GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,814
Erlang
36
GitHub Actions
32
Go
2,399
Maven
5,000+
npm
4,040
NuGet
722
pip
3,829
Pub
12
RubyGems
932
Rust
1,002
Swift
38
Unreviewed advisories
All unreviewed
5,000+
3,154 advisories
Filter by severity
An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m allows remote...
Moderate
Unreviewed
CVE-2016-9442
was published
May 17, 2022
An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m allows remote...
Moderate
Unreviewed
CVE-2016-9437
was published
May 17, 2022
An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m allows remote...
Moderate
Unreviewed
CVE-2016-9432
was published
May 17, 2022
IBM WebSphere MQ 8.0 could allow an authenticated user with queue manager permissions to cause a...
Moderate
Unreviewed
CVE-2016-8971
was published
May 17, 2022
Buffer overflow on Hikvision NVR DS-76xxNI-E1/2 and DS-77xxxNI-E4 devices before 3.4.0 allows...
Moderate
Unreviewed
CVE-2015-4408
was published
May 17, 2022
When Antiy Antivirus Engine before 5.0.0.05171547 scans a special ZIP archive, it crashes with a...
Moderate
Unreviewed
CVE-2017-10706
was published
May 17, 2022
A memory corruption vulnerability in Scriptscan COM Object in McAfee VirusScan Enterprise 8.8...
Moderate
Unreviewed
CVE-2016-8030
was published
May 17, 2022
IrfanView 4.54 allows a user-mode write access violation starting at FORMATS...
Moderate
Unreviewed
CVE-2020-23563
was published
Jul 19, 2022
The wmf_malloc function in api.c in libwmf 0.2.8.4 allows remote attackers to cause a denial of...
Moderate
Unreviewed
CVE-2016-9011
was published
May 17, 2022
The IsPixelGray function in MagickCore/pixel-accessor.h in ImageMagick 7.0.3-8 allows remote...
Moderate
Unreviewed
CVE-2016-9556
was published
May 17, 2022
The mp4ff_read_stco function in common/mp4ff/mp4atom.c in Freeware Advanced Audio Decoder 2 ...
Moderate
Unreviewed
CVE-2017-9220
was published
May 17, 2022
In curl before 7.54.1 on Windows and DOS, libcurl's default protocol function, which is the logic...
Moderate
Unreviewed
CVE-2017-9502
was published
May 17, 2022
The mconvert function in softmagic.c in file before 5.21, as used in the Fileinfo component in...
Moderate
Unreviewed
CVE-2014-9652
was published
May 17, 2022
The security policy processing module in Huawei Secospace USG6300 with software V500R001C20SPC100...
Moderate
Unreviewed
CVE-2016-8802
was published
May 17, 2022
Huawei CloudEngine 5800 with software before V200R001C00SPC700, CloudEngine 6800 with software...
Moderate
Unreviewed
CVE-2016-8790
was published
May 17, 2022
Heap-based buffer overflow in the vrend_create_vertex_elements_state function in vrend_renderer.c...
Moderate
Unreviewed
CVE-2017-5994
was published
May 17, 2022
Heap-based buffer overflow in tif_packbits.c in libtiff 4.0.6 and earlier allows remote attackers...
Moderate
Unreviewed
CVE-2016-5319
was published
May 17, 2022
The parse_string_node function in bplist.c in libimobiledevice libplist 1.12 allows local users...
Moderate
Unreviewed
CVE-2017-6435
was published
May 17, 2022
Heap overflow in the WaveletDenoiseImage function in MagickCore/fx.c in ImageMagick before 6.9.6...
Moderate
Unreviewed
CVE-2016-9298
was published
May 17, 2022
Stack-based buffer overflow in string/strcoll_l.c in the GNU C Library (aka glibc or libc6) 2.17...
Moderate
Unreviewed
CVE-2012-4424
was published
May 17, 2022
Heap-based buffer overflow in PCRE 8.36 and earlier allows remote attackers to cause a denial of...
Moderate
Unreviewed
CVE-2014-8964
was published
May 17, 2022
softmagic.c in file before 5.17 and libmagic allows context-dependent attackers to cause a denial...
Moderate
Unreviewed
CVE-2014-2270
was published
May 17, 2022
Race condition in the relinquish_memory function in arch/arm/domain.c in Xen 4.6.x and earlier...
Moderate
Unreviewed
CVE-2015-7814
was published
May 17, 2022
Memory leak in the __archive_read_get_extract function in archive_read_extract2.c in libarchive...
Moderate
Unreviewed
CVE-2015-8929
was published
May 17, 2022
Buffer overflow in Xen 4.7.x and earlier allows local x86 HVM guest OS administrators on guests...
Moderate
Unreviewed
CVE-2016-7094
was published
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API