GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
2,671 advisories
Filter by severity
An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-33. w3m allows remote...
Moderate
Unreviewed
CVE-2016-9624
was published
May 17, 2022
An error within the "tar_directory_for_file()" function (gsf-infile-tar.c) in GNOME Structured...
Moderate
Unreviewed
CVE-2016-9888
was published
May 17, 2022
The gdImageCreateFromXpm function in gdxpm.c in libgd, as used in PHP 5.4.26 and earlier, allows...
Moderate
Unreviewed
CVE-2014-2497
was published
May 17, 2022
VMFUNC emulation in Xen 4.6.x through 4.8.x on x86 systems using AMD virtualization extensions ...
Moderate
Unreviewed
CVE-2016-10025
was published
May 17, 2022
The bm_readbody_bmp function in bitmap_io.c in potrace before 1.13 allows remote attackers to...
Moderate
Unreviewed
CVE-2016-8694
was published
May 17, 2022
The bm_readbody_bmp function in bitmap_io.c in potrace before 1.13 allows remote attackers to...
Moderate
Unreviewed
CVE-2016-8695
was published
May 17, 2022
The bm_readbody_bmp function in bitmap_io.c in potrace before 1.13 allows remote attackers to...
Moderate
Unreviewed
CVE-2016-8696
was published
May 17, 2022
The get_vlc2 function in get_bits.h in Libav 11.9 allows remote attackers to cause a denial of...
Moderate
Unreviewed
CVE-2016-8676
was published
May 17, 2022
The get_vlc2 function in get_bits.h in Libav before 11.9 allows remote attackers to cause a...
Moderate
Unreviewed
CVE-2016-8675
was published
May 17, 2022
The ff_put_pixels8_xy2_mmx function in rnd_template.c in Libav 11.7 allows remote attackers to...
Moderate
Unreviewed
CVE-2016-7477
was published
May 17, 2022
The dumpBuffer function in read.c in the listswf tool in libming 0.4.7 allows remote attackers to...
Moderate
Unreviewed
CVE-2016-9828
was published
May 17, 2022
The r_read_* functions in libr/include/r_endian.h in radare2 1.2.1 allow remote attackers to...
Moderate
Unreviewed
CVE-2017-6197
was published
May 17, 2022
base/PdfOutputStream.cpp in PoDoFo 0.9.4 allows remote attackers to cause a denial of service ...
Moderate
Unreviewed
CVE-2017-5854
was published
May 17, 2022
The splt_cue_export_to_file function in cue.c in libmp3splt 0.9.2 allows remote attackers to...
Moderate
Unreviewed
CVE-2017-5665
was published
May 17, 2022
The PoDoFo::PdfParser::ReadXRefSubsection function in PdfParser.cpp in PoDoFo 0.9.4 allows remote...
Moderate
Unreviewed
CVE-2017-5855
was published
May 17, 2022
OpenBSD 5.8 and 5.9 allows local users to cause a denial of service (NULL pointer dereference and...
Moderate
Unreviewed
CVE-2016-6350
was published
May 17, 2022
The GraphicsStack::TGraphicsStackElement::~TGraphicsStackElement function in graphicsstack.h in...
Moderate
Unreviewed
CVE-2017-6841
was published
May 17, 2022
The PoDoFo::PdfColor::operator function in PdfColor.cpp in PoDoFo 0.9.4 allows remote attackers...
Moderate
Unreviewed
CVE-2017-6845
was published
May 17, 2022
The GraphicsStack::TGraphicsStackElement::SetNonStrokingColorSpace function in graphicsstack.h in...
Moderate
Unreviewed
CVE-2017-6846
was published
May 17, 2022
The PoDoFo::PdfColorGray::~PdfColorGray function in PdfColor.cpp in PoDoFo 0.9.4 allows remote...
Moderate
Unreviewed
CVE-2017-6849
was published
May 17, 2022
The PoDoFo::PdfVariant::DelayedLoad function in PdfVariant.h in PoDoFo 0.9.4 allows remote...
Moderate
Unreviewed
CVE-2017-6847
was published
May 17, 2022
The PoDoFo::PdfXObject::PdfXObject function in PdfXObject.cpp in PoDoFo 0.9.5 allows remote...
Moderate
Unreviewed
CVE-2017-6848
was published
May 17, 2022
The ColorChanger::GetColorFromStack function in colorchanger.cpp in PoDoFo 0.9.5 allows remote...
Moderate
Unreviewed
CVE-2017-6842
was published
May 17, 2022
The util_format_is_pure_uint function in vrend_renderer.c in Virgil 3d project (aka virglrenderer...
Moderate
Unreviewed
CVE-2017-5937
was published
May 17, 2022
The free_options function in options_manager.c in mp3splt 2.6.2 allows remote attackers to cause...
Moderate
Unreviewed
CVE-2017-5851
was published
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API