GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
2,670 advisories
Filter by severity
The outputSWF_TEXT_RECORD function in util/outputscript.c in libming <= 0.4.8 is vulnerable to a...
Moderate
Unreviewed
CVE-2017-16883
was published
May 14, 2022
bchunk (related to BinChunker) 1.2.0 and 1.2.1 is vulnerable to an "Access violation near NULL on...
Moderate
Unreviewed
CVE-2017-15955
was published
May 14, 2022
Under certain conditions a malicious user provoking a Null Pointer dereference can prevent...
Moderate
Unreviewed
CVE-2018-2384
was published
May 14, 2022
An issue was discovered in xpdf 4.00. A NULL pointer dereference in readCodestream allows an...
Moderate
Unreviewed
CVE-2018-7175
was published
May 14, 2022
A other vulnerability in the Android media framework (n/a). Product: Android. Versions: 7.0, 7.1...
Moderate
Unreviewed
CVE-2017-13235
was published
May 14, 2022
The keyctl_read_key function in security/keys/keyctl.c in the Key Management subcomponent in the...
Moderate
Unreviewed
CVE-2017-12192
was published
May 14, 2022
security/keys/keyctl.c in the Linux kernel before 4.11.5 does not consider the case of a NULL...
Moderate
Unreviewed
CVE-2017-15274
was published
May 14, 2022
An issue was discovered in Icinga 2.x through 2.8.1. By sending specially crafted messages, an...
Moderate
Unreviewed
CVE-2018-6534
was published
May 14, 2022
A NULL pointer dereference in JPXStream::fillReadBuf in JPXStream.cc in xpdf 4.00 allows...
Moderate
Unreviewed
CVE-2018-7452
was published
May 14, 2022
A NULL pointer dereference in XFAForm::scanFields in XFAForm.cc in xpdf 4.00 allows attackers to...
Moderate
Unreviewed
CVE-2018-7454
was published
May 14, 2022
The eap_pwd_perform_confirm_exchange function in eap_peer/eap_pwd.c in wpa_supplicant 2.x before...
Moderate
Unreviewed
CVE-2015-5316
was published
May 14, 2022
PEM module of Huawei DP300 V500R002C00; IPS Module V500R001C00; V500R001C30; NGFW Module...
Moderate
Unreviewed
CVE-2017-17135
was published
May 14, 2022
Huawei VP9660 V500R002C10 has a null pointer reference vulnerability in license module due to...
Moderate
Unreviewed
CVE-2017-17133
was published
May 14, 2022
In LibTIFF 4.0.9, there is a Null-Pointer Dereference in the tif_print.c TIFFPrintDirectory...
Moderate
Unreviewed
CVE-2017-18013
was published
May 14, 2022
An issue was discovered in ImageMagick 7.0.7. A NULL pointer dereference vulnerability was found...
Moderate
Unreviewed
CVE-2017-18253
was published
May 14, 2022
An issue was discovered in Exempi before 2.4.3. The PostScript_Support::ConvertToDate function in...
Moderate
Unreviewed
CVE-2017-18237
was published
May 14, 2022
The rngapi_reset function in crypto/rng.c in the Linux kernel before 4.2 allows attackers to...
Moderate
Unreviewed
CVE-2017-15116
was published
May 14, 2022
The av_audio_fifo_size function in libavutil/audio_fifo.c in Libav 12.2 allows remote attackers...
Moderate
Unreviewed
CVE-2017-18247
was published
May 14, 2022
A NULL pointer dereference bug in the function ObReferenceObjectByHandle in the Kingsoft Internet...
Moderate
Unreviewed
CVE-2018-9151
was published
May 14, 2022
The pushdup function in util/decompile.c in libming through 0.4.8 does not recognize the need for...
Moderate
Unreviewed
CVE-2018-9165
was published
May 14, 2022
The WriteImages function in magick/constitute.c in ImageMagick before 6.9.2-4 allows remote...
Moderate
Unreviewed
CVE-2015-8898
was published
May 14, 2022
The hi3660_stub_clk_probe function in drivers/clk/hisilicon/clk-hi3660-stub.c in the Linux kernel...
Moderate
Unreviewed
CVE-2018-10074
was published
May 14, 2022
Huawei AR120-S V200R006C10, V200R007C00, V200R008C20, V200R008C30, AR1200 V200R006C10,...
Moderate
Unreviewed
CVE-2017-17251
was published
May 14, 2022
Espruino before 1.98 allows attackers to cause a denial of service (application crash) with a...
Moderate
Unreviewed
CVE-2018-11591
was published
May 14, 2022
NULL pointer dereference in the _fields_add function in fields.c in libbibcore.a in bibutils...
Moderate
Unreviewed
CVE-2018-10775
was published
May 14, 2022
ProTip!
Advisories are also available from the
GraphQL API