GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,869
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,121
NuGet
735
pip
3,941
Pub
12
RubyGems
945
Rust
1,018
Swift
39
Unreviewed advisories
All unreviewed
5,000+
617 advisories
Filter by severity
In Wireshark 2.4.0 to 2.4.4 and 2.2.0 to 2.2.12, epan/dissectors/packet-rpcrdma.c had an infinite...
High
Unreviewed
CVE-2018-7333
was published
May 13, 2022
Infinite recursion in AcroForm::scanField in AcroForm.cc in xpdf 4.00 allows attackers to launch...
Moderate
Unreviewed
CVE-2018-7453
was published
May 13, 2022
In Wireshark 2.4.0 to 2.4.4 and 2.2.0 to 2.2.12, epan/dissectors/packet-rpki-rtr.c had an...
High
Unreviewed
CVE-2018-7325
was published
May 13, 2022
In FreeBSD before 11.1-STABLE, 11.1-RELEASE-p9, 10.4-STABLE, 10.4-RELEASE-p8 and 10.3-RELEASE-p28...
High
Unreviewed
CVE-2018-6918
was published
May 13, 2022
In GraphicsMagick 1.3.27, there is an infinite loop and application hang in the ReadBMPImage...
Moderate
Unreviewed
CVE-2018-5685
was published
May 13, 2022
** DISPUTED ** In inspect.cpp in LibSass 3.5.5, a high memory footprint caused by an endless loop...
Moderate
Unreviewed
CVE-2018-19826
was published
May 13, 2022
libpff_item_tree_create_node in libpff_item_tree.c in libpff before experimental-20180714 allows...
Moderate
Unreviewed
CVE-2018-20348
was published
May 13, 2022
There is an infinite loop in Exiv2::Jp2Image::encodeJp2Header of jp2image.cpp in Exiv2 0.27-RC3....
Moderate
Unreviewed
CVE-2018-20099
was published
May 13, 2022
An issue was discovered in dns.c in HAProxy through 1.8.14. In the case of a compressed pointer,...
High
Unreviewed
CVE-2018-20103
was published
May 13, 2022
FFmpeg before commit 9807d3976be0e92e4ece3b4b1701be894cd7c2e1 contains a CWE-835: Infinite loop...
High
Unreviewed
CVE-2018-1999012
was published
May 13, 2022
There is an infinite loop in the Exiv2::Image::printIFDStructure function of image.cpp in Exiv2 0...
Moderate
Unreviewed
CVE-2018-18915
was published
May 13, 2022
In Bento4 v1.5.1-624, AP4_File::ParseStream in Ap4File.cpp allows remote attackers to cause a...
Moderate
Unreviewed
CVE-2018-14445
was published
May 13, 2022
An issue was discovered in NuttX before 7.27. The function netlib_parsehttpurl() in apps/netutils...
High
Unreviewed
CVE-2018-20578
was published
May 13, 2022
In Miniz 2.0.7, tinfl_decompress in miniz_tinfl.c has an infinite loop because sym2 and counter...
High
Unreviewed
CVE-2018-12913
was published
May 13, 2022
GNU Libextractor before 1.7 contains an infinite loop vulnerability in...
Moderate
Unreviewed
CVE-2018-14347
was published
May 13, 2022
An issue has been found in dbf2txt through 2012-07-19. It is a infinite loop.
Moderate
Unreviewed
CVE-2018-17042
was published
May 13, 2022
An issue was discovered in Xen through 4.10.x allowing x86 HVM guest OS users to cause a denial...
Moderate
Unreviewed
CVE-2018-10981
was published
May 13, 2022
An infinite loop when reaching EOL unexpectedly in compose/parser.c (aka the keymap parser) in...
Moderate
Unreviewed
CVE-2018-15856
was published
May 13, 2022
The function wav_read in libwav.c in libwav through 2017-04-20 has an infinite loop.
High
Unreviewed
CVE-2018-14051
was published
May 13, 2022
An issue was discovered in Asterisk Open Source 15.x before 15.4.1. When connected to Asterisk...
Moderate
Unreviewed
CVE-2018-12228
was published
May 13, 2022
ngiflib.c in MiniUPnP ngiflib 0.4 has an infinite loop in DecodeGifImg and LoadGif.
High
Unreviewed
CVE-2018-11657
was published
May 13, 2022
The mp4ff_parse_tag function in common/mp4ff/mp4meta.c in Freeware Advanced Audio Decoder 2 ...
High
Unreviewed
CVE-2017-9222
was published
May 13, 2022
A memory exhaustion vulnerability exists in Asterisk Open Source 13.x before 13.15.1 and 14.x...
High
Unreviewed
CVE-2017-9358
was published
May 13, 2022
A flaw was found in the Linux kernel present since v4.0-rc1 and through v4.13-rc4. A crafted...
High
Unreviewed
CVE-2018-10938
was published
May 13, 2022
An issue was discovered in PHP before 5.6.36, 7.0.x before 7.0.30, 7.1.x before 7.1.17, and 7.2.x...
High
Unreviewed
CVE-2018-10546
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API