GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,781
Erlang
36
GitHub Actions
29
Go
2,345
Maven
5,000+
npm
3,976
NuGet
719
pip
3,772
Pub
12
RubyGems
923
Rust
980
Swift
38
Unreviewed advisories
All unreviewed
5,000+
228 advisories
Filter by severity
** DISPUTED ** The validateInputImageSize function in modules/imgcodecs/src/loadsave.cpp in...
High
Unreviewed
CVE-2018-7714
was published
May 13, 2022
** DISPUTED ** The validateInputImageSize function in modules/imgcodecs/src/loadsave.cpp in...
High
Unreviewed
CVE-2018-7713
was published
May 13, 2022
** DISPUTED ** The validateInputImageSize function in modules/imgcodecs/src/loadsave.cpp in...
High
Unreviewed
CVE-2018-7712
was published
May 13, 2022
A problem with the implementation of the new serve-stale feature in BIND 9.12 can lead to an...
High
Unreviewed
CVE-2018-5737
was published
May 13, 2022
While handling a particular type of malformed packet BIND erroneously selects a SERVFAIL rcode...
High
Unreviewed
CVE-2018-5734
was published
May 13, 2022
Mistaken assumptions about the ordering of records in the answer section of a response containing...
High
Unreviewed
CVE-2017-3137
was published
May 13, 2022
The hidden-service feature in Tor before 0.3.0.8 allows a denial of service (assertion failure...
High
Unreviewed
CVE-2017-0375
was published
May 13, 2022
The hidden-service feature in Tor before 0.3.0.8 allows a denial of service (assertion failure...
High
Unreviewed
CVE-2017-0376
was published
May 13, 2022
There is a reachable assertion abort in the function dict_add_mrset() in data/dictionary.c of the...
High
Unreviewed
CVE-2017-12959
was published
May 13, 2022
There is a reachable assertion abort in the function dict_rename_var() in data/dictionary.c of...
High
Unreviewed
CVE-2017-12960
was published
May 13, 2022
OpenAFS 1.x before 1.6.22 does not properly validate Rx ack packets, which allows remote...
High
Unreviewed
CVE-2017-17432
was published
May 13, 2022
OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to remote denial-of-service when...
High
Unreviewed
CVE-2017-7508
was published
May 13, 2022
The FIRFilter::evaluateFilterMulti function in FIRFilter.cpp in libSoundTouch.a in Olli...
High
Unreviewed
CVE-2018-14045
was published
May 13, 2022
** DISPUTED ** Telegram Desktop (aka tdesktop) 1.3.14 might allow attackers to cause a denial of...
High
Unreviewed
CVE-2018-17231
was published
May 13, 2022
The RateTransposer::setChannels function in RateTransposer.cpp in libSoundTouch.a in Olli...
High
Unreviewed
CVE-2018-14044
was published
May 13, 2022
tinyexr 0.9.5 has an assertion failure in DecodePixelData in tinyexr.h.
High
Unreviewed
CVE-2018-12687
was published
May 13, 2022
tinyexr 0.9.5 has an assertion failure in ComputeChannelLayout in tinyexr.h.
High
Unreviewed
CVE-2018-12504
was published
May 13, 2022
An issue was discovered in Xen 4.11 allowing HVM guest OS users to cause a denial of service ...
High
Unreviewed
CVE-2018-19963
was published
May 13, 2022
MariaDB v10.5 to v10.7 was discovered to contain an assertion failure at table->get_ref_count() =...
High
Unreviewed
CVE-2022-32082
was published
Jul 2, 2022
shiyanhui/dht vulnerable to Uncontrolled Resource Consumption
High
CVE-2020-36562
was published
for
github.com/shiyanhui/dht
(Go)
Dec 28, 2022
A Denial of Service vulnerability exits in Binaryen 103 due to an assertion abort in wasm:...
High
Unreviewed
CVE-2021-45290
was published
Dec 22, 2021
Possible assertion in QOS request due to improper validation when multiple add or update request...
High
Unreviewed
CVE-2021-30335
was published
Jan 4, 2022
Possible assertion due to improper handling of IPV6 packet with invalid length in destination...
High
Unreviewed
CVE-2021-30273
was published
Jan 4, 2022
Possible assertion due to lack of input validation in PUSCH configuration in Snapdragon Auto,...
High
Unreviewed
CVE-2021-30293
was published
Jan 4, 2022
MariaDB before 10.6.2 allows an application crash because of mishandling of a pushdown from a...
High
Unreviewed
CVE-2021-46666
was published
Feb 2, 2022
ProTip!
Advisories are also available from the
GraphQL API