GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,293
Erlang
31
GitHub Actions
21
Go
2,061
Maven
5,000+
npm
3,744
NuGet
668
pip
3,423
Pub
12
RubyGems
892
Rust
875
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
12,632 advisories
Filter by severity
Adobe Flash Player before 10.3.183.86 and 11.x before 11.7.700.202 on Windows and Mac OS X,...
High
Unreviewed
CVE-2013-3332
was published
May 13, 2022
Adobe Flash Player before 10.3.183.86 and 11.x before 11.7.700.202 on Windows and Mac OS X,...
High
Unreviewed
CVE-2013-3331
was published
May 13, 2022
Heap-based buffer overflow in WECON LeviStudio allows remote attackers to execute arbitrary code...
High
Unreviewed
CVE-2016-4533
was published
May 13, 2022
The cifs_iovec_write function in fs/cifs/file.c in the Linux kernel through 3.13.5 does not...
High
Unreviewed
CVE-2014-0069
was published
May 13, 2022
Stack-based buffer overflow in the milliwatt_generate function in the Miliwatt application in...
Moderate
Unreviewed
CVE-2012-1183
was published
May 13, 2022
Mozilla Firefox before 16.0, Thunderbird before 16.0, and SeaMonkey before 2.13 do not properly...
High
Unreviewed
CVE-2012-3989
was published
May 13, 2022
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 16.0,...
High
Unreviewed
CVE-2012-3983
was published
May 13, 2022
The ip6_route_add function in net/ipv6/route.c in the Linux kernel through 3.13.6 does not...
Moderate
Unreviewed
CVE-2014-2309
was published
May 13, 2022
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 15.0,...
High
Unreviewed
CVE-2012-1970
was published
May 13, 2022
The clusterLoadConfig function in cluster.c in Redis 4.0.2 allows attackers to cause a denial of...
Critical
Unreviewed
CVE-2017-15047
was published
May 13, 2022
Multiple stack-based buffer overflows in TP-Link WR940N WiFi routers with hardware version 4...
High
Unreviewed
CVE-2017-13772
was published
May 13, 2022
A vulnerability in the CLI parser of Cisco FXOS Software and Cisco UCS Fabric Interconnect...
High
Unreviewed
CVE-2018-0302
was published
May 13, 2022
A vulnerability in the Secure Shell (SSH) subsystem of Cisco Small Business Managed Switches...
Moderate
Unreviewed
CVE-2017-6720
was published
May 13, 2022
ReadPSDImage in coders/psd.c in ImageMagick 7.0.7-6 allows remote attackers to cause a denial of...
High
Unreviewed
CVE-2017-15281
was published
May 13, 2022
hw/virtio/virtio.c in the Virtual Network Device (virtio-net) support in QEMU, when big or...
Moderate
Unreviewed
CVE-2015-7295
was published
May 13, 2022
Heap-based buffer overflow in OpenJPEG 1.3 has unspecified impact and remote vectors, a different...
High
Unreviewed
CVE-2013-6054
was published
May 13, 2022
Multiple heap-based buffer overflows in the j2k_read_sot function in j2k.c in OpenJPEG 1.5 allow...
High
Unreviewed
CVE-2012-3358
was published
May 13, 2022
Heap-based buffer overflow in OpenJPEG 1.5.0 and earlier allows remote attackers to cause a...
Moderate
Unreviewed
CVE-2012-3535
was published
May 13, 2022
Multiple heap-based buffer overflows in OpenJPEG 1.3 and earlier might allow remote attackers to...
High
Unreviewed
CVE-2013-6045
was published
May 13, 2022
The JPEG 2000 codec (jp2.c) in OpenJPEG before 1.5 allows remote attackers to execute arbitrary...
High
Unreviewed
CVE-2012-1499
was published
May 13, 2022
Heap-based buffer overflow in the JPEG2000 image tile decoder in OpenJPEG before 1.5.2 allows...
High
Unreviewed
CVE-2014-0158
was published
May 13, 2022
The opj_tgt_reset function in OpenJpeg 2016.1.18 allows remote attackers to cause a denial of...
Moderate
Unreviewed
CVE-2016-1924
was published
May 13, 2022
Heap-based buffer overflow in the color_cmyk_to_rgb in common/color.c in OpenJPEG before 2.1.1...
Moderate
Unreviewed
CVE-2016-4796
was published
May 13, 2022
Heap-based buffer overflow in the opj_j2k_update_image_data function in OpenJpeg 2016.1.18 allows...
Moderate
Unreviewed
CVE-2016-1923
was published
May 13, 2022
Stack-based buffer overflow in OpenJPEG before 1.5.2 allows remote attackers to have unspecified...
High
Unreviewed
CVE-2013-4290
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API