GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,300
Erlang
31
GitHub Actions
21
Go
2,065
Maven
5,000+
npm
3,744
NuGet
668
pip
3,427
Pub
12
RubyGems
892
Rust
877
Swift
36
Unreviewed advisories
All unreviewed
5,000+
151 advisories
Filter by severity
In ImageMagick 7.0.7-4 Q16, a memory leak vulnerability was found in the function ReadVIPSImage...
High
Unreviewed
CVE-2017-14684
was published
May 13, 2022
In Wireshark 2.4.0 to 2.4.1, the DOCSIS dissector could go into an infinite loop. This was...
High
Unreviewed
CVE-2017-15189
was published
May 13, 2022
In several places in ihevcd_decode.c, a dead loop could occur due to incomplete frames which...
High
Unreviewed
CVE-2017-13196
was published
May 13, 2022
There are memory leaks in LibSass 3.4.5 triggered by deeply nested code, such as code with a long...
High
Unreviewed
CVE-2017-12962
was published
May 13, 2022
Memory leak in dnsmasq before 2.78, when the --add-mac, --add-cpe-id or --add-subnet option is...
High
Unreviewed
CVE-2017-14495
was published
May 13, 2022
Memory leak in the ccnl_app_RX function in ccnl-uapi.c in CCN-lite before 2.00 allows context...
High
Unreviewed
CVE-2017-12463
was published
May 13, 2022
ImageMagick 7.0.6-1 has a memory leak vulnerability in ReadMPCImage in coders\mpc.c.
High
Unreviewed
CVE-2017-12642
was published
May 13, 2022
In ImageMagick 7.0.6-1, a memory leak vulnerability was found in the function ReadWMFImage in...
High
Unreviewed
CVE-2017-12428
was published
May 13, 2022
In DLSParser of the sonivox library, there is possible resource exhaustion due to a memory leak....
High
Unreviewed
CVE-2017-13234
was published
May 13, 2022
ImageMagick 7.0.6-5 has memory leaks in the parse8BIMW and format8BIM functions in coders/meta.c,...
High
Unreviewed
CVE-2017-12418
was published
May 13, 2022
Memory leak in CCN-lite before 2.00 allows context-dependent attackers to cause a denial of...
High
Unreviewed
CVE-2017-12467
was published
May 13, 2022
The read_user_chunk_callback function in coders\png.c in ImageMagick 7.0.6-1 Q16 2017-06-21 (beta...
High
Unreviewed
CVE-2017-11310
was published
May 13, 2022
The ReadTGAImage function in coders\tga.c in ImageMagick 7.0.5-6 has a memory leak vulnerability...
High
Unreviewed
CVE-2017-11170
was published
May 13, 2022
The ReadXWDImage function in coders\xwd.c in ImageMagick 7.0.5-6 has a memory leak vulnerability...
High
Unreviewed
CVE-2017-11166
was published
May 13, 2022
The ReadMATImage function in coders\mat.c in ImageMagick 7.0.5-6 has a memory leak vulnerability...
High
Unreviewed
CVE-2017-11141
was published
May 13, 2022
An FR-GV-204 issue in FreeRADIUS 2.x before 2.2.10 allows "DHCP - Memory leak in fr_dhcp_decode()...
High
Unreviewed
CVE-2017-10981
was published
May 13, 2022
An FR-GV-203 issue in FreeRADIUS 2.x before 2.2.10 allows "DHCP - Memory leak in decode_tlv()"...
High
Unreviewed
CVE-2017-10980
was published
May 13, 2022
A vulnerability in the Android media framework (n/a). Product: Android. Versions: 7.0, 7.1.1, 7.1...
High
Unreviewed
CVE-2017-0818
was published
May 13, 2022
A remote code execution vulnerability in the Android media framework (mpeg2 decoder). Product:...
High
Unreviewed
CVE-2017-0719
was published
May 13, 2022
A memory leak in glibc 2.1.1 (released on May 24, 1999) can be reached and amplified through the...
High
Unreviewed
CVE-2017-1000408
was published
May 13, 2022
A denial of service vulnerability in the Android media framework (libstagefright). Product:...
High
Unreviewed
CVE-2017-0813
was published
May 13, 2022
In MPEG4Extractor.cpp, there are several places where functions return early without cleaning up...
High
Unreviewed
CVE-2017-0855
was published
May 13, 2022
A vulnerability in SSL traffic decryption for Cisco Firepower Threat Defense (FTD) Software could...
High
Unreviewed
CVE-2017-12245
was published
May 13, 2022
A flaw was found in dovecot 2.0 up to 2.2.33 and 2.3.0. An abort of SASL authentication results...
High
Unreviewed
CVE-2017-15132
was published
May 13, 2022
A vulnerability in the Internet Group Management Protocol (IGMP) packet-processing functionality...
High
Unreviewed
CVE-2018-0165
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API