GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,866
Erlang
36
GitHub Actions
36
Go
2,491
Maven
5,000+
npm
4,110
NuGet
735
pip
3,933
Pub
12
RubyGems
945
Rust
1,018
Swift
39
Unreviewed advisories
All unreviewed
5,000+
309 advisories
Filter by severity
An improperly performed length calculation on a buffer in PlaintextRecordLayer could lead to an...
Moderate
Unreviewed
CVE-2019-3560
was published
May 24, 2022
Inf loop in GitHub repository gpac/gpac prior to 2.1.0-DEV.
Moderate
Unreviewed
CVE-2022-1222
was published
Apr 5, 2022
GPAC version before commit 71460d72ec07df766dab0a4d52687529f3efcf0a (version v1.0.1 onwards)...
Moderate
Unreviewed
CVE-2021-40592
was published
Jun 9, 2022
An infinite loop vulnerability exists in Gpac 1.0.1 in gf_get_bit_size.
Moderate
Unreviewed
CVE-2021-45297
was published
Dec 22, 2021
In Lib/tarfile.py in Python through 3.8.3, an attacker is able to craft a TAR archive leading to...
Moderate
Unreviewed
CVE-2019-20907
was published
May 24, 2022
In OpenWrt 19.07.x before 19.07.7, when IPv6 is used, a routing loop can occur that generates...
Moderate
Unreviewed
CVE-2021-22161
was published
May 24, 2022
Missing Release of Memory after Effective Lifetime in Apache Tika
Moderate
CVE-2020-9489
was published
for
org.apache.tika:tika
(Maven)
May 7, 2021
In multiple locations, there is a possible way to trigger a persistent reboot loop due to...
Moderate
Unreviewed
CVE-2023-20999
was published
Mar 24, 2023
In multiple locations, there is a possible way to trigger a persistent reboot loop due to...
Moderate
Unreviewed
CVE-2023-20998
was published
Mar 24, 2023
In multiple locations, there is a possible way to trigger a persistent reboot loop due to...
Moderate
Unreviewed
CVE-2023-20997
was published
Mar 24, 2023
In multiple locations, there is a possible way to trigger a persistent reboot loop due to...
Moderate
Unreviewed
CVE-2023-20996
was published
Mar 24, 2023
In Libav 12.3, there is an infinite loop in the function wv_read_block_header() in the file wvdec.c.
Moderate
Unreviewed
CVE-2019-14372
was published
May 24, 2022
org.apache.tika:tika-parsers has an Infinite Loop vulnerability
Moderate
CVE-2018-1339
was published
for
org.apache.tika:tika-parsers
(Maven)
Oct 17, 2018
net/ipv4/inet_diag.c in the Linux kernel before 2.6.37-rc2 does not properly audit INET_DIAG...
Moderate
Unreviewed
CVE-2010-3880
was published
May 13, 2022
The ehci_process_itd function in hw/usb/hcd-ehci.c in QEMU allows local guest OS administrators...
Moderate
Unreviewed
CVE-2015-8558
was published
May 13, 2022
Qemu before 2.0 block driver for Hyper-V VHDX Images is vulnerable to infinite loops and other...
Moderate
Unreviewed
CVE-2014-0148
was published
Sep 30, 2022
The Linux kernel before 2.6.37 does not properly implement a certain clock-update optimization,...
Moderate
Unreviewed
CVE-2011-4621
was published
May 13, 2022
The mcf_fec_do_tx function in hw/net/mcf_fec.c in QEMU (aka Quick Emulator) does not properly...
Moderate
Unreviewed
CVE-2016-7908
was published
May 13, 2022
An issue was discovered in Xen through 4.12.x allowing Arm domU attackers to cause a denial of...
Moderate
Unreviewed
CVE-2019-17349
was published
May 24, 2022
On BIG-IP 14.1.0-14.1.0.5 and 14.0.0-14.0.0.4, Malformed http requests made to an undisclosed...
Moderate
Unreviewed
CVE-2019-6638
was published
May 24, 2022
When in an endless loop, a website specifying a custom cursor using CSS could make it look like...
Moderate
Unreviewed
CVE-2020-15654
was published
May 24, 2022
A potential stack overflow via infinite loop issue was found in various NIC emulators of QEMU in...
Moderate
Unreviewed
CVE-2021-3416
was published
May 24, 2022
QEMU (aka Quick Emulator) built with the e1000 NIC emulation support is vulnerable to an infinite...
Moderate
Unreviewed
CVE-2016-1981
was published
May 13, 2022
An infinite loop flaw was found in the e1000 NIC emulator of the QEMU. This issue occurs while...
Moderate
Unreviewed
CVE-2021-20257
was published
Mar 17, 2022
An issue was discovered in Xen through 4.12.x allowing Arm domU attackers to cause a denial of...
Moderate
Unreviewed
CVE-2019-17350
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API