GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,635
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
6,919 advisories
Filter by severity
libdwarf before 20160923 allows remote attackers to cause a denial of service (out-of-bounds read...
High
Unreviewed
CVE-2016-5040
was published
May 13, 2022
The get_attr_value function in libdwarf before 20160923 allows remote attackers to cause a denial...
High
Unreviewed
CVE-2016-5039
was published
May 13, 2022
The _dwarf_read_line_table_header function in dwarf_line_table_reader.c in libdwarf before...
Moderate
Unreviewed
CVE-2016-5035
was published
May 13, 2022
The dump_block function in print_sections.c in libdwarf before 20160923 allows remote attackers...
High
Unreviewed
CVE-2016-5036
was published
May 13, 2022
The _dwarf_get_abbrev_for_code function in dwarf_util.c in libdwarf 20161001 and earlier allows...
Moderate
Unreviewed
CVE-2016-8680
was published
May 13, 2022
The dwarf_dealloc function in libdwarf before 20160923 allows remote attackers to cause a denial...
High
Unreviewed
CVE-2016-5043
was published
May 13, 2022
The dwarf_get_xu_hash_entry function in libdwarf before 20160923 allows remote attackers to cause...
Moderate
Unreviewed
CVE-2016-5032
was published
May 13, 2022
The dwarf_get_macro_startend_file function in dwarf_macro5.c in libdwarf before 20160923 allows...
High
Unreviewed
CVE-2016-5038
was published
May 13, 2022
The read_line_table_program function in dwarf_line_table_reader_common.c in libdwarf before...
Moderate
Unreviewed
CVE-2016-7510
was published
May 13, 2022
The _dwarf_get_size_of_val function in libdwarf/dwarf_util.c in Libdwarf before 20161124 allows...
Moderate
Unreviewed
CVE-2016-8679
was published
May 13, 2022
An issue, also known as DW201703-005, was discovered in libdwarf 2017-03-21. A heap-based buffer...
Critical
Unreviewed
CVE-2017-9053
was published
May 13, 2022
An issue, also known as DW201703-002, was discovered in libdwarf 2017-03-21. In...
Critical
Unreviewed
CVE-2017-9054
was published
May 13, 2022
The dwarf_get_aranges_list function in dwarf_arrange.c in Libdwarf before 20161124 allows remote...
High
Unreviewed
CVE-2016-9276
was published
May 13, 2022
An issue, also known as DW201703-001, was discovered in libdwarf 2017-03-21. In dwarf_formsdata()...
Critical
Unreviewed
CVE-2017-9055
was published
May 13, 2022
get_l2len in common/get.c in Tcpreplay 4.3.0 beta1 allows remote attackers to cause a denial of...
High
Unreviewed
CVE-2018-13112
was published
May 13, 2022
Tcpreplay before 4.3.1 has a heap-based buffer over-read in packet2tree in tree.c.
High
Unreviewed
CVE-2018-20552
was published
May 13, 2022
Tcpreplay before 4.3.1 has a heap-based buffer over-read in get_l2len in common/get.c.
High
Unreviewed
CVE-2018-20553
was published
May 13, 2022
A heap-based buffer over-read was discovered in the tcpreplay-edit binary of Tcpreplay 4.3.0...
Moderate
Unreviewed
CVE-2018-18407
was published
May 13, 2022
An issue was discovered in Tcpreplay 4.3.0 beta1. A heap-based buffer over-read was triggered in...
Moderate
Unreviewed
CVE-2018-17974
was published
May 13, 2022
A heap-based buffer over-read exists in the function fast_edit_packet() in the file send_packets...
High
Unreviewed
CVE-2018-17580
was published
May 13, 2022
Tcpreplay v4.3.0 beta1 contains a heap-based buffer over-read. The get_next_packet() function in...
High
Unreviewed
CVE-2018-17582
was published
May 13, 2022
An issue was discovered in the EXIF component in PHP before 7.1.27, 7.2.x before 7.2.16, and 7.3...
High
Unreviewed
CVE-2019-9638
was published
May 13, 2022
An issue was discovered in the EXIF component in PHP before 7.1.27, 7.2.x before 7.2.16, and 7.3...
High
Unreviewed
CVE-2019-9640
was published
May 13, 2022
In AdvanceCOMP 2.1, png_compress in pngex.cc in advpng has an integer overflow upon encountering...
High
Unreviewed
CVE-2019-9210
was published
May 13, 2022
Insufficient validation of untrusted input in V8 in Google Chrome prior to 59.0.3071.104 for Mac,...
High
Unreviewed
CVE-2017-5088
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API