GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,224
Erlang
31
GitHub Actions
19
Go
1,990
Maven
5,000+
npm
3,706
NuGet
661
pip
3,336
Pub
11
RubyGems
884
Rust
845
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
33 advisories
Filter by severity
An issue was discovered in the Linux kernel before 5.11.8. kernel/bpf/verifier.c has an off-by...
Moderate
Unreviewed
CVE-2020-27171
was published
May 24, 2022
Off-by-one error in the PDF functionality in Google Chrome before 25.0.1364.97 on Windows and...
Moderate
Unreviewed
CVE-2013-0897
was published
May 14, 2022
An issue was discovered in OpenEXR before 2.4.1. There is an off-by-one error in use of the...
Moderate
Unreviewed
CVE-2020-11765
was published
May 24, 2022
An off-by-one error in the DecodeBlock function in codec/sdl_image.c in VideoLAN VLC media player...
Moderate
Unreviewed
CVE-2019-19721
was published
May 24, 2022
Off-by-one error in the iov_iter_advance function in mm/filemap.c in the Linux kernel before 2.6...
Moderate
Unreviewed
CVE-2008-3535
was published
May 2, 2022
Multiple off-by-one errors in libpng before 1.2.32beta01, and 1.4 before 1.4.0beta34, allow...
Moderate
Unreviewed
CVE-2008-3964
was published
May 2, 2022
Off-by-one error in the GpFont::SetData function in gdiplus.dll in Microsoft GDI+ on Windows XP...
Moderate
Unreviewed
CVE-2009-1217
was published
May 2, 2022
An issue was discovered in mspack/chmd.c in libmspack before 0.7alpha. There is an off-by-one...
Moderate
Unreviewed
CVE-2018-14679
was published
May 13, 2022
QEMU (aka Quick Emulator) built with the Rocker switch emulation support is vulnerable to an off...
Moderate
Unreviewed
CVE-2015-8701
was published
May 13, 2022
A vulnerability has been identified in JT2Go (All versions < V13.2.0.5), Teamcenter Visualization...
Moderate
Unreviewed
CVE-2021-44007
was published
Dec 15, 2021
Off-by-one error in Google V8, as used in Google Chrome before 14.0.835.163, allows remote...
Moderate
Unreviewed
CVE-2011-2852
was published
May 13, 2022
axTLS version 1.5.3 has a coding error in the ASN.1 parser resulting in the year (19)50 of...
Moderate
Unreviewed
CVE-2017-1000416
was published
May 13, 2022
An off-by-one error was found in the SCSI device emulation in QEMU. It could occur while...
Moderate
Unreviewed
CVE-2021-3930
was published
Feb 19, 2022
An Off-by-one Error occurs in cmr113_decode of rtl_433 21.12 when decoding a crafted file.
Moderate
Unreviewed
CVE-2022-25051
was published
Mar 3, 2022
Multiple off-by-one errors in the ext4 subsystem in the Linux kernel before 3.0-rc5 allow local...
Moderate
Unreviewed
CVE-2011-2695
was published
May 13, 2022
A flaw was found in the Linux kernel's handling of clearing SELinux attributes on /proc/pid/attr...
Moderate
Unreviewed
CVE-2017-2618
was published
May 13, 2022
Off-by-one error in the pci_read function in the ACPI PCI hotplug interface (hw/acpi/pcihp.c) in...
Moderate
Unreviewed
CVE-2014-5388
was published
May 13, 2022
Off-by-one error in the mod_ssl Certificate Revocation List (CRL) verification callback in Apache...
Moderate
Unreviewed
CVE-2005-1268
was published
May 1, 2022
Off-by-one Error in GitHub repository gpac/gpac prior to v2.3.0-DEV.
Moderate
Unreviewed
CVE-2023-0818
was published
Feb 14, 2023
A heap out-of-bounds read vulnerability exists in the RLA format parser of OpenImageIO master...
Moderate
Unreviewed
CVE-2022-36354
was published
Dec 23, 2022
An off-by-one Error issue was discovered in Systemd in format_timespan() function of time-util.c....
Moderate
Unreviewed
CVE-2022-3821
was published
Nov 9, 2022
Off-by-one error in the PyLocale_strxfrm function in Modules/_localemodule.c for Python 2.4 and 2...
Moderate
Unreviewed
CVE-2007-2052
was published
May 1, 2022
A vulnerability has been identified in Nucleus 4 (All versions < V4.1.0), Nucleus NET (All...
Moderate
Unreviewed
CVE-2020-27736
was published
May 24, 2022
Off-by-one error in the convert_query_hexchar function in html.c in cgit.cgi in cgit before 0.8.3...
Moderate
Unreviewed
CVE-2011-1027
was published
May 17, 2022
Windows Kernel Denial of Service Vulnerability.
Moderate
Unreviewed
CVE-2022-30155
was published
Jun 16, 2022
ProTip!
Advisories are also available from the
GraphQL API