GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,635
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,019 advisories
Filter by severity
Toybox v0.8.7 was discovered to contain a NULL pointer dereference via the component httpd.c....
High
Unreviewed
CVE-2022-32298
was published
Jul 15, 2022
A CWE-476: NULL Pointer Dereference vulnerability exists that could cause a denial of service of...
High
Unreviewed
CVE-2022-34761
was published
Jul 14, 2022
The frame scheduling module has a null pointer dereference vulnerability. Successful exploitation...
High
Unreviewed
CVE-2022-34736
was published
Jul 13, 2022
The frame scheduling module has a null pointer dereference vulnerability. Successful exploitation...
High
Unreviewed
CVE-2022-34735
was published
Jul 13, 2022
DCMTK through 3.6.6 does not handle string copy properly. Sending specific requests to the...
High
Unreviewed
CVE-2021-41689
was published
Jun 29, 2022
Possible null pointer dereference due to improper validation of RRC connection reconfiguration...
High
Unreviewed
CVE-2021-35076
was published
Jun 15, 2022
Possible null pointer access due to improper validation of system information message to be...
High
Unreviewed
CVE-2021-35087
was published
Jun 15, 2022
Microsoft Windows SMBv3 suffers from a null pointer dereference in versions of Windows prior to...
High
Unreviewed
CVE-2022-32230
was published
Jun 15, 2022
Unicorn Engine v2.0.0-rc7 and below was discovered to contain a NULL pointer dereference via...
High
Unreviewed
CVE-2022-29694
was published
Jun 3, 2022
An issue was discovered in src/http/httpLib.c in EmbedThis Appweb Community Edition 8.2.1, allows...
High
Unreviewed
CVE-2021-33254
was published
Jun 3, 2022
NULL Pointer Dereference in HyperLedger Fabric
High
CVE-2021-43667
was published
for
github.com/hyperledger/fabric
(Go)
May 25, 2022
NULL pointer dereferences vulnerability in TCP/IP function included in the firmware of GT14 Model...
High
Unreviewed
CVE-2020-5646
was published
May 24, 2022
A CWE-476: NULL Pointer Dereference vulnerability that could cause a Denial of Service on the...
High
Unreviewed
CVE-2021-22792
was published
May 24, 2022
A user may be tricked into opening a malicious FBX file which may exploit an Untrusted Pointer...
High
Unreviewed
CVE-2021-40157
was published
May 24, 2022
Varnish varnish-modules before 0.17.1 allows remote attackers to cause a denial of service ...
High
Unreviewed
CVE-2021-28543
was published
May 24, 2022
golang.org/x/crypto/ssh NULL Pointer Dereference vulnerability
High
CVE-2020-29652
was published
for
golang.org/x/crypto
(Go)
May 24, 2022
An issue was discovered in get_vdev_port_node_info in arch/sparc/kernel/mdesc.c in the Linux...
High
Unreviewed
CVE-2019-12615
was published
May 24, 2022
interface_release_resource in hw/display/qxl.c in QEMU 4.0.0 has a NULL pointer dereference.
High
Unreviewed
CVE-2019-12155
was published
May 24, 2022
An issue was discovered in the Linux kernel before 5.0.7. A NULL pointer dereference can occur...
High
Unreviewed
CVE-2019-11810
was published
May 24, 2022
NULL pointer exception in the IEEE 802.11 dissector in Wireshark 3.4.0 to 3.4.9 and 3.2.0 to 3.2...
High
Unreviewed
CVE-2021-39928
was published
May 24, 2022
A NULL pointer dereference in Busybox's man applet leads to denial of service when a section name...
High
Unreviewed
CVE-2021-42373
was published
May 24, 2022
A NULL pointer dereference in Busybox's hush applet leads to denial of service when processing a...
High
Unreviewed
CVE-2021-42376
was published
May 24, 2022
A NULL pointer dereference in the function TextPage::restoreState of pdf2xml v2.0 allows...
High
Unreviewed
CVE-2020-23872
was published
May 24, 2022
pdf2json v0.71 was discovered to contain a NULL pointer dereference in the component ObjectStream...
High
Unreviewed
CVE-2020-23879
was published
May 24, 2022
In the CODESYS V2 web server prior to V1.1.9.22 crafted web server requests may cause a Null...
High
Unreviewed
CVE-2021-34586
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API