GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,638
Maven
5,000+
npm
4,264
NuGet
760
pip
4,060
Pub
12
RubyGems
956
Rust
1,056
Swift
45
Unreviewed advisories
All unreviewed
5,000+
3,209 advisories
Filter by severity
A heap-based buffer over-read in SampleImage() in MagickCore/resize.c in ImageMagick 7.0.6-8 Q16...
Moderate
Unreviewed
CVE-2017-14248
was published
May 13, 2022
The _bfd_elf_parse_attributes function in elf-attrs.c in the Binary File Descriptor (BFD) library...
Moderate
Unreviewed
CVE-2017-14130
was published
May 13, 2022
The decode_line_info function in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd...
Moderate
Unreviewed
CVE-2017-14128
was published
May 13, 2022
The read_section function in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd),...
Moderate
Unreviewed
CVE-2017-14129
was published
May 13, 2022
The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, does...
Moderate
Unreviewed
CVE-2017-13757
was published
May 13, 2022
In ImageMagick 7.0.6-6 and GraphicsMagick 1.3.26, a heap-based buffer over-read was found in the...
Moderate
Unreviewed
CVE-2017-13134
was published
May 13, 2022
The getsym function in tekhex.c in the Binary File Descriptor (BFD) library (aka libbfd), as...
Moderate
Unreviewed
CVE-2017-12967
was published
May 13, 2022
The gig::DimensionRegion::CreateVelocityTable function in gig.cpp in libgig 4.0.0 allows remote...
Moderate
Unreviewed
CVE-2017-12951
was published
May 13, 2022
There is a heap-based buffer over-read in libexiv2 in Exiv2 0.26 that is triggered in the Exiv2:...
Moderate
Unreviewed
CVE-2017-12957
was published
May 13, 2022
A heap-based buffer over-read was found in the function OpCode (called from decompileINCR_DECR...
Moderate
Unreviewed
CVE-2017-11729
was published
May 13, 2022
A heap-based buffer over-read was found in the function OpCode (called from decompileINCR_DECR...
Moderate
Unreviewed
CVE-2017-11730
was published
May 13, 2022
A heap-based buffer over-read was found in the function OpCode (called from decompileSETMEMBER)...
Moderate
Unreviewed
CVE-2017-11728
was published
May 13, 2022
A heap-based buffer over-read was found in the function decompileCALLFUNCTION in util/decompile.c...
Moderate
Unreviewed
CVE-2017-11734
was published
May 13, 2022
When ImageMagick 7.0.6-1 processes a crafted file in convert, it can lead to a heap-based buffer...
Moderate
Unreviewed
CVE-2017-11639
was published
May 13, 2022
A heap-based buffer over-read was found in the function decompileIF in util/decompile.c in Ming 0...
Moderate
Unreviewed
CVE-2017-11704
was published
May 13, 2022
There is a heap-based buffer over-read in the Sass::Prelexer::re_linebreak function in lexer.cpp...
Moderate
Unreviewed
CVE-2017-11608
was published
May 13, 2022
There is a heap based buffer over-read in LibSass 3.4.5, related to address 0xb4803ea1. A crafted...
Moderate
Unreviewed
CVE-2017-11605
was published
May 13, 2022
When ImageMagick 7.0.6-1 processes a crafted file in convert, it can lead to a heap-based buffer...
Moderate
Unreviewed
CVE-2017-11535
was published
May 13, 2022
When ImageMagick 7.0.6-1 processes a crafted file in convert, it can lead to a heap-based buffer...
Moderate
Unreviewed
CVE-2017-11533
was published
May 13, 2022
When ImageMagick 7.0.6-1 processes a crafted file in convert, it can lead to a heap-based buffer...
Moderate
Unreviewed
CVE-2017-11540
was published
May 13, 2022
The cabd_read_string function in mspack/cabd.c in libmspack 0.5alpha, as used in ClamAV 0.99.2...
Moderate
Unreviewed
CVE-2017-11423
was published
May 13, 2022
There is a heap-based buffer over-read in the Image::printIFDStructure function in image.cpp in...
Moderate
Unreviewed
CVE-2017-11336
was published
May 13, 2022
The ExifImageFile::readDHT function in ExifImageFileRead.cpp in OpenExif 2.1.4 allows remote...
Moderate
Unreviewed
CVE-2017-11117
was published
May 13, 2022
The III_i_stereo function in libmpg123/layer3.c in mpg123 through 1.25.1 allows remote attackers...
Moderate
Unreviewed
CVE-2017-11126
was published
May 13, 2022
In all Qualcomm products with Android releases from CAF using the Linux kernel, while processing...
Moderate
Unreviewed
CVE-2017-11002
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API