GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,635
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
3,863 advisories
Filter by severity
Adobe Illustrator versions 25.4.3 (and earlier) and 26.0.2 (and earlier) are affected by a Null...
Moderate
Unreviewed
CVE-2022-23198
was published
Feb 17, 2022
An issue was discovered in the Linux kernel before 5.16.10. The USB Gadget subsystem lacks...
Moderate
Unreviewed
CVE-2022-25258
was published
Feb 17, 2022
In SVGPP SVG++ library 1.3.0, the XMLDocument::getRoot function in the renderDocument function...
Moderate
Unreviewed
CVE-2021-44960
was published
Feb 16, 2022
NULL Pointer Dereference in Kubernetes CSI snapshot-controller
Moderate
CVE-2020-8569
was published
for
github.com/kubernetes-csi/external-snapshotter/v2
(Go)
Feb 15, 2022
In LibreCAD 2.2.0, a NULL pointer dereference in the HATCH handling of libdxfrw allows an...
Moderate
Unreviewed
CVE-2021-45343
was published
Feb 15, 2022
In gc_data_segment in fs/f2fs/gc.c in the Linux kernel before 5.16.3, special files are not...
Moderate
Unreviewed
CVE-2021-44879
was published
Feb 15, 2022
Unaligned access in the CSN.1 protocol dissector in Wireshark 3.6.0 to 3.6.1 and 3.4.0 to 3.4.11...
Critical
Unreviewed
CVE-2022-0582
was published
Feb 15, 2022
Possible null pointer dereference due to lack of WDOG structure validation during registration in...
High
Unreviewed
CVE-2021-35075
was published
Feb 12, 2022
Lack of null check while freeing the device information buffer in the Bluetooth HFP protocol can...
Critical
Unreviewed
CVE-2021-35068
was published
Feb 12, 2022
A Null Pointer Dereference vulnerability exits in ffjpeg d5cfd49 (2021-12-06) in bmp_load(). When...
Moderate
Unreviewed
CVE-2021-45385
was published
Feb 12, 2022
Null source pointer passed as an argument to memcpy() function within TIFFFetchStripThing() in...
Moderate
Unreviewed
CVE-2022-0561
was published
Feb 12, 2022
Null source pointer passed as an argument to memcpy() function within TIFFReadDirectory() in...
Moderate
Unreviewed
CVE-2022-0562
was published
Feb 12, 2022
Nil dereference in NATS JWT, DoS of nats-server
High
CVE-2020-26521
was published
for
github.com/nats-io/jwt
(Go)
Feb 11, 2022
Chrono has potential segfault issue in SPIFFE authenticator
Low
GHSA-45w3-v3g4-54pm
was published
for
parsec-service
(Rust)
Feb 11, 2022
NULL Pointer Dereference in Homebrew mruby prior to 3.2.
High
Unreviewed
CVE-2022-0481
was published
Feb 11, 2022
NULL pointer dereference in the firmware for some Intel(R) Processors may allow a privileged user...
Moderate
Unreviewed
CVE-2021-0111
was published
Feb 11, 2022
Null pointer dereference in subsystem for Intel(R) AMT before versions 15.0.35 may allow an...
Moderate
Unreviewed
CVE-2021-33068
was published
Feb 11, 2022
NULL Pointer Dereference in NPM radare2.js prior to 6.0.0.
Moderate
Unreviewed
CVE-2022-0419
was published
Feb 10, 2022
A vulnerability exists in SMM (System Management Mode) branch that registers a SWSMI handler that...
High
Unreviewed
CVE-2021-41839
was published
Feb 10, 2022
A Null Pointer Dereference vulnerability exists in GPAC 1.1.0 via the xtra_box_write function in ...
Moderate
Unreviewed
CVE-2022-24249
was published
Feb 10, 2022
NULL Pointer Dereference in GitHub repository gpac/gpac prior to 1.1.0.
Moderate
Unreviewed
CVE-2021-4043
was published
Feb 10, 2022
Null pointer dereference in TensorFlow
High
CVE-2022-21739
was published
for
tensorflow
(pip)
Feb 9, 2022
Undefined behavior in `SparseTensorSliceDataset`
High
CVE-2022-21736
was published
for
tensorflow
(pip)
Feb 9, 2022
NULL Pointer Dereference and Access of Uninitialized Pointer in TensorFlow
Critical
GHSA-h6gw-r52c-724r
was published
for
tensorflow
(pip)
Feb 9, 2022
ProTip!
Advisories are also available from the
GraphQL API