GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,154
Erlang
30
GitHub Actions
19
Go
1,966
Maven
5,000+
npm
3,694
NuGet
653
pip
3,311
Pub
11
RubyGems
881
Rust
831
Swift
35
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
160 advisories
Filter by severity
A flaw was found in QEMU. An assertion failure was present in the usb_ep_get() function in hw/net...
Moderate
Unreviewed
CVE-2024-8354
was published
Sep 19, 2024
The ras_getcmap function in ras_dec.c in JasPer before 1.900.14 allows remote attackers to cause...
Moderate
Unreviewed
CVE-2016-9388
was published
May 14, 2022
In the Linux kernel, the following vulnerability has been resolved:
closures: Change BUG_ON() to...
Moderate
Unreviewed
CVE-2024-42252
was published
Aug 8, 2024
In the Linux kernel, the following vulnerability has been resolved:
mm: page_ref: remove...
Moderate
Unreviewed
CVE-2024-42251
was published
Aug 8, 2024
Permanent DOS when DL NAS transport receives multiple payloads such that one payload contains SOR...
Moderate
Unreviewed
CVE-2024-23350
was published
Aug 5, 2024
Jerryscript commit cefd391 was discovered to contain an Assertion Failure via...
Moderate
Unreviewed
CVE-2024-33255
was published
Apr 26, 2024
An unauthenticated user can trigger a fatal assertion in the server while generating ftdc...
Moderate
Unreviewed
CVE-2024-3374
was published
May 14, 2024
A flaw was found in libnbd, due to a malicious Network Block Device (NBD), a protocol for...
Moderate
Unreviewed
CVE-2023-5871
was published
Nov 27, 2023
A Reachable Assertion vulnerability in Routing Protocol Daemon (RPD) of Juniper Networks Junos OS...
Moderate
Unreviewed
CVE-2023-36840
was published
Jul 14, 2023
A flaw was found in QEMU. An assertion failure was present in the update_sctp_checksum() function...
Moderate
Unreviewed
CVE-2024-3567
was published
Apr 10, 2024
An issue was discovered in Poppler 22.08.0. There is a reachable assertion in Object.h, will lead...
Moderate
Unreviewed
CVE-2022-38349
was published
Aug 22, 2023
A reachable Object::getString assertion in Poppler 22.07.0 allows attackers to cause a denial of...
Moderate
Unreviewed
CVE-2022-37052
was published
Aug 22, 2023
Reachable Assertion vulnerability in upx before 4.0.0 allows attackers to cause a denial of...
Moderate
Unreviewed
CVE-2021-46179
was published
Aug 22, 2023
An issue was discovered in Binutils readelf 2.38.50, reachable assertion failure in function...
Moderate
Unreviewed
CVE-2022-35205
was published
Aug 22, 2023
Redis before 6cbea7d allows a replica to cause an assertion failure in a primary server by...
Moderate
Unreviewed
CVE-2021-31294
was published
Jul 16, 2023
libjpeg commit db33a6e was discovered to contain a reachable assertion via BitMapHook::BitMapHook...
Moderate
Unreviewed
CVE-2023-37836
was published
Jul 14, 2023
Jerryscript 3.0 (commit 05dbbd1) was discovered to contain an Assertion Failure via the vm_loop...
Moderate
Unreviewed
CVE-2023-31920
was published
May 12, 2023
Jerryscript 3.0 (commit 05dbbd1) was discovered to contain an Assertion Failure via the...
Moderate
Unreviewed
CVE-2023-31921
was published
May 12, 2023
Jerryscript 3.0 (commit 1a2c047) was discovered to contain an Assertion Failure via the...
Moderate
Unreviewed
CVE-2023-31916
was published
May 12, 2023
Jerryscript 3.0 (commit 05dbbd1) was discovered to contain an Assertion Failure via the...
Moderate
Unreviewed
CVE-2023-31919
was published
May 12, 2023
Jerryscript 3.0 (commit 1a2c047) was discovered to contain an Assertion Failure via the...
Moderate
Unreviewed
CVE-2023-31918
was published
May 12, 2023
Jerryscript 3.0 *commit 1a2c047) was discovered to contain an Assertion Failure via the component...
Moderate
Unreviewed
CVE-2023-31913
was published
May 12, 2023
llvm-project commit a0138390 was discovered to contain an assertion failure at !replacements...
Moderate
Unreviewed
CVE-2023-29935
was published
May 5, 2023
In BIND 9.0.0 -> 9.11.21, 9.12.0 -> 9.16.5, 9.17.0 -> 9.17.3, also affects 9.9.3-S1 -> 9.11.21-S1...
Moderate
Unreviewed
CVE-2020-8622
was published
May 24, 2022
A packet containing a malformed DUID can cause the Kea DHCPv6 server process (kea-dhcp6) to exit...
Moderate
Unreviewed
CVE-2019-6472
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API