GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,635
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,019 advisories
Filter by severity
FreeRDP before 1.1.0-beta+2013071101 allows remote attackers to cause a denial of service (NULL...
High
Unreviewed
CVE-2013-4119
was published
May 13, 2022
In Wireshark 2.6.0, 2.4.0 to 2.4.6, and 2.2.0 to 2.2.14, the RRC dissector and other dissectors...
High
Unreviewed
CVE-2018-11359
was published
May 13, 2022
In Wireshark 2.6.0, 2.4.0 to 2.4.6, and 2.2.0 to 2.2.14, the DNS dissector could crash. This was...
High
Unreviewed
CVE-2018-11356
was published
May 13, 2022
In Wireshark 2.6.0 to 2.6.3 and 2.4.0 to 2.4.9, the MS-WSP protocol dissector could crash. This...
High
Unreviewed
CVE-2018-18227
was published
May 13, 2022
libvterm through 0+bzr726, as used in Vim and other products, mishandles certain out-of-memory...
High
Unreviewed
CVE-2018-20786
was published
May 13, 2022
Artifex Software, Inc. MuJS before 5008105780c0b0182ea6eda83ad5598f225be3ee allows context...
High
Unreviewed
CVE-2016-9294
was published
May 13, 2022
hw/rdma/vmw/pvrdma_cmd.c in QEMU allows attackers to cause a denial of service (NULL pointer...
High
Unreviewed
CVE-2018-20125
was published
May 13, 2022
hw/rdma/vmw/pvrdma_main.c in QEMU does not implement a read operation (such as uar_read by...
High
Unreviewed
CVE-2018-20191
was published
May 13, 2022
An issue was discovered in the Linux kernel through 4.17.10. There is an invalid pointer...
High
Unreviewed
CVE-2018-14612
was published
May 13, 2022
ntpd in NTP before 4.2.8p8 allows remote attackers to cause a denial of service (daemon crash)...
High
Unreviewed
CVE-2016-4957
was published
May 13, 2022
The agroot() function in cgraph\obj.c in libcgraph.a in Graphviz 2.39.20160612.1140 has a NULL...
High
Unreviewed
CVE-2019-11023
was published
May 13, 2022
The cifs_close function in fs/cifs/file.c in the Linux kernel before 2.6.39 allows local users to...
High
Unreviewed
CVE-2011-1771
was published
May 13, 2022
An issue was discovered in LibSass <3.5.3. A NULL pointer dereference was found in the function...
High
Unreviewed
CVE-2018-11695
was published
May 13, 2022
A certain Red Hat patch to the sctp_sock_migrate function in net/sctp/socket.c in the Linux...
High
Unreviewed
CVE-2011-2482
was published
May 13, 2022
The key_replace_session_keyring function in security/keys/process_keys.c in the Linux kernel...
High
Unreviewed
CVE-2011-2184
was published
May 13, 2022
The msm_ipc_router_close function in net/ipc_router/ipc_router_socket.c in the ipc_router...
High
Unreviewed
CVE-2016-5870
was published
May 13, 2022
The dccp_rcv_state_process function in net/dccp/input.c in the Datagram Congestion Control...
High
Unreviewed
CVE-2011-1093
was published
May 13, 2022
gdk-pixbuf-thumbnailer.c in gdk-pixbuf allows context-dependent attackers to cause a denial of...
High
Unreviewed
CVE-2017-6311
was published
May 13, 2022
The qdisc_notify function in net/sched/sch_api.c in the Linux kernel before 2.6.35 does not...
High
Unreviewed
CVE-2011-2525
was published
May 13, 2022
The pppol2tp_xmit function in drivers/net/pppol2tp.c in the L2TP implementation in the Linux...
High
Unreviewed
CVE-2010-2495
was published
May 13, 2022
The igb_receive_skb function in drivers/net/igb/igb_main.c in the Intel Gigabit Ethernet (aka igb...
High
Unreviewed
CVE-2010-4263
was published
May 13, 2022
The aun_incoming function in net/econet/af_econet.c in the Linux kernel before 2.6.37-rc6, when...
High
Unreviewed
CVE-2010-4342
was published
May 13, 2022
The keyctl_session_to_parent function in security/keys/keyctl.c in the Linux kernel 2.6.35.4 and...
High
Unreviewed
CVE-2010-2960
was published
May 13, 2022
The sctp_assoc_update function in net/sctp/associola.c in the Linux kernel through 3.15.8, when...
High
Unreviewed
CVE-2014-5077
was published
May 13, 2022
The gfs2_dirent_find_space function in fs/gfs2/dir.c in the Linux kernel before 2.6.35 uses an...
High
Unreviewed
CVE-2010-2798
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API