GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,189
Erlang
31
GitHub Actions
19
Go
1,985
Maven
5,000+
npm
3,701
NuGet
657
pip
3,326
Pub
11
RubyGems
882
Rust
836
Swift
35
Unreviewed advisories
All unreviewed
5,000+
274 advisories
Filter by severity
In an MPLS P2MP environment a Loop with Unreachable Exit Condition vulnerability in the routing...
Moderate
Unreviewed
CVE-2021-31363
was published
May 24, 2022
Irfanview 4.57 is affected by an infinite loop when processing a crafted BMP file in the EFFECTS...
Moderate
Unreviewed
CVE-2021-29365
was published
May 24, 2022
An issue was discovered in Zammad before 4.1.1. An attacker with valid agent credentials may send...
Moderate
Unreviewed
CVE-2021-42084
was published
May 24, 2022
A lack of CPU resource in the Linux kernel tracing module functionality in versions prior to 5.14...
Moderate
Unreviewed
CVE-2021-3679
was published
May 24, 2022
A vulnerability affecting F-Secure Antivirus engine was discovered whereby scanning WIM archive...
Moderate
Unreviewed
CVE-2021-33599
was published
May 24, 2022
A vulnerability has been identified in JT2Go (All versions < V13.2), Teamcenter Visualization ...
Moderate
Unreviewed
CVE-2021-34332
was published
May 24, 2022
Infinite Loop in zziplib v0.13.69 allows remote attackers to cause a denial of service via the...
Moderate
Unreviewed
CVE-2020-18442
was published
May 24, 2022
Hirschmann OS2, RSP, and RSPE devices before HiOS 08.3.00 allow a denial of service. An...
Moderate
Unreviewed
CVE-2020-9307
was published
May 24, 2022
In an EVPN/VXLAN scenario, if an IRB interface with a virtual gateway address (VGA) is configured...
Moderate
Unreviewed
CVE-2021-0221
was published
May 24, 2022
A flaw was found in PDFResurrect in version 0.22b. There is an infinite loop in...
Moderate
Unreviewed
CVE-2021-3508
was published
May 24, 2022
wolfSSL through 5.0.0 allows an attacker to cause a denial of service and infinite loop in the...
Moderate
Unreviewed
CVE-2021-44718
was published
Sep 3, 2022
An issue was discovered in the Linux kernel before 5.8. arch/x86/kvm/svm/svm.c allows a...
Moderate
Unreviewed
CVE-2020-36310
was published
May 24, 2022
Modem will enter into busy mode in an infinite loop while parsing histogram dimension due to...
Moderate
Unreviewed
CVE-2020-11186
was published
May 24, 2022
A vulnerability has been identified in SIMATIC S7-PLCSIM V5.4 (All versions). An attacker with...
Moderate
Unreviewed
CVE-2021-25673
was published
May 24, 2022
GNOME gdk-pixbuf (aka GdkPixbuf) before 2.42.2 allows a denial of service (infinite loop) in lzw...
Moderate
Unreviewed
CVE-2020-29385
was published
May 24, 2022
An Ubuntu-specific modification to AccountsService in versions before 0.6.55-0ubuntu13.2, among...
Moderate
Unreviewed
CVE-2020-16127
was published
May 24, 2022
An issue was discovered in ioapic_lazy_update_eoi in arch/x86/kvm/ioapic.c in the Linux kernel...
Moderate
Unreviewed
CVE-2020-27152
was published
May 24, 2022
In Threshold::getHistogram of ImageProcessHelper.java, there is a possible crash loop due to an...
Moderate
Unreviewed
CVE-2020-0247
was published
May 24, 2022
In Wireshark 3.2.0 to 3.2.4, the GVCP dissector could go into an infinite loop. This was...
Moderate
Unreviewed
CVE-2020-15466
was published
May 24, 2022
In Exiv2 0.26, Exiv2::PsdImage::readMetadata in psdimage.cpp in the PSD image reader may suffer...
Moderate
Unreviewed
CVE-2018-19108
was published
May 13, 2022
An issue was discovered in LibVNCServer before 0.9.13. An improperly closed TCP connection causes...
Moderate
Unreviewed
CVE-2020-14398
was published
May 24, 2022
ati-vga in hw/display/ati.c in QEMU 4.2.0 allows guest OS users to trigger infinite recursion via...
Moderate
Unreviewed
CVE-2020-13800
was published
May 24, 2022
Unbound before 1.10.1 has an infinite loop via malformed DNS answers received from upstream servers.
Moderate
Unreviewed
CVE-2020-12663
was published
May 24, 2022
In a Point-to-Multipoint (P2MP) Label Switched Path (LSP) scenario, an uncontrolled resource...
Moderate
Unreviewed
CVE-2020-1600
was published
May 24, 2022
An exploitable denial-of-service vulnerability exists in the Dicom-packet parsing functionality...
Moderate
Unreviewed
CVE-2019-5091
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API