GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,189
Erlang
31
GitHub Actions
19
Go
1,985
Maven
5,000+
npm
3,701
NuGet
657
pip
3,326
Pub
11
RubyGems
882
Rust
836
Swift
35
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
198 advisories
Filter by severity
w3m through 0.5.3 is prone to an infinite recursion flaw in HTMLlineproc0 because the...
High
Unreviewed
CVE-2018-6196
was published
May 13, 2022
The AP4_FtypAtom class in Core/Ap4FtypAtom.cpp in Bento4 1.5.1.0 has an Infinite loop via a...
High
Unreviewed
CVE-2018-5253
was published
May 13, 2022
An issue was discovered in NuttX before 7.27. The function netlib_parsehttpurl() in apps/netutils...
High
Unreviewed
CVE-2018-20578
was published
May 13, 2022
An issue was discovered in dns.c in HAProxy through 1.8.14. In the case of a compressed pointer,...
High
Unreviewed
CVE-2018-20103
was published
May 13, 2022
FFmpeg before commit 9807d3976be0e92e4ece3b4b1701be894cd7c2e1 contains a CWE-835: Infinite loop...
High
Unreviewed
CVE-2018-1999012
was published
May 13, 2022
The function wav_read in libwav.c in libwav through 2017-04-20 has an infinite loop.
High
Unreviewed
CVE-2018-14051
was published
May 13, 2022
In Miniz 2.0.7, tinfl_decompress in miniz_tinfl.c has an infinite loop because sym2 and counter...
High
Unreviewed
CVE-2018-12913
was published
May 13, 2022
ngiflib.c in MiniUPnP ngiflib 0.4 has an infinite loop in DecodeGifImg and LoadGif.
High
Unreviewed
CVE-2018-11657
was published
May 13, 2022
A flaw was found in the Linux kernel present since v4.0-rc1 and through v4.13-rc4. A crafted...
High
Unreviewed
CVE-2018-10938
was published
May 13, 2022
An issue was discovered in PHP before 5.6.36, 7.0.x before 7.0.30, 7.1.x before 7.1.17, and 7.2.x...
High
Unreviewed
CVE-2018-10546
was published
May 13, 2022
A memory exhaustion vulnerability exists in Asterisk Open Source 13.x before 13.15.1 and 14.x...
High
Unreviewed
CVE-2017-9358
was published
May 13, 2022
In Wireshark 2.2.0 to 2.2.6 and 2.0.0 to 2.0.12, the DICOM dissector has an infinite loop. This...
High
Unreviewed
CVE-2017-9349
was published
May 13, 2022
In Wireshark 2.2.0 to 2.2.6 and 2.0.0 to 2.0.12, the SoulSeek dissector could go into an infinite...
High
Unreviewed
CVE-2017-9346
was published
May 13, 2022
In Wireshark 2.2.0 to 2.2.6 and 2.0.0 to 2.0.12, the Bazaar dissector could go into an infinite...
High
Unreviewed
CVE-2017-9352
was published
May 13, 2022
In Wireshark 2.2.0 to 2.2.6 and 2.0.0 to 2.0.12, the DNS dissector could go into an infinite loop...
High
Unreviewed
CVE-2017-9345
was published
May 13, 2022
The TDStretch::processSamples function in source/SoundTouch/TDStretch.cpp in SoundTouch 1.9.2...
High
Unreviewed
CVE-2017-9258
was published
May 13, 2022
The mp4ff_parse_tag function in common/mp4ff/mp4meta.c in Freeware Advanced Audio Decoder 2 ...
High
Unreviewed
CVE-2017-9222
was published
May 13, 2022
In Wireshark 2.2.0 to 2.2.5 and 2.0.0 to 2.0.11, the WSP dissector could go into an infinite loop...
High
Unreviewed
CVE-2017-7748
was published
May 13, 2022
In Wireshark 2.2.0 to 2.2.5 and 2.0.0 to 2.0.11, the SLSK dissector could go into an infinite...
High
Unreviewed
CVE-2017-7746
was published
May 13, 2022
In Wireshark 2.2.0 to 2.2.5 and 2.0.0 to 2.0.11, the SIGCOMP dissector could go into an infinite...
High
Unreviewed
CVE-2017-7745
was published
May 13, 2022
In Wireshark 2.2.0 to 2.2.5 and 2.0.0 to 2.0.11, the NetScaler file parser could go into an...
High
Unreviewed
CVE-2017-7700
was published
May 13, 2022
In Wireshark 2.2.0 to 2.2.5 and 2.0.0 to 2.0.11, the RPC over RDMA dissector could go into an...
High
Unreviewed
CVE-2017-7705
was published
May 13, 2022
In Wireshark 2.2.0 to 2.2.5, the DOF dissector could go into an infinite loop, triggered by...
High
Unreviewed
CVE-2017-7704
was published
May 13, 2022
In Wireshark 2.2.0 to 2.2.5 and 2.0.0 to 2.0.11, the WBXML dissector could go into an infinite...
High
Unreviewed
CVE-2017-7702
was published
May 13, 2022
In Wireshark 2.2.0 to 2.2.5 and 2.0.0 to 2.0.11, the BGP dissector could go into an infinite loop...
High
Unreviewed
CVE-2017-7701
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API