GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,272
Erlang
31
GitHub Actions
21
Go
2,047
Maven
5,000+
npm
3,739
NuGet
668
pip
3,415
Pub
12
RubyGems
891
Rust
868
Swift
36
Unreviewed advisories
All unreviewed
5,000+
151 advisories
Filter by severity
A flaw was found in libvirt, where it leaked a file descriptor for `/dev/mapper/control` into the...
High
Unreviewed
CVE-2020-14339
was published
May 24, 2022
A memory leak in the TFTP service in B&R Automation Runtime versions <N4.26, <N4.34, <F4.45, <E4...
High
Unreviewed
CVE-2020-11637
was published
May 24, 2022
On BIG-IP versions 15.0.0-15.0.1.1, 14.1.0-14.1.2, 14.0.0-14.0.1, 13.1.0-13.1.3.1, and 12.1.0-12...
High
Unreviewed
CVE-2019-6681
was published
May 24, 2022
In the Linux kernel before 5.3.4, a reference count usage error in the fib6_rule_suppress()...
High
Unreviewed
CVE-2019-18198
was published
May 24, 2022
The Video_Converter app 0.1.0 for Nextcloud allows denial of service (CPU and memory consumption)...
High
Unreviewed
CVE-2019-18214
was published
May 24, 2022
Boa through 0.94.14rc21 allows remote attackers to trigger a memory leak because of missing calls...
High
Unreviewed
CVE-2018-21028
was published
May 24, 2022
A failure to free memory can occur when processing messages having a specific combination of EDNS...
High
Unreviewed
CVE-2018-5744
was published
May 24, 2022
Foxit Reader before 9.7 allows an Access Violation and crash if insufficient memory exists.
High
Unreviewed
CVE-2019-17183
was published
May 24, 2022
In the Linux kernel before 5.0.3, a memory leak exits in hsr_dev_finalize() in net/hsr/hsr_device...
High
Unreviewed
CVE-2019-16995
was published
May 24, 2022
A service worker can send the activate event on itself periodically which allows it to run...
High
Unreviewed
CVE-2018-5179
was published
May 24, 2022
In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, ui/failure_message.c has a memory leak.
High
Unreviewed
CVE-2018-9274
was published
May 13, 2022
In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, epan/dissectors/packet-tn3270.c has a memory leak.
High
Unreviewed
CVE-2018-9265
was published
May 13, 2022
In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, epan/dissectors/packet-lapd.c has a memory leak.
High
Unreviewed
CVE-2018-9267
was published
May 13, 2022
In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, epan/dissectors/packet-smb2.c has a memory leak.
High
Unreviewed
CVE-2018-9268
was published
May 13, 2022
In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, epan/oids.c has a memory leak.
High
Unreviewed
CVE-2018-9270
was published
May 13, 2022
In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, epan/dissectors/packet-giop.c has a memory leak.
High
Unreviewed
CVE-2018-9269
was published
May 13, 2022
In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, epan/dissectors/packet-multipart.c has a memory...
High
Unreviewed
CVE-2018-9271
was published
May 13, 2022
In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, epan/dissectors/packet-h223.c has a memory leak.
High
Unreviewed
CVE-2018-9272
was published
May 13, 2022
In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, epan/dissectors/packet-isup.c has a memory leak.
High
Unreviewed
CVE-2018-9266
was published
May 13, 2022
In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, epan/dissectors/packet-pcp.c has a memory leak.
High
Unreviewed
CVE-2018-9273
was published
May 13, 2022
Some Huawei products IPS Module V500R001C50; NGFW Module V500R001C50; V500R002C10; NIP6300...
High
Unreviewed
CVE-2018-7994
was published
May 13, 2022
There is a memory leak triggered in the function dcinit of util/decompile.c in libming 0.4.8,...
High
Unreviewed
CVE-2018-7869
was published
May 13, 2022
A remote attacker via undisclosed measures, may be able to exploit an F5 BIG-IP APM 13.0.0-13.1.0...
High
Unreviewed
CVE-2018-5536
was published
May 13, 2022
On BIG-IP 13.1.0-13.1.0.7, a remote attacker using undisclosed methods against virtual servers...
High
Unreviewed
CVE-2018-5527
was published
May 13, 2022
Missing Release of Resource after Effective Lifetime in Jenkins
High
CVE-2018-1999043
was published
for
org.jenkins-ci.main:jenkins-core
(Maven)
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API