GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,743
Erlang
35
GitHub Actions
29
Go
2,315
Maven
5,000+
npm
3,949
NuGet
711
pip
3,729
Pub
12
RubyGems
920
Rust
965
Swift
38
Unreviewed advisories
All unreviewed
5,000+
282 advisories
Filter by severity
Denial of service in modem due to infinite loop while parsing IGMPv2 packet from server in...
High
Unreviewed
CVE-2022-25742
was published
Nov 15, 2022
PDF Labs pdftk-java v3.2.3 was discovered to contain an infinite loop via the component /text/pdf...
High
Unreviewed
CVE-2021-37819
was published
Sep 10, 2022
A Denial-of-Service vulnerability was discovered in the F-Secure and WithSecure products where...
High
Unreviewed
CVE-2022-28884
was published
Sep 7, 2022
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure & WithSecure products whereby...
High
Unreviewed
CVE-2022-28882
was published
Aug 24, 2022
libjpeg commit 281daa9 was discovered to contain an infinite loop via the component Frame:...
High
Unreviewed
CVE-2022-37768
was published
Aug 19, 2022
Endless Infinite loop in Blender-thumnailing due to logical bugs.
High
Unreviewed
CVE-2022-2833
was published
Aug 17, 2022
A vulnerability has been identified in Teamcenter V12.4 (All versions < V12.4.0.15), Teamcenter...
High
Unreviewed
CVE-2022-34661
was published
Aug 11, 2022
Apache Avro Rust SDK vulnerable to reader looping in cycle endlessly, consuming CPU
High
CVE-2022-35724
was published
for
apache-avro
(Rust)
Aug 10, 2022
In BIG-IP Versions 16.1.x before 16.1.3.1, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5, and all...
High
Unreviewed
CVE-2022-34862
was published
Aug 5, 2022
file-type vulnerable to Infinite Loop via malformed MKV file
High
CVE-2022-36313
was published
for
file-type
(npm)
Jul 22, 2022
Infinite loop in Read in crypto/rand before Go 1.17.11 and Go 1.18.3 on Windows allows attacker...
High
Unreviewed
CVE-2022-30634
was published
Jul 16, 2022
A CWE-835: Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability exists that could...
High
Unreviewed
CVE-2022-34760
was published
Jul 14, 2022
An infinite loop in the function httpRpmPass of TP-Link TL-WR741N/TL-WR742N V1/V2/V3_130415...
High
Unreviewed
CVE-2022-32058
was published
Jul 8, 2022
Security Update for the OPC UA .NET Standard Stack
High
CVE-2022-29862
was published
for
OPCFoundation.NetStandard.Opc.Ua.Core
(NuGet)
Jun 17, 2022
libcurl provides the `CURLOPT_CERTINFO` option to allow applications torequest details to be...
High
Unreviewed
CVE-2022-27781
was published
Jun 3, 2022
Pion DTLS Header reconstruction method can be thrown into an infinite loop
High
CVE-2022-29190
was published
for
github.com/pion/dtls
(Go)
May 24, 2022
Istio vulnerable to denial of service
High
CVE-2019-18817
was published
for
istio.io/istio
(Go)
May 24, 2022
Routinator infinite loop vulnerability
High
CVE-2021-43172
was published
for
routinator
(Rust)
May 24, 2022
TinyXML through 2.6.2 has an infinite loop in TiXmlParsingData::Stamp in tinyxmlparser.cpp via...
High
Unreviewed
CVE-2021-42260
was published
May 24, 2022
An issue was discovered in MediaWiki through 1.36.2. A parser function related to loop control...
High
Unreviewed
CVE-2021-42040
was published
May 24, 2022
An infinite loop in Open Robotics ros_comm XMLRPC server in ROS Melodic through 1.4.11 and ROS...
High
Unreviewed
CVE-2021-37146
was published
May 24, 2022
Loop with unreachable exit condition may occur due to improper handling of unsupported input in...
High
Unreviewed
CVE-2021-1914
was published
May 24, 2022
An issue was discovered in tcp_pulloutofband() in tcp_in.c in HCC embedded InterNiche 4.0.1. The...
High
Unreviewed
CVE-2021-31400
was published
May 24, 2022
The web server in InterNiche NicheStack through 4.0.1 allows remote attackers to cause a denial...
High
Unreviewed
CVE-2021-27565
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API