GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,239
Erlang
31
GitHub Actions
21
Go
2,007
Maven
5,000+
npm
3,716
NuGet
662
pip
3,388
Pub
11
RubyGems
885
Rust
851
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
84 advisories
Filter by severity
The parsing component in LibSass through 3.5.5 allows attackers to cause a denial-of-service ...
Moderate
Unreviewed
CVE-2018-20821
was published
May 24, 2022
compile in regexp.c in Artifex MuJS through 1.2.0 results in stack consumption because of...
Moderate
Unreviewed
CVE-2022-30974
was published
May 19, 2022
Stack-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.
Moderate
Unreviewed
CVE-2022-1771
was published
May 19, 2022
An issue was discovered in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.30....
Moderate
Unreviewed
CVE-2018-9996
was published
May 13, 2022
pdf_load_obj_stm in pdf/pdf-xref.c in Artifex MuPDF 1.12.0 could reference the object stream...
Moderate
Unreviewed
CVE-2018-6544
was published
May 13, 2022
In Exiv2 0.26, there is a segmentation fault caused by uncontrolled recursion in the Exiv2::Image...
Moderate
Unreviewed
CVE-2018-5772
was published
May 13, 2022
jsparse.c in Artifex MuJS through 1.0.2 does not properly maintain the AST depth for binary...
Moderate
Unreviewed
CVE-2018-5759
was published
May 13, 2022
Endless recursion when handling responses from an IAS-ECC card in iasecc_select_file in libopensc...
Moderate
Unreviewed
CVE-2018-16426
was published
May 13, 2022
Espruino before 1.99 allows attackers to cause a denial of service (application crash) with a...
Moderate
Unreviewed
CVE-2018-11597
was published
May 13, 2022
An issue was discovered in PoDoFo 0.9.5. There is an Excessive Recursion in the PdfPagesTree:...
Moderate
Unreviewed
CVE-2018-11254
was published
May 13, 2022
In Wireshark 2.2.7, deeply nested DAAP data may cause stack exhaustion (uncontrolled recursion)...
Moderate
Unreviewed
CVE-2017-9617
was published
May 13, 2022
In Wireshark 2.2.7, overly deep mp4 chunks may cause stack exhaustion (uncontrolled recursion) in...
Moderate
Unreviewed
CVE-2017-9616
was published
May 13, 2022
An issue was discovered in Adobe Acrobat and Reader: 2017.012.20098 and earlier versions, 2017...
Moderate
Unreviewed
CVE-2017-16419
was published
May 13, 2022
A denial of service vulnerability in the Android media framework. Product: Android. Versions: 4.4...
Moderate
Unreviewed
CVE-2017-0692
was published
May 13, 2022
Nextcloud Server before 9.0.55 and 10.0.2 suffers from a Denial of Service attack. Due to an...
Moderate
Unreviewed
CVE-2017-0886
was published
May 13, 2022
poppler through version 0.55.0 is vulnerable to an uncontrolled recursion in pdfunite resulting...
Moderate
Unreviewed
CVE-2017-7515
was published
May 13, 2022
An issue was discovered in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.29 and...
Moderate
Unreviewed
CVE-2018-9138
was published
May 13, 2022
An issue was discovered in the function mark_beginning_as_normal in nfa.c in flex 2.6.4. There is...
Moderate
Unreviewed
CVE-2019-6293
was published
May 13, 2022
An issue was discovered in singledocparser.cpp in yaml-cpp (aka LibYaml-C++) 0.6.2. Stack...
Moderate
Unreviewed
CVE-2019-6292
was published
May 13, 2022
An infinite recursion issue was discovered in eval.c in Netwide Assembler (NASM) through 2.14.02....
Moderate
Unreviewed
CVE-2019-6290
was published
May 13, 2022
An issue was discovered in the function expr6 in eval.c in Netwide Assembler (NASM) through 2.14...
Moderate
Unreviewed
CVE-2019-6291
was published
May 13, 2022
The SingleDocParser::HandleFlowSequence function in yaml-cpp (aka LibYaml-C++) 0.6.2 allows...
Moderate
Unreviewed
CVE-2019-6285
was published
May 13, 2022
svg-run.c in Artifex MuPDF 1.14.0 has infinite recursion with stack consumption in...
Moderate
Unreviewed
CVE-2019-6131
was published
May 13, 2022
FontInfoScanner::scanFonts in FontInfo.cc in Poppler 0.75.0 has infinite recursion, leading to a...
Moderate
Unreviewed
CVE-2019-11026
was published
May 13, 2022
The load_pnm function in frompnm.c in libsixel.a in libsixel 1.8.2 has infinite recursion.
Moderate
Unreviewed
CVE-2019-11024
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API