GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,126
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,021
Swift
39
Unreviewed advisories
All unreviewed
5,000+
252 advisories
Filter by severity
In MP4v2 2.0.0, there is an integer underflow (with resultant memory corruption) when parsing...
High
Unreviewed
CVE-2018-14325
was published
May 13, 2022
In keyinstall, there is a possible information disclosure due to an integer overflow. This could...
Moderate
Unreviewed
CVE-2023-20635
was published
Mar 7, 2023
An issue was discovered in Schism Tracker through 20190722. There is an integer underflow via a...
High
Unreviewed
CVE-2019-14523
was published
May 24, 2022
In wlan driver, there is a possible missing params check. This could lead to local denial of...
Moderate
Unreviewed
CVE-2022-38681
was published
Feb 12, 2023
Multiple integer underflows in the x25_parse_facilities function in net/x25/x25_facilities.c in...
High
Unreviewed
CVE-2010-4164
was published
May 13, 2022
Integer underflow in the dccp_parse_options function (net/dccp/options.c) in the Linux kernel...
High
Unreviewed
CVE-2011-1770
was published
May 13, 2022
Integer underflow in the xTrapezoidValid macro in render/picture.h in X.Org allows context...
Moderate
Unreviewed
CVE-2013-6424
was published
May 13, 2022
Integer underflow in the l2cap_config_req function in net/bluetooth/l2cap_core.c in the Linux...
High
Unreviewed
CVE-2011-2497
was published
May 13, 2022
Integer underflow in the pixman_trapezoid_valid macro in pixman.h in Pixman before 0.32.0, as...
Moderate
Unreviewed
CVE-2013-6425
was published
May 13, 2022
A use-after-free flaw was found in io_uring/filetable.c in io_install_fixed_file in the io_uring...
Moderate
Unreviewed
CVE-2023-0469
was published
Jan 26, 2023
Integer underflow in Sandstorm Cap'n Proto before 0.4.1.1 and 0.5.x before 0.5.1.1 might allow...
Critical
Unreviewed
CVE-2015-2311
was published
May 17, 2022
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected...
High
Unreviewed
CVE-2022-24046
was published
Feb 19, 2022
An integer underflow vulnerability exists in pixel-a.asm, the x86 assembly code for...
Moderate
Unreviewed
CVE-2017-13666
was published
May 17, 2022
The hevc_write_frame function in libbpg.c in libbpg 0.9.7 allows remote attackers to cause a...
High
Unreviewed
CVE-2017-14796
was published
May 17, 2022
Integer underflow in the _gdContributionsAlloc function in gd_interpolation.c in the GD Graphics...
Critical
Unreviewed
CVE-2016-10166
was published
May 17, 2022
archival/libarchive/decompress_unlzma.c in BusyBox 1.27.2 has an Integer Underflow that leads to...
Moderate
Unreviewed
CVE-2017-15874
was published
May 17, 2022
An integer underflow has been identified in the unicode_to_utf8() function in tnef 1.4.14. This...
Critical
Unreviewed
CVE-2017-8911
was published
May 17, 2022
chan_sip in Asterisk Open Source 1.8.x, 11.x before 11.21.1, 12.x, and 13.x before 13.7.1 and...
High
Unreviewed
CVE-2016-2316
was published
May 17, 2022
In wlan driver, there is a possible missing bounds check. This could lead to local denial of...
Moderate
Unreviewed
CVE-2022-44444
was published
Jan 4, 2023
Integer underflow in the mov_read_default function in libavformat/mov.c in FFmpeg before 2.4.6...
Moderate
Unreviewed
CVE-2015-1208
was published
May 14, 2022
A CWE-191: Integer Underflow (Wrap or Wraparound) vulnerability exists that could cause a denial...
High
Unreviewed
CVE-2022-37301
was published
Nov 22, 2022
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile,...
Critical
Unreviewed
CVE-2015-9198
was published
May 14, 2022
In the function csr_update_fils_params_rso(), insufficient validation on a key length can result...
High
Unreviewed
CVE-2018-5850
was published
May 14, 2022
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile...
Critical
Unreviewed
CVE-2015-9167
was published
May 14, 2022
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile,...
Critical
Unreviewed
CVE-2015-9129
was published
May 14, 2022
ProTip!
Advisories are also available from the
GraphQL API