GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,869
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,119
NuGet
735
pip
3,941
Pub
12
RubyGems
945
Rust
1,018
Swift
39
Unreviewed advisories
All unreviewed
5,000+
617 advisories
Filter by severity
In Wireshark 2.4.0 to 2.4.4 and 2.2.0 to 2.2.12, epan/dissectors/packet-dcm.c had an infinite...
High
Unreviewed
CVE-2018-7322
was published
May 13, 2022
VMware ESXi (6.7, 6.5, 6.0), Workstation (15.x and 14.x) and Fusion (11.x and 10.x) contain a...
Moderate
Unreviewed
CVE-2018-6977
was published
May 13, 2022
The AP4_FtypAtom class in Core/Ap4FtypAtom.cpp in Bento4 1.5.1.0 has an Infinite loop via a...
High
Unreviewed
CVE-2018-5253
was published
May 13, 2022
The xz_decomp function in xzlib.c in libxml2 2.9.8, if --with-lzma is used, allows remote...
Moderate
Unreviewed
CVE-2018-9251
was published
May 13, 2022
NVIDIA GPU Display Driver contains a vulnerability in the DirectX and OpenGL Usermode drivers...
Moderate
Unreviewed
CVE-2018-6253
was published
May 13, 2022
w3m through 0.5.3 is prone to an infinite recursion flaw in HTMLlineproc0 because the...
High
Unreviewed
CVE-2018-6196
was published
May 13, 2022
An issue was discovered in xpdf 4.00. An infinite loop in XRef::Xref allows an attacker to cause...
Moderate
Unreviewed
CVE-2018-7174
was published
May 13, 2022
In Wireshark 2.4.0 to 2.4.5, the CQL dissector could go into an infinite loop. This was addressed...
High
Unreviewed
CVE-2018-9257
was published
May 13, 2022
In PoDoFo 0.9.5, there exists an infinite loop vulnerability in PdfParserObject:...
High
Unreviewed
CVE-2018-8002
was published
May 13, 2022
In ih264d_video_decode of ih264d_api.c there is a possible resource exhaustion due to an infinite...
High
Unreviewed
CVE-2018-9444
was published
May 13, 2022
crypto/ahash.c in the Linux kernel through 4.10.9 allows attackers to cause a denial of service ...
High
Unreviewed
CVE-2017-7618
was published
May 13, 2022
Infinite loop in the F5 Ethernet Trailer protocol dissector in Wireshark 3.6.0 to 3.6.7 and 3.4.0...
Moderate
Unreviewed
CVE-2022-3190
was published
Sep 14, 2022
kamadak-exif vulnerable to Infinite loop when parsing PNG files
Moderate
CVE-2021-21235
was published
for
kamadak-exif
(Rust)
Oct 6, 2022
PDF Labs pdftk-java v3.2.3 was discovered to contain an infinite loop via the component /text/pdf...
High
Unreviewed
CVE-2021-37819
was published
Sep 10, 2022
When a file is processed, an infinite loop occurs in next_inline() of the more_curly() function.
High
Unreviewed
CVE-2021-33642
was published
Jan 20, 2023
Openwsman, versions up to and including 2.6.9, are vulnerable to infinite loop in...
High
Unreviewed
CVE-2019-3833
was published
May 13, 2022
The intel_hda_xfer function in hw/audio/intel-hda.c in QEMU (aka Quick Emulator) allows local...
Moderate
Unreviewed
CVE-2016-8909
was published
May 13, 2022
The rtl8139_cplus_transmit function in hw/net/rtl8139.c in QEMU (aka Quick Emulator) allows local...
Moderate
Unreviewed
CVE-2016-8910
was published
May 13, 2022
Crash in the RFC 7468 dissector in Wireshark 3.6.0 and 3.4.0 to 3.4.10 allows denial of service...
High
Unreviewed
CVE-2021-4182
was published
Dec 31, 2021
An infinite loop vulnerability exists in gpac 1.1.0 in the gf_log function, which causes a Denial...
Moderate
Unreviewed
CVE-2021-44924
was published
Dec 22, 2021
An infinite loop vulnerability exists in nasm 2.16rc0 via the gpaste_tokens function.
High
Unreviewed
CVE-2021-45257
was published
Dec 23, 2021
hw/usb/hcd-ohci.c in QEMU 5.0.0 has an infinite loop when a TD list has a loop.
Moderate
Unreviewed
CVE-2020-25625
was published
May 24, 2022
Infinite Loop in Apache James
Moderate
CVE-2021-40111
was published
for
org.apache.james:james-server
(Maven)
Jan 8, 2022
hw/net/e1000e_core.c in QEMU 5.0.0 has an infinite loop via an RX descriptor with a NULL buffer...
Moderate
Unreviewed
CVE-2020-28916
was published
May 24, 2022
Unisys ClearPath MCP TCP/IP Networking Services 59.1, 60.0, and 62.0 has an Infinite Loop.
High
Unreviewed
CVE-2021-45445
was published
Jan 13, 2022
ProTip!
Advisories are also available from the
GraphQL API