GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,354
Erlang
31
GitHub Actions
22
Go
2,120
Maven
5,000+
npm
3,779
NuGet
681
pip
3,460
Pub
12
RubyGems
892
Rust
888
Swift
38
Unreviewed advisories
All unreviewed
5,000+
844 advisories
Filter by severity
Adobe Acrobat Reader versions 22.001.20142 (and earlier), 20.005.30334 (and earlier) and 17.012...
Moderate
Unreviewed
CVE-2022-34232
was published
Jul 16, 2022
Adobe Acrobat Reader versions 22.001.20142 (and earlier), 20.005.30334 (and earlier) and 17.012...
Moderate
Unreviewed
CVE-2022-34233
was published
Jul 16, 2022
In various functions of C2DmaBufAllocator.cpp, there is a possible memory corruption due to a use...
Moderate
Unreviewed
CVE-2022-20228
was published
Jul 14, 2022
The cmd_info function in libr/core/cmd_info.c in radare2 1.5.0 allows remote attackers to cause a...
Moderate
Unreviewed
CVE-2017-9762
was published
May 17, 2022
Adobe Acrobat Reader versions 22.001.20142 (and earlier), 20.005.30334 (and earlier) and 17.012...
Moderate
Unreviewed
CVE-2022-34234
was published
Jul 16, 2022
The get_relocs_64 function in libr/bin/format/mach0/mach0.c in radare2 1.3.0 allows remote...
Moderate
Unreviewed
CVE-2017-7946
was published
May 17, 2022
The r_config_set function in libr/config/config.c in radare2 1.5.0 allows remote attackers to...
Moderate
Unreviewed
CVE-2017-9520
was published
May 17, 2022
Nginx NJS v0.7.2 was discovered to contain a segmentation violation in the function...
Moderate
Unreviewed
CVE-2022-31306
was published
Jun 22, 2022
Nginx NJS v0.7.2 was discovered to contain a segmentation violation in the function...
Moderate
Unreviewed
CVE-2022-32414
was published
Jun 22, 2022
In Long Range Zip (aka lrzip) 0.631, there is a use-after-free in read_stream in stream.c,...
Moderate
Unreviewed
CVE-2018-11496
was published
May 13, 2022
Use-after-free vulnerability in libiberty allows remote attackers to cause a denial of service ...
Moderate
Unreviewed
CVE-2016-4487
was published
May 17, 2022
Use-after-free vulnerability in libiberty allows remote attackers to cause a denial of service ...
Moderate
Unreviewed
CVE-2016-4488
was published
May 17, 2022
There is an invalid free in the Action::TaskFactory::cleanup function of actions.cpp in Exiv2 0...
Moderate
Unreviewed
CVE-2017-11337
was published
May 17, 2022
In TBD of TBD, there is a possible use after free bug. This could lead to local escalation of...
Moderate
Unreviewed
CVE-2022-20185
was published
Jun 16, 2022
Nginx NJS v0.7.2 was discovered to contain a segmentation violation in the function...
Moderate
Unreviewed
CVE-2022-31307
was published
Jun 22, 2022
In Long Range Zip (aka lrzip) 0.631, there is a use-after-free in the ucompthread function ...
Moderate
Unreviewed
CVE-2018-5747
was published
May 13, 2022
Temporary disruption of the ADM license service. The impact of this includes preventing new...
Moderate
Unreviewed
CVE-2022-27512
was published
Jun 17, 2022
In Wireshark 2.2.0 to 2.2.1 and 2.0.0 to 2.0.7, the DCERPC dissector could crash with a use-after...
Moderate
Unreviewed
CVE-2016-9373
was published
May 17, 2022
A race condition in fastrpc kernel driver for dynamic process creation can lead to use after free...
Moderate
Unreviewed
CVE-2021-1958
was published
May 24, 2022
A use-after-free vulnerability was found in the am53c974 SCSI host bus adapter emulation of QEMU...
Moderate
Unreviewed
CVE-2020-35506
was published
May 24, 2022
Adobe Photoshop versions 22.5.8 (and earlier) and 23.4.2 (and earlier) are affected by a Use...
Moderate
Unreviewed
CVE-2022-38428
was published
Sep 17, 2022
In Apache HTTP Server 2.4.18-2.4.39, using fuzzed network input, the http/2 session handling...
Moderate
Unreviewed
CVE-2019-10082
was published
May 24, 2022
In PHP versions 7.2.x below 7.3.21, 7.3.x below 7.3.21 and 7.4.x below 7.4.9, while processing...
Moderate
Unreviewed
CVE-2020-7068
was published
May 24, 2022
A use-after-free vulnerability in xps_finish_image_path() in devices/vector/gdevxps.c of Artifex...
Moderate
Unreviewed
CVE-2020-16303
was published
May 24, 2022
A heap use-after-free vulnerability was found in systemd before version v245-rc1, where...
Moderate
Unreviewed
CVE-2020-1712
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API