GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,233
Erlang
31
GitHub Actions
20
Go
1,992
Maven
5,000+
npm
3,709
NuGet
661
pip
3,346
Pub
11
RubyGems
884
Rust
846
Swift
36
Unreviewed advisories
All unreviewed
5,000+
150 advisories
Filter by severity
S3 storage write is not aborted on errors leading to unbounded memory usage
High
GHSA-m6m5-pp4g-fcc8
was published
for
github.com/foxcpp/maddy
(Go)
Oct 6, 2021
In the Linux kernel before 5.3.4, a reference count usage error in the fib6_rule_suppress()...
High
Unreviewed
CVE-2019-18198
was published
May 24, 2022
A vulnerability in the web services interface of Cisco IOS Software and Cisco IOS XE Software...
High
Unreviewed
CVE-2022-20697
was published
Apr 16, 2022
Missing Release of Resource after Effective Lifetime in Jenkins
High
CVE-2018-1999043
was published
for
org.jenkins-ci.main:jenkins-core
(Maven)
May 13, 2022
Buffer Overflow in Apache Mina SSHD
High
CVE-2021-30129
was published
for
org.apache.sshd:sshd-core
(Maven)
Aug 2, 2021
A stack buffer overflow exists in Mini-XML v3.2. When inputting an unformed XML string to the...
High
Unreviewed
CVE-2021-42860
was published
May 27, 2022
A memory leak issue was discovered in Mini-XML v3.2 that could cause a denial of service.
High
Unreviewed
CVE-2021-42859
was published
May 27, 2022
An issue was discovered in swftools through 20201222 through a memory leak in the swftools when...
High
Unreviewed
CVE-2021-42197
was published
Jun 3, 2022
rudp v0.6 was discovered to contain a memory leak in the component main.c.
High
Unreviewed
CVE-2020-20665
was published
May 24, 2022
A vulnerability classified as problematic was found in vicamo NetworkManager. Affected by this...
High
Unreviewed
CVE-2014-125042
was published
Jan 5, 2023
A memory leak was found in the way SIPcrack 0.2 handled processing of SIP traffic, because a...
High
Unreviewed
CVE-2017-11655
was published
May 13, 2022
A vulnerability has been identified in CP-8000 MASTER MODULE WITH I/O -25/+70°C (All versions <...
High
Unreviewed
CVE-2022-29884
was published
Jul 13, 2022
In the Linux kernel before 5.0.3, a memory leak exits in hsr_dev_finalize() in net/hsr/hsr_device...
High
Unreviewed
CVE-2019-16995
was published
May 24, 2022
On BIG-IP versions 15.0.0-15.0.1.1, 14.1.0-14.1.2, 14.0.0-14.0.1, 13.1.0-13.1.3.1, and 12.1.0-12...
High
Unreviewed
CVE-2019-6681
was published
May 24, 2022
Node.js before 10.24.0, 12.21.0, 14.16.0, and 15.10.0 is vulnerable to a denial of service attack...
High
Unreviewed
CVE-2021-22883
was published
May 24, 2022
A memory leak in the TFTP service in B&R Automation Runtime versions <N4.26, <N4.34, <F4.45, <E4...
High
Unreviewed
CVE-2020-11637
was published
May 24, 2022
smtpd/table.c in OpenSMTPD before 6.8.0p1 lacks a certain regfree, which might allow attackers to...
High
Unreviewed
CVE-2020-35679
was published
May 24, 2022
In Phoenix Contact FL COMSERVER UNI in versions < 2.40 a invalid Modbus exception response can...
High
Unreviewed
CVE-2021-21002
was published
May 24, 2022
Any git operation is passed through Jetty and a session is created. No expiry is set for the...
High
Unreviewed
CVE-2021-22553
was published
May 24, 2022
Live555 through 1.08 has a memory leak in AC3AudioStreamParser for AC3 files.
High
Unreviewed
CVE-2021-39282
was published
May 24, 2022
Large loop in the Kafka dissector in Wireshark 3.6.0 allows denial of service via packet...
High
Unreviewed
CVE-2021-4190
was published
Dec 31, 2021
A vulnerability in Cisco Nexus 9000 Series Fabric Switches in Application Centric Infrastructure ...
High
Unreviewed
CVE-2021-1523
was published
May 24, 2022
Missing Release of Resource after Effective Lifetime vulnerability in OpenSSL implementation of...
High
Unreviewed
CVE-2021-34581
was published
May 24, 2022
A flaw was found in libvirt, where it leaked a file descriptor for `/dev/mapper/control` into the...
High
Unreviewed
CVE-2020-14339
was published
May 24, 2022
Memory leak in the Session Initiation Protocol (SIP) implementation in Cisco IOS 12.2 through 12...
High
Unreviewed
CVE-2008-3799
was published
May 2, 2022
ProTip!
Advisories are also available from the
GraphQL API