GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,822
Erlang
36
GitHub Actions
32
Go
2,413
Maven
5,000+
npm
4,052
NuGet
723
pip
3,844
Pub
12
RubyGems
933
Rust
1,005
Swift
38
Unreviewed advisories
All unreviewed
5,000+
610 advisories
Filter by severity
In Wireshark 3.0.0, the GSUP dissector could go into an infinite loop. This was addressed in epan...
High
Unreviewed
CVE-2019-10898
was published
May 13, 2022
In libsixel v1.8.2, there is an infinite loop in the function sixel_decode_raw_impl() in the file...
Moderate
Unreviewed
CVE-2019-3573
was published
May 13, 2022
An unauthenticated and remote adversary can consume all of the device's CPU due to crafted HTTP...
High
Unreviewed
CVE-2021-20041
was published
Dec 9, 2021
On BIG-IP 11.5.1-11.6.3.2, 12.1.3.4-12.1.3.7, 13.0.0 HF1-13.1.1.1, and 14.0.0-14.0.0.2, Multi...
Moderate
Unreviewed
CVE-2019-6594
was published
May 13, 2022
ImageMagick 6.x before 6.9.0-5 Beta allows remote attackers to cause a denial of service ...
Moderate
Unreviewed
CVE-2015-8901
was published
May 13, 2022
In tinysvcmdns through 2018-01-16, a maliciously crafted mDNS (Multicast DNS) packet triggers an...
High
Unreviewed
CVE-2019-9747
was published
May 13, 2022
In ImageMagick 7.0.7-28, there is an infinite loop in the ReadOneMNGImage function of the coders...
Moderate
Unreviewed
CVE-2018-10177
was published
May 13, 2022
In ImageMagick 7.0.8-13 Q16, there is an infinite loop in the ReadBMPImage function of the coders...
Moderate
Unreviewed
CVE-2018-18024
was published
May 13, 2022
The FoFiType1C::cvtGlyph function in fofi/FoFiType1C.cc in Poppler through 0.64.0 allows remote...
Moderate
Unreviewed
CVE-2017-18267
was published
May 13, 2022
The ReadBlobByte function in coders/pdb.c in ImageMagick 6.x before 6.9.0-5 Beta allows remote...
Moderate
Unreviewed
CVE-2015-8902
was published
May 13, 2022
The ReadVICARImage function in coders/vicar.c in ImageMagick 6.x before 6.9.0-5 Beta allows...
Moderate
Unreviewed
CVE-2015-8903
was published
May 13, 2022
The ReadHDRImage function in coders/hdr.c in ImageMagick 6.x and 7.x allows remote attackers to...
Moderate
Unreviewed
CVE-2015-8900
was published
May 13, 2022
Integer overflow in the SyncImageProfiles function in profile.c in ImageMagick 6.7.5-8 and...
Moderate
Unreviewed
CVE-2012-1186
was published
May 13, 2022
In Poppler 0.68.0, the Parser::getObj() function in Parser.cc may cause infinite recursion via a...
Moderate
Unreviewed
CVE-2018-16646
was published
May 13, 2022
The svg_probe function in libavformat/img2dec.c in FFmpeg through 3.4.2 allows remote attackers...
Moderate
Unreviewed
CVE-2018-7751
was published
May 13, 2022
In The Sleuth Kit (TSK) 4.4.2, opening a crafted disk image triggers infinite recursion in...
Moderate
Unreviewed
CVE-2017-13756
was published
May 13, 2022
The vmsvga_fifo_run function in hw/display/vmware_vga.c in QEMU allows local guest OS...
Moderate
Unreviewed
CVE-2016-4453
was published
May 13, 2022
An issue was discovered in cp-demangle.c in GNU libiberty, as distributed in GNU Binutils 2.31....
Moderate
Unreviewed
CVE-2018-18700
was published
May 13, 2022
An issue was discovered in cp-demangle.c in GNU libiberty, as distributed in GNU Binutils 2.31....
Moderate
Unreviewed
CVE-2018-18701
was published
May 13, 2022
In Wireshark 2.6.0 to 2.6.4 and 2.4.0 to 2.4.10, the MMSE dissector could go into an infinite...
High
Unreviewed
CVE-2018-19622
was published
May 13, 2022
In Wireshark 2.6.0 to 2.6.1, 2.4.0 to 2.4.7, and 2.2.0 to 2.2.15, the Bazaar protocol dissector...
High
Unreviewed
CVE-2018-14368
was published
May 13, 2022
sas/readstat_sas7bcat_read.c in libreadstat.a in ReadStat 0.1.1 has an infinite loop.
High
Unreviewed
CVE-2018-11365
was published
May 13, 2022
Denial of Service in Unified Shader Compiler in Intel Graphics Drivers before 10.18.x.5056 (aka...
Moderate
Unreviewed
CVE-2018-12154
was published
May 13, 2022
An external attacker is able to send a specially crafted email (with many recipients) and trigger...
Moderate
Unreviewed
CVE-2022-39052
was published
Oct 17, 2022
A vulnerability was found in the way RemoteMessageChannel, introduced in jboss-remoting versions...
High
Unreviewed
CVE-2018-1041
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API