GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,810
Erlang
36
GitHub Actions
31
Go
2,396
Maven
5,000+
npm
4,030
NuGet
721
pip
3,820
Pub
12
RubyGems
932
Rust
988
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
951 advisories
Filter by severity
fs/exec.c in the Linux kernel before 2.6.37 does not enable the OOM Killer to assess use of stack...
Moderate
Unreviewed
CVE-2010-4243
was published
May 13, 2022
The blk_rq_map_user_iov function in block/blk-map.c in the Linux kernel before 2.6.37-rc7 allows...
Moderate
Unreviewed
CVE-2010-4668
was published
May 13, 2022
The d_walk function in fs/dcache.c in the Linux kernel through 3.17.2 does not properly maintain...
Moderate
Unreviewed
CVE-2014-8559
was published
May 13, 2022
arch/x86/kvm/vmx.c in the KVM subsystem in the Linux kernel before 3.17.2 on Intel processors...
Moderate
Unreviewed
CVE-2014-3690
was published
May 13, 2022
The wait_for_unix_gc function in net/unix/garbage.c in the Linux kernel before 2.6.37-rc3-next...
Moderate
Unreviewed
CVE-2010-4249
was published
May 13, 2022
The KVM implementation in the Linux kernel before 2.6.36 does not properly reload the FS and GS...
Moderate
Unreviewed
CVE-2010-3698
was published
May 13, 2022
The setup_arg_pages function in fs/exec.c in the Linux kernel before 2.6.36, when...
Moderate
Unreviewed
CVE-2010-3858
was published
May 13, 2022
Mozilla Firefox before 28.0 and SeaMonkey before 2.25 allow remote attackers to cause a denial of...
Moderate
Unreviewed
CVE-2014-1500
was published
May 13, 2022
The pivot_root implementation in fs/namespace.c in the Linux kernel through 3.17 does not...
Moderate
Unreviewed
CVE-2014-7970
was published
May 13, 2022
The try_to_unmap_cluster function in mm/rmap.c in the Linux kernel before 3.14.3 does not...
Moderate
Unreviewed
CVE-2014-3122
was published
May 13, 2022
An issue was discovered on Epson WorkForce WF-2861 10.48 LQ22I3, 10.51.LQ20I6 and 10.52.LQ17IA...
Moderate
Unreviewed
CVE-2018-18960
was published
May 13, 2022
A vulnerability in the system scanning component of Cisco Immunet and Cisco Advanced Malware...
Moderate
Unreviewed
CVE-2018-15437
was published
May 13, 2022
An issue was discovered in Qt before 5.11.3. There is QTgaFile Uncontrolled Resource Consumption.
Moderate
Unreviewed
CVE-2018-19871
was published
May 13, 2022
Apache Subversion's mod_dontdothat module and HTTP clients 1.4.0 through 1.8.16, and 1.9.0...
Moderate
Unreviewed
CVE-2016-8734
was published
May 13, 2022
libxml2, as used in Red Hat JBoss Core Services and when in recovery mode, allows context...
Moderate
Unreviewed
CVE-2016-9596
was published
May 13, 2022
JRuby before 1.6.5.1 computes hash values without restricting the ability to trigger hash...
Moderate
Unreviewed
CVE-2011-4838
was published
May 13, 2022
In OpenJPEG 2.3.0, there is excessive iteration in the opj_t1_encode_cblks function of openjp2/t1...
Moderate
Unreviewed
CVE-2018-6616
was published
May 13, 2022
OpenStack Dashboard (Horizon) before 2014.1.3 and 2014.2.x before 2014.2.1 does not properly...
Moderate
Unreviewed
CVE-2014-8124
was published
May 13, 2022
The mod_proxy_ajp module in the Apache HTTP Server before 2.2.21, when used with...
Moderate
Unreviewed
CVE-2011-3348
was published
May 13, 2022
The deflate_in_filter function in mod_deflate.c in the mod_deflate module in the Apache HTTP...
Moderate
Unreviewed
CVE-2014-0118
was published
May 13, 2022
The SCTP socket buffer used by a userspace application is not accounted by the cgroups subsystem....
Moderate
Unreviewed
CVE-2019-3874
was published
May 13, 2022
In Apache HTTP server versions 2.4.37 and prior, by sending request bodies in a slow loris way to...
Moderate
Unreviewed
CVE-2018-17189
was published
May 13, 2022
The XML parser (xmlparse.c) in expat before 2.1.0 computes hash values without restricting the...
Moderate
Unreviewed
CVE-2012-0876
was published
May 13, 2022
The virtqueue_pop function in hw/virtio/virtio.c in QEMU allows local guest OS administrators to...
Moderate
Unreviewed
CVE-2016-5403
was published
May 13, 2022
A vulnerability in the IP next-hop index database in Junos OS 17.3R3 may allow a flood of ARP...
Moderate
Unreviewed
CVE-2018-0063
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API