GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,293
Erlang
31
GitHub Actions
21
Go
2,061
Maven
5,000+
npm
3,744
NuGet
668
pip
3,423
Pub
12
RubyGems
892
Rust
875
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
169 advisories
Filter by severity
An issue was discovered in Poppler 22.08.0. There is a reachable assertion in Object.h, will lead...
Moderate
Unreviewed
CVE-2022-38349
was published
Aug 22, 2023
An issue was discovered in Poppler 22.07.0. There is a reachable abort which leads to denial of...
Moderate
Unreviewed
CVE-2022-37051
was published
Aug 22, 2023
Redis before 6cbea7d allows a replica to cause an assertion failure in a primary server by...
Moderate
Unreviewed
CVE-2021-31294
was published
Jul 16, 2023
A Reachable Assertion vulnerability in Routing Protocol Daemon (RPD) of Juniper Networks Junos OS...
Moderate
Unreviewed
CVE-2023-36840
was published
Jul 14, 2023
libjpeg commit db33a6e was discovered to contain a reachable assertion via BitMapHook::BitMapHook...
Moderate
Unreviewed
CVE-2023-37836
was published
Jul 14, 2023
Jerryscript 3.0 (commit 1a2c047) was discovered to contain an Assertion Failure via the...
Moderate
Unreviewed
CVE-2023-31918
was published
May 12, 2023
Jerryscript 3.0 (commit 1a2c047) was discovered to contain an Assertion Failure via the...
Moderate
Unreviewed
CVE-2023-31916
was published
May 12, 2023
Jerryscript 3.0 *commit 1a2c047) was discovered to contain an Assertion Failure via the component...
Moderate
Unreviewed
CVE-2023-31913
was published
May 12, 2023
Jerryscript 3.0 (commit 05dbbd1) was discovered to contain an Assertion Failure via the...
Moderate
Unreviewed
CVE-2023-31919
was published
May 12, 2023
Jerryscript 3.0 (commit 05dbbd1) was discovered to contain an Assertion Failure via the vm_loop...
Moderate
Unreviewed
CVE-2023-31920
was published
May 12, 2023
Jerryscript 3.0 (commit 05dbbd1) was discovered to contain an Assertion Failure via the...
Moderate
Unreviewed
CVE-2023-31921
was published
May 12, 2023
llvm-project commit a0138390 was discovered to contain an assertion failure at !replacements...
Moderate
Unreviewed
CVE-2023-29935
was published
May 5, 2023
Denial of service due to reachable assertion in modem while processing filter rule from...
Moderate
Unreviewed
CVE-2022-25675
was published
Dec 13, 2022
JasPer 3.0.6 allows denial of service via a reachable assertion in the function inttobits in...
Moderate
Unreviewed
CVE-2022-40755
was published
Sep 17, 2022
LIEF commit 365a16a was discovered to contain a reachable assertion abort via the component...
Moderate
Unreviewed
CVE-2022-38496
was published
Sep 14, 2022
Assertion fail in the display_debug_names() function in binutils/dwarf.c may lead to program...
Moderate
Unreviewed
CVE-2022-38126
was published
Sep 2, 2022
A flaw was found in libtiff 4.4.0rc1. There is a sysmalloc assertion fail in rotateImage() at...
Moderate
Unreviewed
CVE-2022-2520
was published
Sep 1, 2022
Mikrotik RouterOs through stable v6.48.3 was discovered to contain an assertion failure in the...
Moderate
Unreviewed
CVE-2022-36522
was published
Aug 27, 2022
In ImageMagick, a crafted file could trigger an assertion failure when a call to WriteImages was...
Moderate
Unreviewed
CVE-2022-2719
was published
Aug 11, 2022
Ethereum Solidity v0.8.14 contains an assertion failure via SMTEncoder::indexOrMemberAssignment()...
Moderate
Unreviewed
CVE-2022-33069
was published
Jun 24, 2022
libjxl 0.6.1 has an assertion failure in LowMemoryRenderPipeline::Init() in render_pipeline...
Moderate
Unreviewed
CVE-2022-34000
was published
Jun 20, 2022
Improper handling of writes to virtual GICR control can lead to assertion failure in the...
Moderate
Unreviewed
CVE-2021-35101
was published
Jun 15, 2022
There is an assertion failure in SingleComponentLSScan::ParseMCU in singlecomponentlsscan.cpp in...
Moderate
Unreviewed
CVE-2022-32978
was published
Jun 11, 2022
An authorized user may trigger an invariant which may result in denial of service or server exit...
Moderate
Unreviewed
CVE-2021-32037
was published
May 24, 2022
liveMedia/FramedSource.cpp in Live555 through 1.08 allows an assertion failure and application...
Moderate
Unreviewed
CVE-2021-39283
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API