GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,019 advisories
Filter by severity
PostgreSQL before 9.1.23, 9.2.x before 9.2.18, 9.3.x before 9.3.14, 9.4.x before 9.4.9, and 9.5.x...
High
Unreviewed
CVE-2016-5423
was published
May 14, 2022
The php_wddx_pop_element function in ext/wddx/wddx.c in PHP before 5.6.25 and 7.x before 7.0.10...
High
Unreviewed
CVE-2016-7130
was published
May 14, 2022
Null pointer dereference vulnerability in NSS since 3.24.0 was found when server receives empty...
High
Unreviewed
CVE-2017-7502
was published
May 14, 2022
GnuTLS version 3.5.12 and earlier is vulnerable to a NULL pointer dereference while decoding a...
High
Unreviewed
CVE-2017-7507
was published
May 14, 2022
The find_nearest_line function in addr2line in GNU Binutils 2.28 does not handle the case where...
High
Unreviewed
CVE-2017-7225
was published
May 14, 2022
PoDoFo 0.9.5 does not properly validate memcpy arguments in the PdfMemoryOutputStream::Write...
High
Unreviewed
CVE-2018-5308
was published
May 14, 2022
In GNU Libextractor 1.4, there is a NULL Pointer Dereference in flac_metadata in flac_extractor.c.
High
Unreviewed
CVE-2017-15267
was published
May 14, 2022
In GNU Libextractor 1.4, there is a NULL Pointer Dereference in the EXTRACTOR_nsf_extract_method...
High
Unreviewed
CVE-2017-15600
was published
May 14, 2022
Pointer dereference in subsystem in Intel Graphics Driver 15.40.x.x, 15.45.x.x, 15.46.x.x allows...
High
Unreviewed
CVE-2017-5727
was published
May 14, 2022
ccn-lite-valid.c in CCN-lite before 2.00 allows context-dependent attackers to cause a denial of...
High
Unreviewed
CVE-2017-12464
was published
May 14, 2022
SBLIM Small Footprint CIM Broker (SFCB) 1.4.9 has a null pointer (DoS) vulnerability via a...
High
Unreviewed
CVE-2018-6644
was published
May 14, 2022
A remote denial of service vulnerability in HPE System Management Homepage for Windows and Linux...
High
Unreviewed
CVE-2017-12545
was published
May 14, 2022
ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an...
High
Unreviewed
CVE-2017-12380
was published
May 14, 2022
A NULL pointer access issue was discovered in Asterisk 15.x through 15.2.1. The RTP support in...
High
Unreviewed
CVE-2018-7285
was published
May 14, 2022
drivers/net/usb/asix_devices.c in the Linux kernel through 4.13.11 allows local users to cause a...
High
Unreviewed
CVE-2017-16647
was published
May 14, 2022
drivers/media/usb/dvb-usb/dib0700_devices.c in the Linux kernel through 4.13.11 allows local...
High
Unreviewed
CVE-2017-16646
was published
May 14, 2022
res_query in libresolv in glibc before 2.25 allows remote attackers to cause a denial of service ...
High
Unreviewed
CVE-2015-5180
was published
May 14, 2022
When an atomic commit is issued on a writeback panel with a NULL output_layer parameter in...
High
Unreviewed
CVE-2017-9692
was published
May 14, 2022
In the video_ioctl2() function in the camera driver in Android for MSM, Firefox OS for MSM, and...
High
Unreviewed
CVE-2017-15846
was published
May 14, 2022
In Qualcomm Android for MSM, Firefox OS for MSM, and QRD Android with all Android releases from...
High
Unreviewed
CVE-2018-3563
was published
May 14, 2022
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and...
High
Unreviewed
CVE-2016-10415
was published
May 14, 2022
An issue was discovered in certain Apple products. iOS before 11.3 is affected. The issue...
High
Unreviewed
CVE-2018-4140
was published
May 14, 2022
The php_wddx_pop_element function in ext/wddx/wddx.c in PHP 7.0.x before 7.0.15 and 7.1.x before...
High
Unreviewed
CVE-2016-10162
was published
May 14, 2022
ext/wddx/wddx.c in PHP before 5.6.28 and 7.x before 7.0.13 allows remote attackers to cause a...
High
Unreviewed
CVE-2016-9934
was published
May 14, 2022
An issue was discovered in Oniguruma 6.2.0, as used in Oniguruma-mod in Ruby through 2.4.1 and...
High
Unreviewed
CVE-2017-9229
was published
May 14, 2022
ProTip!
Advisories are also available from the
GraphQL API