GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,635
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
2,321 advisories
Filter by severity
A heap buffer overflow in Fortinet FortiOS all versions below 6.0.5 in the SSL VPN web portal may...
Moderate
Unreviewed
CVE-2018-13383
was published
May 24, 2022
An issue was discovered in libSDL2.a in Simple DirectMedia Layer (SDL) 2.0.9 when used in...
Moderate
Unreviewed
CVE-2019-12221
was published
May 24, 2022
An issue was discovered in libSDL2.a in Simple DirectMedia Layer (SDL) 2.0.9 when used in...
Moderate
Unreviewed
CVE-2019-12216
was published
May 24, 2022
Out of bound write vulnerability in subsystem for Intel(R) AMT before versions 11.8.65, 11.11.65,...
Moderate
Unreviewed
CVE-2019-0096
was published
May 24, 2022
nanosvg library nanosvg after commit c1f6e209c16b18b46aa9f45d7e619acf42c29726 is affected by:...
Moderate
Unreviewed
CVE-2019-1010258
was published
May 24, 2022
coders/xwd.c in GraphicsMagick 1.3.31 allows attackers to cause a denial of service (floating...
Moderate
Unreviewed
CVE-2019-11474
was published
May 24, 2022
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the ECC layer, where...
Moderate
Unreviewed
CVE-2022-28185
was published
May 18, 2022
Heap-based buffer overflow in the getZip64Data function in Info-ZIP UnZip 6.0 and earlier allows...
Moderate
Unreviewed
CVE-2014-8141
was published
May 17, 2022
Heap-based buffer overflow in the test_compr_eb function in Info-ZIP UnZip 6.0 and earlier allows...
Moderate
Unreviewed
CVE-2014-8140
was published
May 17, 2022
Heap-based buffer overflow in the CRC32 verification in Info-ZIP UnZip 6.0 and earlier allows...
Moderate
Unreviewed
CVE-2014-8139
was published
May 17, 2022
QuickTime in Apple Mac OS X before 10.6.7 allows remote attackers to execute arbitrary code or...
Moderate
Unreviewed
CVE-2011-0186
was published
May 17, 2022
QuickTime in Apple Mac OS X before 10.6.8 allows remote attackers to execute arbitrary code or...
Moderate
Unreviewed
CVE-2011-0210
was published
May 17, 2022
QuickTime in Apple Mac OS X before 10.8.5 allows remote attackers to execute arbitrary code or...
Moderate
Unreviewed
CVE-2013-1032
was published
May 17, 2022
ext/xml/xml.c in PHP before 5.3.27 does not properly consider parsing depth, which allows remote...
Moderate
Unreviewed
CVE-2013-4113
was published
May 17, 2022
epan/dissectors/packet-umts_fp.c in the UMTS FP dissector in Wireshark 2.x before 2.0.6 does not...
Moderate
Unreviewed
CVE-2016-7178
was published
May 17, 2022
The thumbnail shell extension plugin (FoxitThumbnailHndlr_x86.dll) in Foxit Reader and PhantomPDF...
Moderate
Unreviewed
CVE-2016-8879
was published
May 17, 2022
Heap-based buffer overflow in the jpc_cox_getcompparms function in libjasper/jpc/jpc_cs.c in...
Moderate
Unreviewed
CVE-2011-4516
was published
May 17, 2022
The build_huffcodes function in lepton/jpgcoder.cc in Dropbox lepton 1.0 allows remote attackers...
Moderate
Unreviewed
CVE-2016-6237
was published
May 17, 2022
Heap-based buffer overflow in the parse_string_node function in bplist.c in libimobiledevice...
Moderate
Unreviewed
CVE-2017-6439
was published
May 17, 2022
coders/psd.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds...
Moderate
Unreviewed
CVE-2016-7535
was published
May 17, 2022
MagickCore/memory.c in ImageMagick allows remote attackers to cause a denial of service (out-of...
Moderate
Unreviewed
CVE-2016-7531
was published
May 17, 2022
The DivFixppCore::avi_header_fix function in DivFix++Core.cpp in DivFix++ v0.34 allows remote...
Moderate
Unreviewed
CVE-2017-11330
was published
May 17, 2022
Heap-based buffer overflow in the pstoedit_suffix_table_init function in output-pstoedit.c in...
Moderate
Unreviewed
CVE-2016-7392
was published
May 17, 2022
The jpc_crg_getparms function in libjasper/jpc/jpc_cs.c in JasPer 1.900.1 uses an incorrect data...
Moderate
Unreviewed
CVE-2011-4517
was published
May 17, 2022
Heap-based buffer overflow in the get_sos function in jdmarker.c in libjpeg-turbo 1.2.0 allows...
Moderate
Unreviewed
CVE-2012-2806
was published
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API