GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,635
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
2,661 advisories
Filter by severity
Exiv2::isoSpeed in easyaccess.cpp in Exiv2 v0.27-RC2 allows remote attackers to cause a denial of...
Moderate
Unreviewed
CVE-2018-19607
was published
May 14, 2022
Poppler before 0.70.0 has a NULL pointer dereference in _poppler_attachment_new when called from...
Moderate
Unreviewed
CVE-2018-19149
was published
May 14, 2022
There is a NULL pointer dereference at ext/testcase.c (function testcase_read) in libsolvext.a in...
Moderate
Unreviewed
CVE-2018-20532
was published
May 14, 2022
There is a NULL pointer dereference at ext/testcase.c (function testcase_str2dep_complex) in...
Moderate
Unreviewed
CVE-2018-20533
was published
May 14, 2022
The igraph_i_strdiff function in igraph_trie.c in igraph through 0.7.1 has an NULL pointer...
Moderate
Unreviewed
CVE-2018-20349
was published
May 14, 2022
OpenJPEG 2.3.0 has a NULL pointer dereference for "red" in the imagetopnm function of jp2/convert.c
Moderate
Unreviewed
CVE-2018-18088
was published
May 14, 2022
The iwgif_record_pixel function in imagew-gif.c in libimageworsener.a in ImageWorsener 1.3.0...
Moderate
Unreviewed
CVE-2017-7453
was published
May 13, 2022
The iwbmp_read_info_header function in imagew-bmp.c in libimageworsener.a in ImageWorsener 1.3.0...
Moderate
Unreviewed
CVE-2017-7452
was published
May 13, 2022
In Sophos Tester Tool 3.2.0.7 Beta, the driver accepts a special DeviceIoControl code that doesn...
Moderate
Unreviewed
CVE-2018-6319
was published
May 13, 2022
XML parser in Huawei DP300 V500R002C00; RP200 V500R002C00SPC200; V600R006C00; TE30 V100R001C10;...
Moderate
Unreviewed
CVE-2017-17134
was published
May 13, 2022
A NULL pointer dereference was discovered in Exiv2::Image::printIFDStructure in image.cpp in...
Moderate
Unreviewed
CVE-2017-14863
was published
May 13, 2022
The vorbis_analysis_wrote function in lib/block.c in Xiph.Org libvorbis 1.3.5 allows remote...
Moderate
Unreviewed
CVE-2017-11333
was published
May 13, 2022
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the...
Moderate
Unreviewed
CVE-2017-11063
was published
May 13, 2022
OpenDaylight NULL Pointer Dereference
Moderate
CVE-2017-1000360
was published
for
org.opendaylight.controller:releasepom
(Maven)
May 13, 2022
Controller throws an exception and does not allow user to add subsequent flow for a particular...
Moderate
Unreviewed
CVE-2017-1000358
was published
May 13, 2022
A denial of service vulnerability in the Android media framework. Product: Android. Versions: 6.0...
Moderate
Unreviewed
CVE-2017-0686
was published
May 13, 2022
JasPer before version 2.0.10 is vulnerable to a null pointer dereference was found in the decoded...
Moderate
Unreviewed
CVE-2016-9600
was published
May 13, 2022
A security flaw was discovered in the nl80211_set_rekey_data() function in net/wireless/nl80211.c...
Moderate
Unreviewed
CVE-2017-12153
was published
May 13, 2022
A vulnerability was found while fuzzing libbpg 0.9.7. It is a NULL pointer dereference issue due...
Moderate
Unreviewed
CVE-2017-2575
was published
May 13, 2022
A null pointer dereference vulnerability was found in netpbm before 10.61. A maliciously crafted...
Moderate
Unreviewed
CVE-2017-2586
was published
May 13, 2022
A NULL pointer deference flaw was found in the way libvirt from 2.5.0 to 3.0.0 handled empty...
Moderate
Unreviewed
CVE-2017-2635
was published
May 13, 2022
389-ds-base before versions 1.3.5.17 and 1.3.6.10 is vulnerable to an invalid pointer dereference...
Moderate
Unreviewed
CVE-2017-2668
was published
May 13, 2022
Under some conditions when using both DNS64 and RPZ to rewrite query responses, query processing...
Moderate
Unreviewed
CVE-2017-3135
was published
May 13, 2022
A null pointer dereference flaw was found in the way samba checked database outputs from the LDB...
Moderate
Unreviewed
CVE-2018-10918
was published
May 13, 2022
The Linux kernel before 4.15-rc8 was found to be vulnerable to a NULL pointer dereference bug in...
Moderate
Unreviewed
CVE-2018-14646
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API