GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
3,208 advisories
Filter by severity
The SGI coder in ImageMagick before 7.0.2-10 allows remote attackers to cause a denial of service...
Moderate
Unreviewed
CVE-2016-7101
was published
May 13, 2022
LocaleLowercase in MagickCore/locale.c in ImageMagick before 7.0.8-32 allows out-of-bounds access...
Moderate
Unreviewed
CVE-2019-10714
was published
May 13, 2022
The WriteTHUMBNAILImage function in coders/thumbnail.c in ImageMagick through 7.0.6-10 allows an...
Moderate
Unreviewed
CVE-2017-13769
was published
May 13, 2022
ImageMagick before 7.0.7-12 has a coders/png.c Magick_png_read_raw_profile heap-based buffer over...
Moderate
Unreviewed
CVE-2017-17504
was published
May 13, 2022
MagickCore/profile.c in ImageMagick before 7.0.3-2 allows remote attackers to cause a denial of...
Moderate
Unreviewed
CVE-2016-7799
was published
May 13, 2022
The saa7164_bus_get function in drivers/media/pci/saa7164/saa7164-bus.c in the Linux kernel...
Moderate
Unreviewed
CVE-2017-8831
was published
May 13, 2022
The MATCH_ASSOC function in NTP before version 4.2.8p9 and 4.3.x before 4.3.92 allows remote...
Moderate
Unreviewed
CVE-2016-2518
was published
May 13, 2022
An issue was discovered in libming 0.4.8. There is a heap-based buffer over-read in the function...
Moderate
Unreviewed
CVE-2019-3572
was published
May 13, 2022
An issue was discovered in Open vSwitch (OvS) 2.7.x through 2.7.6. The decode_bundle function...
Moderate
Unreviewed
CVE-2018-17206
was published
May 13, 2022
The DBD::mysql module before 4.039 for Perl, when using server-side prepared statement support,...
Moderate
Unreviewed
CVE-2016-1249
was published
May 13, 2022
The RAR file parser component in the AntiVirus Decomposer engine in Symantec Advanced Threat...
Moderate
Unreviewed
CVE-2016-5309
was published
May 13, 2022
The TagLib::Ogg::FLAC::File::scan function in oggflacfile.cpp in TagLib 1.11.1 allows remote...
Moderate
Unreviewed
CVE-2018-11439
was published
May 13, 2022
The certificate parser in OpenSSL before 1.0.1u and 1.0.2 before 1.0.2i might allow remote...
Moderate
Unreviewed
CVE-2016-6306
was published
May 13, 2022
The windows_icon_typefind function in gst-plugins-base in GStreamer before 1.10.2, when G_SLICE...
Moderate
Unreviewed
CVE-2016-9811
was published
May 13, 2022
An issue was discovered in elfutils 0.175. A segmentation fault can occur in the function...
Moderate
Unreviewed
CVE-2019-7150
was published
May 13, 2022
In elfutils 0.175, a heap-based buffer over-read was discovered in the function elf32_xlatetom in...
Moderate
Unreviewed
CVE-2019-7665
was published
May 13, 2022
dwarf_getaranges in dwarf_getaranges.c in libdw in elfutils before 2018-08-18 allows remote...
Moderate
Unreviewed
CVE-2018-16062
was published
May 13, 2022
do_core_note in readelf.c in libmagic.a in file 5.35 has an out-of-bounds read because memcpy is...
Moderate
Unreviewed
CVE-2019-8906
was published
May 13, 2022
do_core_note in readelf.c in libmagic.a in file 5.35 has a stack-based buffer over-read, related...
Moderate
Unreviewed
CVE-2019-8905
was published
May 13, 2022
An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed...
Moderate
Unreviewed
CVE-2019-9074
was published
May 13, 2022
Pro-face GP-Pro EX EX-ED before 4.05.000, PFXEXEDV before 4.05.000, PFXEXEDLS before 4.05.000,...
Moderate
Unreviewed
CVE-2016-2291
was published
May 13, 2022
In GIMP 2.8.22, there is a stack-based buffer over-read in xcf_load_stream in app/xcf/xcf.c when...
Moderate
Unreviewed
CVE-2017-17788
was published
May 13, 2022
The print_exprloc_content function in libdwarf before 20160923 allows remote attackers to cause a...
Moderate
Unreviewed
CVE-2016-5033
was published
May 13, 2022
The print_frame_inst_bytes function in libdwarf before 20160923 allows remote attackers to cause...
Moderate
Unreviewed
CVE-2016-5031
was published
May 13, 2022
The _dwarf_read_line_table_header function in dwarf_line_table_reader.c in libdwarf before...
Moderate
Unreviewed
CVE-2016-5035
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API