GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,732
Erlang
35
GitHub Actions
29
Go
2,310
Maven
5,000+
npm
3,949
NuGet
711
pip
3,728
Pub
12
RubyGems
920
Rust
964
Swift
38
Unreviewed advisories
All unreviewed
5,000+
281 advisories
Filter by severity
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure & WithSecure products whereby...
High
Unreviewed
CVE-2022-28882
was published
Aug 24, 2022
Crash in DNP dissector in Wireshark 3.4.0 to 3.4.6 and 3.2.0 to 3.2.14 allows denial of service...
High
Unreviewed
CVE-2021-22235
was published
May 24, 2022
Apache Avro Rust SDK vulnerable to reader looping in cycle endlessly, consuming CPU
High
CVE-2022-35724
was published
for
apache-avro
(Rust)
Aug 10, 2022
Endless Infinite loop in Blender-thumnailing due to logical bugs.
High
Unreviewed
CVE-2022-2833
was published
Aug 17, 2022
A Denial-of-Service vulnerability was discovered in the F-Secure and WithSecure products where...
High
Unreviewed
CVE-2022-28884
was published
Sep 7, 2022
Transient DOS due to loop with unreachable exit condition in WLAN while processing an incoming...
High
Unreviewed
CVE-2022-33238
was published
Dec 13, 2022
Technitium DNS Server before 10.0 allows a self-CNAME denial-of-service attack in which a CNAME...
High
Unreviewed
CVE-2022-48256
was published
Jan 13, 2023
libclamav/untar.c in ClamAV before 0.95 allows remote attackers to cause a denial of service ...
High
Unreviewed
CVE-2009-1270
was published
May 2, 2022
Infinite Loop in Apache Sanselan
High
CVE-2018-17202
was published
for
org.apache.sanselan:sanselan
(Maven)
May 14, 2019
The dwarf_get_aranges_list function in libdwarf before 20160923 allows remote attackers to cause...
High
Unreviewed
CVE-2016-5042
was published
May 13, 2022
A vulnerability has been identified in Teamcenter V12.4 (All versions < V12.4.0.15), Teamcenter...
High
Unreviewed
CVE-2022-34661
was published
Aug 11, 2022
The Kepware DNP Master Driver for the KEPServerEX Communications Platform before 5.12.140.0...
High
Unreviewed
CVE-2013-2789
was published
May 13, 2022
An issue was discovered in Daimler Mercedes-Benz COMAND 17/13.0 50.12 on Mercedes-Benz C-Class...
High
Unreviewed
CVE-2018-18070
was published
May 13, 2022
An error within the "parse_minolta()" function (dcraw/dcraw.c) in LibRaw versions prior to 0.18...
High
Unreviewed
CVE-2018-5813
was published
May 13, 2022
LibVNC before commit c3115350eb8bb635d0fdb4dbbb0d0541f38ed19c contains a CWE-835: Infinite loop...
High
Unreviewed
CVE-2018-20021
was published
May 13, 2022
In Wireshark 2.2.0 to 2.2.12 and 2.4.0 to 2.4.4, the DMP dissector could go into an infinite loop...
High
Unreviewed
CVE-2018-7421
was published
May 13, 2022
In ImageMagick 7.0.7-16 Q16 x86_64 2017-12-22, an infinite loop vulnerability was found in the...
High
Unreviewed
CVE-2017-18273
was published
May 13, 2022
In ImageMagick 7.0.7-16 Q16 x86_64 2017-12-22, an infinite loop vulnerability was found in the...
High
Unreviewed
CVE-2017-18271
was published
May 13, 2022
XStream can cause a Denial of Service.
High
CVE-2021-21341
was published
for
com.thoughtworks.xstream:xstream
(Maven)
Mar 22, 2021
Infinite loop in Yubico yubihsm-connector
High
CVE-2021-28484
was published
for
github.com/Yubico/yubihsm-connector
(Go)
Feb 15, 2022
libhttp/url.c in shellinabox through 2.20 has an implementation flaw in the HTTP request parsing...
High
Unreviewed
CVE-2018-16789
was published
May 13, 2022
Infinite loop in Apache CFX
High
CVE-2021-30468
was published
for
org.apache.cxf:apache-cxf
(Maven)
Jan 6, 2022
An error within the "parse_rollei()" function (internal/dcraw_common.cpp) within LibRaw versions...
High
Unreviewed
CVE-2018-5818
was published
May 13, 2022
In Wireshark 3.0.0, the IEEE 802.11 dissector could go into an infinite loop. This was addressed...
High
Unreviewed
CVE-2019-10897
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API