GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,272
Erlang
31
GitHub Actions
21
Go
2,047
Maven
5,000+
npm
3,738
NuGet
663
pip
3,415
Pub
12
RubyGems
891
Rust
868
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
1,765 advisories
Filter by severity
NULL pointer dereference vulnerability in the rebuild_vlists function in lib/dotgen/conc.c in the...
Moderate
Unreviewed
CVE-2018-10196
was published
May 13, 2022
The cache_merge_headers_out function in modules/cache/cache_util.c in the mod_cache module in the...
Moderate
Unreviewed
CVE-2014-3581
was published
May 13, 2022
When an HTTP/2 stream was destroyed after being handled, the Apache HTTP Server prior to version...
Moderate
Unreviewed
CVE-2018-1302
was published
May 13, 2022
The GIF decoder in QtGui in Qt before 5.3 allows remote attackers to cause a denial of service ...
Moderate
Unreviewed
CVE-2014-0190
was published
May 13, 2022
Adobe Reader and Acrobat 10.x before 10.1.15 and 11.x before 11.0.12, Acrobat and Acrobat Reader...
Moderate
Unreviewed
CVE-2015-4443
was published
May 13, 2022
Adobe Reader and Acrobat 10.x before 10.1.15 and 11.x before 11.0.12, Acrobat and Acrobat Reader...
Moderate
Unreviewed
CVE-2015-4444
was published
May 13, 2022
The DecodeNumber function in unrarlib.c in unrar 0.0.1 (aka unrar-free or unrar-gpl) suffers from...
Moderate
Unreviewed
CVE-2017-14121
was published
May 13, 2022
unrarlib.c in unrar-free 0.0.1 might allow remote attackers to cause a denial of service (NULL...
Moderate
Unreviewed
CVE-2017-11189
was published
May 13, 2022
MIT krb5 1.6 or later allows an authenticated kadmin with permission to add principals to an LDAP...
Moderate
Unreviewed
CVE-2018-5729
was published
May 13, 2022
libjbig2dec.a in Artifex jbig2dec 0.13, as used in MuPDF and Ghostscript, has a NULL pointer...
Moderate
Unreviewed
CVE-2017-9216
was published
May 13, 2022
Vixie Cron before the 3.0pl1-133 Debian package allows local users to cause a denial of service ...
Moderate
Unreviewed
CVE-2019-9704
was published
May 13, 2022
The aiptek_probe function in drivers/input/tablet/aiptek.c in the Linux kernel before 4.4 allows...
Moderate
Unreviewed
CVE-2015-7515
was published
May 13, 2022
The treo_attach function in drivers/usb/serial/visor.c in the Linux kernel before 4.5 allows...
Moderate
Unreviewed
CVE-2016-2782
was published
May 13, 2022
ntpd in NTP before 4.2.8p6 and 4.3.x before 4.3.90 allows remote attackers to cause a denial of...
Moderate
Unreviewed
CVE-2015-7977
was published
May 13, 2022
VMware ESXi 6.5 without patch ESXi650-201707101-SG, ESXi 6.0 without patch ESXi600-201706101-SG,...
Moderate
Unreviewed
CVE-2017-4925
was published
May 13, 2022
fits-io.c in GIMP before 2.8.1 allows remote attackers to cause a denial of service (NULL pointer...
Moderate
Unreviewed
CVE-2012-3236
was published
May 13, 2022
dwarf_form.c in libdwarf 20160115 allows remote attackers to cause a denial of service (crash)...
Moderate
Unreviewed
CVE-2016-5027
was published
May 13, 2022
The create_fullest_file_path function in libdwarf before 20160923 allows remote attackers to...
Moderate
Unreviewed
CVE-2016-5029
was published
May 13, 2022
The _dwarf_calculate_info_section_end_ptr function in libdwarf before 20160923 allows remote...
Moderate
Unreviewed
CVE-2016-5030
was published
May 13, 2022
The print_frame_inst_bytes function in libdwarf before 20160923 allows remote attackers to cause...
Moderate
Unreviewed
CVE-2016-5028
was published
May 13, 2022
libdwarf 20151114 and earlier allows remote attackers to cause a denial of service (NULL pointer...
Moderate
Unreviewed
CVE-2015-8750
was published
May 13, 2022
The _dwarf_load_section function in libdwarf before 20160923 allows remote attackers to cause a...
Moderate
Unreviewed
CVE-2016-5037
was published
May 13, 2022
** DISPUTED ** libxml2 2.9.4, when used in recover mode, allows remote attackers to cause a...
Moderate
Unreviewed
CVE-2017-5969
was published
May 13, 2022
NULL Pointer Dereference in function vim_regexec_string at regexp.c:2733 in GitHub repository vim...
Moderate
Unreviewed
CVE-2022-1674
was published
May 13, 2022
Mikrotik RouterOs before stable 6.48.2 suffers from a memory corruption vulnerability in the...
Moderate
Unreviewed
CVE-2021-36614
was published
May 12, 2022
ProTip!
Advisories are also available from the
GraphQL API