GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,714
Erlang
34
GitHub Actions
28
Go
2,300
Maven
5,000+
npm
3,942
NuGet
708
pip
3,711
Pub
12
RubyGems
920
Rust
960
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
474 advisories
Filter by severity
A list management bug in BSS handling in the mac80211 stack in the Linux kernel 5.1 through 5.19...
Moderate
Unreviewed
CVE-2022-42721
was published
Oct 14, 2022
FiveCo RAP dissector infinite loop in Wireshark 4.4.0 to 4.4.1 and 4.2.0 to 4.2.8 allows denial...
Moderate
Unreviewed
CVE-2024-11595
was published
May 7, 2025
In the Linux kernel, the following vulnerability has been resolved:
wifi: ath11k: fix RCU stall...
Moderate
Unreviewed
CVE-2024-58097
was published
Apr 16, 2025
In the Linux kernel, the following vulnerability has been resolved:
openvswitch: fix lockup on...
Moderate
Unreviewed
CVE-2025-21681
was published
Jan 31, 2025
In the Linux kernel, the following vulnerability has been resolved:
filemap: Fix bounds checking...
Moderate
Unreviewed
CVE-2024-50272
was published
Nov 19, 2024
In FRRouting (FRR) through 9.1, an infinite loop can occur when receiving a MP/GR capability as a...
Moderate
Unreviewed
CVE-2024-31949
was published
Apr 7, 2024
GNOME gdk-pixbuf (aka GdkPixbuf) before 2.42.2 allows a denial of service (infinite loop) in lzw...
Moderate
Unreviewed
CVE-2020-29385
was published
May 24, 2022
qubes-mirage-firewall (aka Mirage firewall for QubesOS) 0.8.x through 0.8.3 allows guest OS users...
High
Unreviewed
CVE-2022-46770
was published
Dec 7, 2022
In ImageMagick 7.0.7-12 Q16, an infinite loop vulnerability was found in the function...
High
Unreviewed
CVE-2017-17681
was published
May 13, 2022
The receive_msg function in receive.c in the SMTP daemon in Exim 4.88 and 4.89 allows remote...
High
Unreviewed
CVE-2017-16944
was published
May 13, 2022
In systemd 223 through 235, a remote DNS server can respond with a custom crafted DNS NSEC...
High
Unreviewed
CVE-2017-15908
was published
May 13, 2022
Denial-of-service vulnerability in ArGoSoft Mini Mail Server 1.0.0.2 and earlier allows remote...
Moderate
Unreviewed
CVE-2017-15223
was published
May 13, 2022
find_abstract_instance_name in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd),...
Moderate
Unreviewed
CVE-2017-15024
was published
May 13, 2022
decode_line_info in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as...
Moderate
Unreviewed
CVE-2017-14932
was published
May 13, 2022
read_formatted_entries in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as...
Moderate
Unreviewed
CVE-2017-14933
was published
May 13, 2022
The ReadCAPTIONImage function in coders/caption.c in ImageMagick 7.0.7-3 allows remote attackers...
Moderate
Unreviewed
CVE-2017-14741
was published
May 13, 2022
The DNS packet parser in YADIFA before 2.2.6 does not check for the presence of infinite pointer...
High
Unreviewed
CVE-2017-14339
was published
May 13, 2022
There is an infinite loop in the next_char function in comp_scan.c in ncurses 6.0, related to...
High
Unreviewed
CVE-2017-13728
was published
May 13, 2022
ntpd in NTP 4.2.x before 4.2.8p4, and 4.3.x before 4.3.77 allows remote authenticated users to...
Moderate
Unreviewed
CVE-2015-7850
was published
May 13, 2022
The ExifImageFile::readImage function in ExifImageFileRead.cpp in OpenExif 2.1.4 allows remote...
High
Unreviewed
CVE-2017-11118
was published
May 13, 2022
The TDStretch::processSamples function in source/SoundTouch/TDStretch.cpp in SoundTouch 1.9.2...
High
Unreviewed
CVE-2017-9258
was published
May 13, 2022
A stack-consumption vulnerability was found in libqpdf in QPDF 6.0.0, which allows attackers to...
Moderate
Unreviewed
CVE-2017-11624
was published
May 13, 2022
A stack-consumption vulnerability was found in libqpdf in QPDF 6.0.0, which allows attackers to...
Moderate
Unreviewed
CVE-2017-11627
was published
May 13, 2022
A stack-consumption vulnerability was found in libqpdf in QPDF 6.0.0, which allows attackers to...
Moderate
Unreviewed
CVE-2017-11626
was published
May 13, 2022
A stack-consumption vulnerability was found in libqpdf in QPDF 6.0.0, which allows attackers to...
Moderate
Unreviewed
CVE-2017-11625
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API