GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,239
Erlang
31
GitHub Actions
21
Go
2,007
Maven
5,000+
npm
3,716
NuGet
662
pip
3,388
Pub
11
RubyGems
885
Rust
851
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
236 advisories
Filter by severity
In multiple locations, there is a possible way to trigger a persistent reboot loop due to...
Moderate
Unreviewed
CVE-2023-20999
was published
Mar 24, 2023
Infinite loops in the BPv6, OpenFlow, and Kafka protocol dissectors in Wireshark 4.0.0 to 4.0.1...
Moderate
Unreviewed
CVE-2022-4345
was published
Jan 12, 2023
In setEnabledSetting of PackageManager.java, there is a possible way to get the device into an...
Moderate
Unreviewed
CVE-2022-20476
was published
Dec 13, 2022
A loop with an unreachable exit condition can be triggered by passing a crafted JPEG file to the...
Moderate
Unreviewed
CVE-2022-4104
was published
Nov 28, 2022
An external attacker is able to send a specially crafted email (with many recipients) and trigger...
Moderate
Unreviewed
CVE-2022-39052
was published
Oct 17, 2022
A list management bug in BSS handling in the mac80211 stack in the Linux kernel 5.1 through 5.19...
Moderate
Unreviewed
CVE-2022-42721
was published
Oct 14, 2022
Qemu before 2.0 block driver for Hyper-V VHDX Images is vulnerable to infinite loops and other...
Moderate
Unreviewed
CVE-2014-0148
was published
Sep 30, 2022
In PHP versions before 7.4.31, 8.0.24 and 8.1.11, the phar uncompressor code would recursively...
Moderate
Unreviewed
CVE-2022-31628
was published
Sep 29, 2022
A Denial-of-Service vulnerability was discovered in the F-Secure and WithSecure products where...
Moderate
Unreviewed
CVE-2022-28886
was published
Sep 25, 2022
Infinite loop in the F5 Ethernet Trailer protocol dissector in Wireshark 3.6.0 to 3.6.7 and 3.4.0...
Moderate
Unreviewed
CVE-2022-3190
was published
Sep 14, 2022
wolfSSL through 5.0.0 allows an attacker to cause a denial of service and infinite loop in the...
Moderate
Unreviewed
CVE-2021-44718
was published
Sep 3, 2022
An infinite loop may be triggered in display_debug_abbrev() function in binutils/dwarf.c while...
Moderate
Unreviewed
CVE-2022-38128
was published
Sep 2, 2022
An issue in AP4_SgpdAtom::AP4_SgpdAtom() of Bento4-1.6.0-639 allows attackers to cause a Denial...
Moderate
Unreviewed
CVE-2022-35165
was published
Aug 19, 2022
libjpeg commit 842c7ba was discovered to contain an infinite loop via the component JPEG:...
Moderate
Unreviewed
CVE-2022-35166
was published
Aug 19, 2022
GPAC version before commit 71460d72ec07df766dab0a4d52687529f3efcf0a (version v1.0.1 onwards)...
Moderate
Unreviewed
CVE-2021-40592
was published
Jun 9, 2022
Irfanview v4.53 was discovered to contain an infinity loop via JPEG2000!ShowPlugInSaveOptions_W...
Moderate
Unreviewed
CVE-2020-23566
was published
May 24, 2022
An issue was discovered in stb stb_image.h 1.33 through 2.27. The HDR loader parsed truncated end...
Moderate
Unreviewed
CVE-2021-42715
was published
May 24, 2022
In an MPLS P2MP environment a Loop with Unreachable Exit Condition vulnerability in the routing...
Moderate
Unreviewed
CVE-2021-31363
was published
May 24, 2022
An issue was discovered in Zammad before 4.1.1. An attacker with valid agent credentials may send...
Moderate
Unreviewed
CVE-2021-42084
was published
May 24, 2022
Irfanview 4.57 is affected by an infinite loop when processing a crafted BMP file in the EFFECTS...
Moderate
Unreviewed
CVE-2021-29365
was published
May 24, 2022
A vulnerability affecting F-Secure Antivirus engine was discovered whereby scanning WIM archive...
Moderate
Unreviewed
CVE-2021-33599
was published
May 24, 2022
long running loops in grant table handling In order to properly monitor resource use, Xen...
Moderate
Unreviewed
CVE-2021-28698
was published
May 24, 2022
A lack of CPU resource in the Linux kernel tracing module functionality in versions prior to 5.14...
Moderate
Unreviewed
CVE-2021-3679
was published
May 24, 2022
A vulnerability has been identified in JT2Go (All versions < V13.2), Teamcenter Visualization ...
Moderate
Unreviewed
CVE-2021-34332
was published
May 24, 2022
Infinite Loop in zziplib v0.13.69 allows remote attackers to cause a denial of service via the...
Moderate
Unreviewed
CVE-2020-18442
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API