GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,714
Erlang
34
GitHub Actions
28
Go
2,301
Maven
5,000+
npm
3,942
NuGet
711
pip
3,711
Pub
12
RubyGems
920
Rust
960
Swift
38
Unreviewed advisories
All unreviewed
5,000+
306 advisories
Filter by severity
The function PdfPagesTree::GetPageNodeFromArray in PdfPageTree.cpp:464 in PoDoFo 0.9.5 allows...
Moderate
Unreviewed
CVE-2017-8054
was published
May 13, 2022
The xhci_kick_epctx function in hw/usb/hcd-xhci.c in QEMU (aka Quick Emulator) allows local guest...
Moderate
Unreviewed
CVE-2017-5973
was published
May 13, 2022
The ohci_service_ed_list function in hw/usb/hcd-ohci.c in QEMU (aka Quick Emulator) before 2.9.0...
Moderate
Unreviewed
CVE-2017-6505
was published
May 13, 2022
The make_available_at_least function in io-tiff.c in gdk-pixbuf allows context-dependent...
Moderate
Unreviewed
CVE-2017-6314
was published
May 13, 2022
The sdhci_sdma_transfer_multi_blocks function in hw/sd/sdhci.c in QEMU (aka Quick Emulator)...
Moderate
Unreviewed
CVE-2017-5987
was published
May 13, 2022
The PoDoFo::PdfPage::GetInheritedKeyFromObject function in base/PdfVariant.cpp in PoDoFo 0.9.4...
Moderate
Unreviewed
CVE-2017-5852
was published
May 13, 2022
An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "2 of 9....
Moderate
Unreviewed
CVE-2017-6299
was published
May 13, 2022
In the Linux kernel, the following vulnerability has been resolved:
RDMA/core: Fix ib block...
Moderate
Unreviewed
CVE-2023-53026
was published
Mar 27, 2025
The inet_diag_bc_audit function in net/ipv4/inet_diag.c in the Linux kernel before 2.6.39.3 does...
Moderate
Unreviewed
CVE-2011-2213
was published
May 13, 2022
avahi-core/socket.c in avahi-daemon in Avahi before 0.6.29 allows remote attackers to cause a...
Moderate
Unreviewed
CVE-2011-1002
was published
May 17, 2022
smbd in Samba 3.0 before 3.0.37, 3.2 before 3.2.15, 3.3 before 3.3.8, and 3.4 before 3.4.2 allows...
Moderate
Unreviewed
CVE-2009-2906
was published
May 2, 2022
In the Linux kernel, the following vulnerability has been resolved:
f2fs: fix to avoid potential...
Moderate
Unreviewed
CVE-2024-27032
was published
May 1, 2024
Infinite loops in the BPv6, OpenFlow, and Kafka protocol dissectors in Wireshark 4.0.0 to 4.0.1...
Moderate
Unreviewed
CVE-2022-4345
was published
Jan 12, 2023
ts-asn1-der has Incorrect DER Encoding of Numbers Leading to Denial of Service and Incorrect Value Representation
Moderate
CVE-2025-32029
was published
for
@apeleghq/asn1-der
(npm)
Apr 7, 2025
mod_ssl in Apache 2.0.50 and earlier allows remote attackers to cause a denial of service (CPU...
Moderate
Unreviewed
CVE-2004-0748
was published
Apr 29, 2022
In the Linux kernel, the following vulnerability has been resolved:
ext4: add error checking to...
Moderate
Unreviewed
CVE-2021-47406
was published
May 21, 2024
Silicon Labs Gecko OS DNS Response Processing Infinite Loop Denial-of-Service Vulnerability. This...
Moderate
Unreviewed
CVE-2025-2838
was published
Mar 27, 2025
In the Linux kernel, the following vulnerability has been resolved:
af_unix: Fix task hung while...
Moderate
Unreviewed
CVE-2024-26780
was published
Apr 4, 2024
In the Linux kernel, the following vulnerability has been resolved:
netdevsim: avoid potential...
Moderate
Unreviewed
CVE-2024-26681
was published
Apr 2, 2024
In the Linux kernel, the following vulnerability has been resolved:
PM / devfreq: Synchronize...
Moderate
Unreviewed
CVE-2023-52635
was published
Apr 2, 2024
In the Linux kernel, the following vulnerability has been resolved:
f2fs: avoid infinite loop to...
Moderate
Unreviewed
CVE-2022-49317
was published
Mar 14, 2025
In the Linux kernel, the following vulnerability has been resolved:
net: dsa: fix a crash if -...
Moderate
Unreviewed
CVE-2021-47159
was published
Mar 25, 2024
In the Linux kernel, the following vulnerability has been resolved:
nvmet: Fix crash when a...
Moderate
Unreviewed
CVE-2025-21850
was published
Mar 12, 2025
In NGINX Unit before version 1.34.2 with the Java Language Module in use, undisclosed requests...
Moderate
Unreviewed
CVE-2025-1695
was published
Mar 4, 2025
Apache Commons Compress: Denial of service caused by an infinite loop for a corrupted DUMP file
Moderate
CVE-2024-25710
was published
for
org.apache.commons:commons-compress
(Maven)
Feb 19, 2024
ProTip!
Advisories are also available from the
GraphQL API