GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
2,670 advisories
Filter by severity
There exists one NULL pointer dereference vulnerability in AP4_JsonInspector::AddField in Ap4Atom...
Moderate
Unreviewed
CVE-2018-14543
was published
May 14, 2022
The AP4_Processor::Process function in Core/Ap4Processor.cpp in Bento4 mp4encrypt before 1.5.0...
Moderate
Unreviewed
CVE-2017-12475
was published
May 14, 2022
VMware ESXi (6.7 before ESXi670-201806401-BG, 6.5 before ESXi650-201806401-BG, 6.0 before ESXi600...
Moderate
Unreviewed
CVE-2018-6972
was published
May 14, 2022
The do_ssl3_write function in s3_pkt.c in OpenSSL 1.x through 1.0.1g, when...
Moderate
Unreviewed
CVE-2014-0198
was published
May 14, 2022
Embedthis Appweb before 4.6.6 and 5.x before 5.2.1 allows remote attackers to cause a denial of...
Moderate
Unreviewed
CVE-2014-9708
was published
May 14, 2022
Jsish version 2.4.65 contains a CWE-476: NULL Pointer Dereference vulnerability in Function...
Moderate
Unreviewed
CVE-2018-1000655
was published
May 14, 2022
jsish version 2.4.67 contains a CWE-476: NULL Pointer Dereference vulnerability in Jsi_LogMsg ...
Moderate
Unreviewed
CVE-2018-1000661
was published
May 14, 2022
The KEYS subsystem in the Linux kernel through 4.13.7 mishandles use of add_key for a key that...
Moderate
Unreviewed
CVE-2017-15299
was published
May 14, 2022
In fs/ocfs2/cluster/nodemanager.c in the Linux kernel before 4.15, local users can cause a denial...
Moderate
Unreviewed
CVE-2017-18216
was published
May 14, 2022
An issue was discovered in certain Apple products. iOS before 10.2 is affected. macOS before 10...
Moderate
Unreviewed
CVE-2016-7627
was published
May 14, 2022
The git_oid_nfmt function in commit.c in libgit2 before 0.24.3 allows remote attackers to cause a...
Moderate
Unreviewed
CVE-2016-8569
was published
May 14, 2022
GraphicsMagick 1.3.23 allows remote attackers to cause a denial of service (NULL pointer...
Moderate
Unreviewed
CVE-2016-2318
was published
May 14, 2022
realloc_symlink in rock.c in GNU libcdio before 1.0.0 allows remote attackers to cause a denial...
Moderate
Unreviewed
CVE-2017-18199
was published
May 14, 2022
The Linux Kernel versions 4.14, 4.15, and 4.16 has a null pointer dereference which can result in...
Moderate
Unreviewed
CVE-2018-1000200
was published
May 14, 2022
The netfilter subsystem in the Linux kernel through 4.15.7 mishandles the case of a rule blob...
Moderate
Unreviewed
CVE-2018-1065
was published
May 14, 2022
An issue was discovered in Xen 4.8.x through 4.10.x allowing x86 PVH guest OS users to cause a...
Moderate
Unreviewed
CVE-2018-7542
was published
May 14, 2022
JerryScript version Tested on commit f86d7459d195c8ba58479d1861b0cc726c8b3793. Analysing history...
Moderate
Unreviewed
CVE-2018-1000636
was published
May 14, 2022
A NULL pointer dereference in H5O_sdspace_encode() in H5Osdspace.c in the HDF HDF5 through 1.10.3...
Moderate
Unreviewed
CVE-2018-17432
was published
May 14, 2022
The bmp_getdata function in libjasper/bmp/bmp_dec.c in JasPer before 1.900.5 allows remote...
Moderate
Unreviewed
CVE-2016-8690
was published
May 14, 2022
In FreeBSD before 11.2-STABLE(r338987), 11.2-RELEASE-p4, and 11.1-RELEASE-p15, due to...
Moderate
Unreviewed
CVE-2018-17154
was published
May 14, 2022
In Small Cell SoC and Snapdragon (Automobile, Mobile, Wear) in version FSM9055, FSM9955, MDM9607,...
Moderate
Unreviewed
CVE-2017-18301
was published
May 14, 2022
The coff_slurp_reloc_table function in coffcode.h in the Binary File Descriptor (BFD) library ...
Moderate
Unreviewed
CVE-2017-17123
was published
May 14, 2022
The function DCTStream::readScan in Stream.cc in Xpdf 4.00 allows remote attackers to cause a...
Moderate
Unreviewed
CVE-2018-18457
was published
May 14, 2022
The function DCTStream::getBlock in Stream.cc in Xpdf 4.00 allows remote attackers to cause a...
Moderate
Unreviewed
CVE-2018-18459
was published
May 14, 2022
The function DCTStream::decodeImage in Stream.cc in Xpdf 4.00 allows remote attackers to cause a...
Moderate
Unreviewed
CVE-2018-18458
was published
May 14, 2022
ProTip!
Advisories are also available from the
GraphQL API