. An allocation failure vulnerability was found...
Moderate
Unreviewed
CVE-2017-18229
was published
May 13, 2022
IBM QRadar Incident Forensics 7.2 and 7.3 does not properly restrict the size or amount of...
High
Unreviewed
CVE-2018-1647
was published
May 13, 2022
A vulnerability in the Shell Access Filter feature of Cisco Firepower Management Center (FMC),...
High
Unreviewed
CVE-2018-15458
was published
May 13, 2022
A vulnerability in the web interface of Cisco Integrated Management Controller (IMC) Supervisor...
Moderate
Unreviewed
CVE-2018-15404
was published
May 13, 2022
It was found that vdsm before version 4.20.37 invokes qemu-img on untrusted inputs without...
High
Unreviewed
CVE-2018-10908
was published
May 13, 2022
A vulnerability in the TCP throttling process of Cisco Prime Network could allow an...
High
Unreviewed
CVE-2018-0137
was published
May 13, 2022
A high rate of VLAN authentication attempts sent from an adjacent host on the local broadcast...
Moderate
Unreviewed
CVE-2018-0006
was published
May 13, 2022
A vulnerability in the TCP throttling process for Cisco IoT Field Network Director (IoT-FND)...
High
Unreviewed
CVE-2017-6780
was published
May 13, 2022
A vulnerability in the Play Framework of Cisco Elastic Services Controller (ESC) could allow an...
Critical
Unreviewed
CVE-2017-6713
was published
May 13, 2022
A vulnerability in the TCP connection handling functionality of Cisco Remote Expert Manager...
High
Unreviewed
CVE-2017-6641
was published
May 13, 2022
A memory allocation vulnerability was found in netpbm before 10.61. A maliciously crafted SVG...
Moderate
Unreviewed
CVE-2017-2587
was published
May 13, 2022
An elevation of privilege vulnerability in the Qualcomm Secure Execution Environment Communicator...
High
Unreviewed
CVE-2017-0612
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API