GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,780
Erlang
36
GitHub Actions
29
Go
2,344
Maven
5,000+
npm
3,973
NuGet
719
pip
3,770
Pub
12
RubyGems
923
Rust
978
Swift
38
Unreviewed advisories
All unreviewed
5,000+
13,461 advisories
Filter by severity
In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the...
High
Unreviewed
CVE-2018-11878
was published
May 14, 2022
In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the...
High
Unreviewed
CVE-2018-11889
was published
May 14, 2022
Inappropriate memory management when caching in PDFium in Google Chrome prior to 72.0.3626.81...
High
Unreviewed
CVE-2019-5762
was published
May 14, 2022
The xps_true_callback_glyph_name function in xps/xpsttf.c in Artifex Ghostscript GhostXPS 9.21...
High
Unreviewed
CVE-2017-9619
was published
May 14, 2022
The xps_load_sfnt_name function in xps/xpsfont.c in Artifex Ghostscript GhostXPS 9.21 allows...
High
Unreviewed
CVE-2017-9618
was published
May 14, 2022
Stack-based buffer overflow in native/mod_manager/node.c in mod_cluster 1.2.9.
High
Unreviewed
CVE-2016-4459
was published
May 14, 2022
The smartcard interaction in SPICE allows remote attackers to cause a denial of service (QEMU-KVM...
Critical
Unreviewed
CVE-2016-0749
was published
May 14, 2022
The phar_parse_metadata function in ext/phar/phar.c in PHP before 5.4.40, 5.5.x before 5.5.24,...
High
Unreviewed
CVE-2015-3307
was published
May 14, 2022
ext/phar/phar.c in PHP before 5.4.40, 5.5.x before 5.5.24, and 5.6.x before 5.6.8 allows remote...
Moderate
Unreviewed
CVE-2015-2783
was published
May 14, 2022
Race condition in the worker_update_monitors_config function in SPICE 0.12.4 allows a remote...
Moderate
Unreviewed
CVE-2015-3247
was published
May 14, 2022
The dtls1_reassemble_fragment function in d1_both.c in OpenSSL before 0.9.8za, 1.0.0 before 1.0...
Moderate
Unreviewed
CVE-2014-0195
was published
May 14, 2022
The remoteDispatchDomainMemoryStats function in daemon/remote.c in libvirt 0.9.1 through 0.10.1.x...
Moderate
Unreviewed
CVE-2013-4296
was published
May 14, 2022
Stack-based buffer overflow in the reds_handle_ticket function in server/reds.c in SPICE 0.12.0...
Moderate
Unreviewed
CVE-2013-4282
was published
May 14, 2022
Heap-based buffer overflow in the curl_easy_unescape function in lib/escape.c in cURL and libcurl...
Moderate
Unreviewed
CVE-2013-2174
was published
May 14, 2022
MariaDB 5.5.x before 5.5.30, 5.3.x before 5.3.13, 5.2.x before 5.2.15, and 5.1.x before 5.1.68,...
Moderate
Unreviewed
CVE-2013-1861
was published
May 14, 2022
The Intel drivers in Mesa 8.0.x and 9.0.x allow context-dependent attackers to cause a denial of...
Moderate
Unreviewed
CVE-2013-1872
was published
May 14, 2022
The Generic Receive Offload (GRO) implementation in the Linux kernel 2.6.18 on Red Hat Enterprise...
Moderate
Unreviewed
CVE-2011-1576
was published
May 14, 2022
Buffer overflow in the ccid_card_vscard_handle_message function in hw/ccid-card-passthru.c in...
Moderate
Unreviewed
CVE-2011-4111
was published
May 14, 2022
Buffer overflow in an OS component in Intel CSME before versions 11.8.60, 11.11.60, 11.22.60 or...
High
Unreviewed
CVE-2018-12199
was published
May 14, 2022
Stack-based buffer overflow in the ures_getByKeyWithFallback function in common/uresbund.cpp in...
Critical
Unreviewed
CVE-2014-9911
was published
May 14, 2022
The resolveImplicitLevels function in common/ubidi.c in the Unicode Bidirectional Algorithm...
High
Unreviewed
CVE-2014-8146
was published
May 14, 2022
The Regular Expressions package in International Components for Unicode (ICU) for C/C++ before...
Critical
Unreviewed
CVE-2014-9654
was published
May 14, 2022
The uloc_acceptLanguageFromHTTP function in common/uloc.cpp in International Components for...
Critical
Unreviewed
CVE-2016-6293
was published
May 14, 2022
Stack-based buffer overflow in the Locale class in common/locid.cpp in International Components...
Critical
Unreviewed
CVE-2016-7415
was published
May 14, 2022
The ucnv_UTF8FromUTF8 function in ucnv_u8.cpp in International Components for Unicode (ICU) for C...
Critical
Unreviewed
CVE-2017-17484
was published
May 14, 2022
ProTip!
Advisories are also available from the
GraphQL API