GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,205
Erlang
31
GitHub Actions
19
Go
1,988
Maven
5,000+
npm
3,704
NuGet
661
pip
3,332
Pub
11
RubyGems
884
Rust
845
Swift
36
Unreviewed advisories
All unreviewed
5,000+
103 advisories
Filter by severity
A flaw was found when using samba as an Active Directory Domain Controller. Due to the way samba...
Moderate
Unreviewed
CVE-2020-10704
was published
May 24, 2022
An exploitable denial-of-service vulnerability exists in the resource record-parsing...
Moderate
Unreviewed
CVE-2020-6071
was published
May 24, 2022
A stack consumption issue is present in libyang before v1.0-r1 due to the self-referential union...
Moderate
Unreviewed
CVE-2019-20395
was published
May 24, 2022
alter.c in SQLite through 3.30.1 allows attackers to trigger infinite recursion via certain types...
Moderate
Unreviewed
CVE-2019-19645
was published
May 24, 2022
ImageMagick before 7.0.9-0 allows remote attackers to cause a denial of service because...
Moderate
Unreviewed
CVE-2019-18853
was published
May 24, 2022
find_abstract_instance in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as...
Moderate
Unreviewed
CVE-2019-17450
was published
May 24, 2022
In Eclipse Mosquitto 1.5.0 to 1.6.5 inclusive, if a malicious MQTT client sends a SUBSCRIBE...
Moderate
Unreviewed
CVE-2019-11779
was published
May 24, 2022
Oniguruma before 6.9.3 allows Stack Exhaustion in regcomp.c because of recursion in regparse.c.
Moderate
Unreviewed
CVE-2019-16163
was published
May 24, 2022
In DjVuLibre 3.5.27, the sorting functionality (aka GArrayTemplate<TYPE>::sort) allows attackers...
Moderate
Unreviewed
CVE-2019-15144
was published
May 24, 2022
check_input_term in sound/usb/mixer.c in the Linux kernel through 5.2.9 mishandles recursion,...
Moderate
Unreviewed
CVE-2019-15118
was published
May 24, 2022
Mikrotik RouterOS before 6.44.5 (long-term release tree) is vulnerable to stack exhaustion. By...
Moderate
Unreviewed
CVE-2019-13955
was published
May 24, 2022
serde serde_yaml 0.6.0 to 0.8.3 is affected by: Uncontrolled Recursion. The impact is: Denial of...
Moderate
Unreviewed
CVE-2019-1010183
was published
May 24, 2022
yaml-rust 0.4.0 and earlier is affected by: Uncontrolled Recursion. The impact is: Denial of...
Moderate
Unreviewed
CVE-2019-1010182
was published
May 24, 2022
LibSass 3.5.4 allows attackers to cause a denial-of-service (uncontrolled recursion in Sass:...
Moderate
Unreviewed
CVE-2018-20822
was published
May 24, 2022
The parsing component in LibSass through 3.5.5 allows attackers to cause a denial-of-service ...
Moderate
Unreviewed
CVE-2018-20821
was published
May 24, 2022
compile in regexp.c in Artifex MuJS through 1.2.0 results in stack consumption because of...
Moderate
Unreviewed
CVE-2022-30974
was published
May 19, 2022
Stack-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.
Moderate
Unreviewed
CVE-2022-1771
was published
May 19, 2022
An issue was discovered in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.30....
Moderate
Unreviewed
CVE-2018-9996
was published
May 13, 2022
pdf_load_obj_stm in pdf/pdf-xref.c in Artifex MuPDF 1.12.0 could reference the object stream...
Moderate
Unreviewed
CVE-2018-6544
was published
May 13, 2022
In Exiv2 0.26, there is a segmentation fault caused by uncontrolled recursion in the Exiv2::Image...
Moderate
Unreviewed
CVE-2018-5772
was published
May 13, 2022
jsparse.c in Artifex MuJS through 1.0.2 does not properly maintain the AST depth for binary...
Moderate
Unreviewed
CVE-2018-5759
was published
May 13, 2022
Endless recursion when handling responses from an IAS-ECC card in iasecc_select_file in libopensc...
Moderate
Unreviewed
CVE-2018-16426
was published
May 13, 2022
Espruino before 1.99 allows attackers to cause a denial of service (application crash) with a...
Moderate
Unreviewed
CVE-2018-11597
was published
May 13, 2022
An issue was discovered in PoDoFo 0.9.5. There is an Excessive Recursion in the PdfPagesTree:...
Moderate
Unreviewed
CVE-2018-11254
was published
May 13, 2022
In Wireshark 2.2.7, deeply nested DAAP data may cause stack exhaustion (uncontrolled recursion)...
Moderate
Unreviewed
CVE-2017-9617
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API