GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
2,090 advisories
Filter by severity
A denial of service flaw was found in OpenSSL 0.9.8, 1.0.1, 1.0.2 through 1.0.2h, and 1.1.0 in...
High
Unreviewed
CVE-2016-8610
was published
May 13, 2022
Apache Subversion's mod_dontdothat module and HTTP clients 1.4.0 through 1.8.16, and 1.9.0...
Moderate
Unreviewed
CVE-2016-8734
was published
May 13, 2022
Memory leak in the ReadPSDLayers function in coders/psd.c in ImageMagick before 6.9.6-3 allows...
High
Unreviewed
CVE-2016-10058
was published
May 13, 2022
libxml2, as used in Red Hat JBoss Core Services and when in recovery mode, allows context...
Moderate
Unreviewed
CVE-2016-9596
was published
May 13, 2022
JRuby before 1.6.5.1 computes hash values without restricting the ability to trigger hash...
Moderate
Unreviewed
CVE-2011-4838
was published
May 13, 2022
In OpenJPEG 2.3.0, there is excessive iteration in the opj_t1_encode_cblks function of openjp2/t1...
Moderate
Unreviewed
CVE-2018-6616
was published
May 13, 2022
OpenStack Dashboard (Horizon) before 2014.1.3 and 2014.2.x before 2014.2.1 does not properly...
Moderate
Unreviewed
CVE-2014-8124
was published
May 13, 2022
The MikroTik Router hAP Lite 6.25 has no protection mechanism for unsolicited TCP ACK packets in...
High
Unreviewed
CVE-2017-6444
was published
May 13, 2022
The byterange filter in the Apache HTTP Server 1.3.x, 2.0.x through 2.0.64, and 2.2.x through 2.2...
High
Unreviewed
CVE-2011-3192
was published
May 13, 2022
The mod_proxy_ajp module in the Apache HTTP Server before 2.2.21, when used with...
Moderate
Unreviewed
CVE-2011-3348
was published
May 13, 2022
The deflate_in_filter function in mod_deflate.c in the mod_deflate module in the Apache HTTP...
Moderate
Unreviewed
CVE-2014-0118
was published
May 13, 2022
By specially crafting HTTP/2 requests, workers would be allocated 60 seconds longer than...
High
Unreviewed
CVE-2018-1333
was published
May 13, 2022
An Uncontrolled Resource Consumption issue was discovered in Schneider Electric Wonderware...
High
Unreviewed
CVE-2017-9627
was published
May 13, 2022
The SCTP socket buffer used by a userspace application is not accounted by the cgroups subsystem....
Moderate
Unreviewed
CVE-2019-3874
was published
May 13, 2022
The mxmlDelete function in mxml-node.c in mxml 2.9, 2.7, and possibly earlier allows remote...
High
Unreviewed
CVE-2016-4570
was published
May 13, 2022
The mxml_write_node function in mxml-file.c in mxml 2.9, 2.7, and possibly earlier allows remote...
High
Unreviewed
CVE-2016-4571
was published
May 13, 2022
Martem TELEM GW6 and GWM devices with firmware 2018.04.18-linux_4-01-601cb47 and prior allow the...
High
Unreviewed
CVE-2018-10607
was published
May 13, 2022
In Apache HTTP server versions 2.4.37 and prior, by sending request bodies in a slow loris way to...
Moderate
Unreviewed
CVE-2018-17189
was published
May 13, 2022
The sctp_assoc_lookup_asconf_ack function in net/sctp/associola.c in the SCTP implementation in...
High
Unreviewed
CVE-2014-3687
was published
May 13, 2022
net/core/net_namespace.c in the Linux kernel 2.6.32 and earlier does not properly handle a high...
High
Unreviewed
CVE-2011-2189
was published
May 13, 2022
In IoTivity through 1.3.1, the CoAP server interface can be used for Distributed Denial of...
Critical
Unreviewed
CVE-2019-9750
was published
May 13, 2022
The XML parser (xmlparse.c) in expat before 2.1.0 computes hash values without restricting the...
Moderate
Unreviewed
CVE-2012-0876
was published
May 13, 2022
Memcached version 1.5.5 contains an Insufficient Control of Network Message Volume (Network...
High
Unreviewed
CVE-2018-1000115
was published
May 13, 2022
The virtqueue_pop function in hw/virtio/virtio.c in QEMU allows local guest OS administrators to...
Moderate
Unreviewed
CVE-2016-5403
was published
May 13, 2022
An issue was discovered on FiberHome Fengine S5800 switches V210R240. An unauthorized attacker...
High
Unreviewed
CVE-2017-5544
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API