GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
3,037 advisories
Filter by severity
An issue was discovered on Epson WorkForce WF-2861 10.48 LQ22I3, 10.51.LQ20I6 and 10.52.LQ17IA...
Moderate
Unreviewed
CVE-2018-18960
was published
May 13, 2022
A vulnerability in the cryptographic hardware accelerator driver of Cisco Adaptive Security...
High
Unreviewed
CVE-2018-15383
was published
May 13, 2022
A vulnerability in the TCP syslog module of Cisco Adaptive Security Appliance (ASA) Software and...
High
Unreviewed
CVE-2018-15399
was published
May 13, 2022
ImageMagick 7.0.7-12 Q16, a CPU exhaustion vulnerability was found in the function ReadDDSInfo in...
High
Unreviewed
CVE-2017-1000476
was published
May 13, 2022
The ReadDCMImage function in coders\dcm.c in ImageMagick 7.0.6-1 has an integer signedness error...
High
Unreviewed
CVE-2017-12140
was published
May 13, 2022
In ImageMagick 7.0.7-12 Q16, a large loop vulnerability was found in the function...
High
Unreviewed
CVE-2017-17682
was published
May 13, 2022
A vulnerability in the system scanning component of Cisco Immunet and Cisco Advanced Malware...
Moderate
Unreviewed
CVE-2018-15437
was published
May 13, 2022
Linux kernel versions 4.9+ can be forced to make very expensive calls to tcp_collapse_ofo_queue()...
High
Unreviewed
CVE-2018-5390
was published
May 13, 2022
The email-ingestion feature in Best Practical Request Tracker 4.1.13 through 4.4 allows denial of...
High
Unreviewed
CVE-2018-18898
was published
May 13, 2022
An issue was discovered in Qt before 5.11.3. There is QTgaFile Uncontrolled Resource Consumption.
Moderate
Unreviewed
CVE-2018-19871
was published
May 13, 2022
An issue was discovered in Wowza Streaming Engine before 4.7.1. There is a denial of service ...
High
Unreviewed
CVE-2018-7048
was published
May 13, 2022
The VNC websocket frame decoder in QEMU allows remote attackers to cause a denial of service ...
High
Unreviewed
CVE-2015-1779
was published
May 13, 2022
qemu/qemu_monitor.c in libvirt allows attackers to cause a denial of service (memory consumption)...
High
Unreviewed
CVE-2018-5748
was published
May 13, 2022
ImageMagick 7.0.6-6 has a large loop vulnerability in ReadWPGImage in coders/wpg.c, causing CPU...
High
Unreviewed
CVE-2017-14341
was published
May 13, 2022
In Node.js including 6.x before 6.17.0, 8.x before 8.15.1, 10.x before 10.15.2, and 11.x before...
High
Unreviewed
CVE-2019-5737
was published
May 13, 2022
A denial of service flaw was found in OpenSSL 0.9.8, 1.0.1, 1.0.2 through 1.0.2h, and 1.1.0 in...
High
Unreviewed
CVE-2016-8610
was published
May 13, 2022
Apache Subversion's mod_dontdothat module and HTTP clients 1.4.0 through 1.8.16, and 1.9.0...
Moderate
Unreviewed
CVE-2016-8734
was published
May 13, 2022
Memory leak in the ReadPSDLayers function in coders/psd.c in ImageMagick before 6.9.6-3 allows...
High
Unreviewed
CVE-2016-10058
was published
May 13, 2022
libxml2, as used in Red Hat JBoss Core Services and when in recovery mode, allows context...
Moderate
Unreviewed
CVE-2016-9596
was published
May 13, 2022
JRuby before 1.6.5.1 computes hash values without restricting the ability to trigger hash...
Moderate
Unreviewed
CVE-2011-4838
was published
May 13, 2022
Uncontrolled Resource Consumption in Artemis and HornetQ
High
CVE-2017-12174
was published
for
org.apache.activemq:artemis-native
(Maven)
May 13, 2022
In OpenJPEG 2.3.0, there is excessive iteration in the opj_t1_encode_cblks function of openjp2/t1...
Moderate
Unreviewed
CVE-2018-6616
was published
May 13, 2022
OpenStack Dashboard (Horizon) before 2014.1.3 and 2014.2.x before 2014.2.1 does not properly...
Moderate
Unreviewed
CVE-2014-8124
was published
May 13, 2022
The MikroTik Router hAP Lite 6.25 has no protection mechanism for unsolicited TCP ACK packets in...
High
Unreviewed
CVE-2017-6444
was published
May 13, 2022
The byterange filter in the Apache HTTP Server 1.3.x, 2.0.x through 2.0.64, and 2.2.x through 2.2...
High
Unreviewed
CVE-2011-3192
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API