GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,869
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,119
NuGet
735
pip
3,941
Pub
12
RubyGems
945
Rust
1,018
Swift
39
Unreviewed advisories
All unreviewed
5,000+
58 advisories
Filter by severity
The decompression implementation in the Imf::hufUncompress function in OpenEXR 1.2.2 and 1.6.1...
Moderate
Unreviewed
CVE-2009-1721
was published
May 2, 2022
A user able to control file input to Gerbv, between versions 2.4.0 and 2.10.0, can cause a crash...
Moderate
Unreviewed
CVE-2023-4508
was published
Aug 25, 2023
Adobe Prelude versions 22.6 and earlier are affected by an Access of Uninitialized Pointer...
Moderate
Unreviewed
CVE-2023-44362
was published
Dec 13, 2023
lib/kadm5/kadm_rpc_xdr.c in MIT Kerberos 5 (aka krb5) before 1.20.2 and 1.21.x before 1.21.1...
Moderate
Unreviewed
CVE-2023-36054
was published
Aug 7, 2023
Adobe Audition version 24.0 (and earlier) and 23.6.1 (and earlier) are affected by an Access of...
Moderate
Unreviewed
CVE-2023-47053
was published
Nov 16, 2023
Adobe Substance 3D Stager version 2.0.1 (and earlier) is affected by an Access of Uninitialized...
Moderate
Unreviewed
CVE-2023-26387
was published
Apr 13, 2023
Adobe Substance 3D Stager version 2.0.1 (and earlier) is affected by an Access of Uninitialized...
Moderate
Unreviewed
CVE-2023-26386
was published
Apr 13, 2023
Adobe Dimension versions 3.4.7 (and earlier) is affected by an Access of Uninitialized Pointer...
Moderate
Unreviewed
CVE-2023-26344
was published
Mar 28, 2023
An access of uninitialized pointer vulnerability [CWE-824] in the SSL VPN portal of Fortinet...
Moderate
Unreviewed
CVE-2022-45861
was published
Mar 7, 2023
A flaw was found in the opj2_decompress program in openjpeg2 2.4.0 in the way it handles an input...
Moderate
Unreviewed
CVE-2022-1122
was published
Mar 30, 2022
In the MDSS driver in all Android releases(Android for MSM, Firefox OS for MSM, QRD Android) from...
Moderate
Unreviewed
CVE-2018-5860
was published
May 14, 2022
A flaw was found in the QEMU implementation of VMWare's paravirtual RDMA device in versions prior...
Moderate
Unreviewed
CVE-2021-3608
was published
Feb 25, 2022
Mozilla Firefox before 32.0, Firefox ESR 31.x before 31.1, and Thunderbird 31.x before 31.1 do...
Moderate
Unreviewed
CVE-2014-1564
was published
May 14, 2022
Google Chrome before 12.0.742.91 attempts to read data from an uninitialized pointer, which...
Moderate
Unreviewed
CVE-2011-1814
was published
May 13, 2022
An Access of Uninitialized Pointer vulnerability in the Routing Protocol Daemon (rpd) of Juniper...
Moderate
Unreviewed
CVE-2023-22398
was published
Jan 13, 2023
The Windows kernel in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1...
Moderate
Unreviewed
CVE-2018-0894
was published
May 13, 2022
In Omron CX-Supervisor Versions 3.30 and prior, access of uninitialized pointer vulnerabilities...
Moderate
Unreviewed
CVE-2018-7515
was published
May 13, 2022
A vulnerability has been identified in Solid Edge SE2021 (All versions < SE2021MP8). The affected...
Moderate
Unreviewed
CVE-2021-41538
was published
May 24, 2022
Adobe Media Encoder version 15.2 (and earlier) is affected by an uninitialized pointer...
Moderate
Unreviewed
CVE-2021-36014
was published
May 24, 2022
In Juniper Networks Junos OS Evolved an attacker sending certain valid BGP update packets may...
Moderate
Unreviewed
CVE-2021-0209
was published
May 24, 2022
In ihevc_inter_pred_chroma_copy_ssse3 of ihevc_inter_pred_filters_ssse3_intr.c, there is a...
Moderate
Unreviewed
CVE-2020-0488
was published
May 24, 2022
SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated U3D file received...
Moderate
Unreviewed
CVE-2020-6321
was published
May 24, 2022
An exploitable information disclosure vulnerability exists in the way Nitro Pro 13.9.1.155 does...
Moderate
Unreviewed
CVE-2020-6093
was published
May 24, 2022
In updatehub_probe, right after JSON parsing is complete, objects\[1] is accessed from the output...
Moderate
Unreviewed
CVE-2020-10060
was published
May 24, 2022
An issue was discovered in Pure-FTPd 1.0.49. An uninitialized pointer vulnerability has been...
Moderate
Unreviewed
CVE-2020-9274
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API