GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,274
Erlang
31
GitHub Actions
21
Go
2,056
Maven
5,000+
npm
3,740
NuGet
668
pip
3,419
Pub
12
RubyGems
891
Rust
872
Swift
36
Unreviewed advisories
All unreviewed
5,000+
238 advisories
Filter by severity
A vulnerability found in jasper. This security vulnerability happens because of a memory leak bug...
High
Unreviewed
CVE-2022-2963
was published
Oct 14, 2022
A vulnerability has been identified in Nucleus NET (All versions), Nucleus ReadyStart V3 (All...
High
Unreviewed
CVE-2022-38371
was published
Oct 11, 2022
A resource leak in gw_backend.c in lighttpd 1.4.56 through 1.4.66 could lead to a denial of...
High
Unreviewed
CVE-2022-41556
was published
Oct 6, 2022
An attacker can leverage this flaw to gradually erode available memory to the point where named...
High
Unreviewed
CVE-2022-2906
was published
Sep 22, 2022
The MPTCP module has the memory leak vulnerability. Successful exploitation of this vulnerability...
High
Unreviewed
CVE-2022-39004
was published
Sep 17, 2022
The MPTCP module has the memory leak vulnerability. Successful exploitation of this vulnerability...
High
Unreviewed
CVE-2022-39005
was published
Sep 17, 2022
An issue was discovered in Samsung TizenRT through 3.0_GBM (and 3.1_PRE). cyassl_connect_step2 in...
High
Unreviewed
CVE-2022-40281
was published
Sep 9, 2022
Potential memory leak in modem during the processing of NSA RRC Reconfiguration with invalid...
High
Unreviewed
CVE-2022-22067
was published
Sep 3, 2022
There are two Information Disclosure vulnerabilities in colord, and they lie in colord/src/cd...
High
Unreviewed
CVE-2021-42523
was published
Aug 26, 2022
There is a Information Disclosure vulnerability in anjuta/plugins/document-manager/anjuta...
High
Unreviewed
CVE-2021-42522
was published
Aug 26, 2022
A flaw was found in JSS, where it did not properly free up all memory. Over time, the wasted...
High
Unreviewed
CVE-2021-4213
was published
Aug 25, 2022
A memory leak was found in Open vSwitch (OVS) during userspace IP fragmentation processing. An...
High
Unreviewed
CVE-2021-3905
was published
Aug 24, 2022
The th_read() function doesn’t free a variable t->th_buf.gnu_longlink after allocating memory,...
High
Unreviewed
CVE-2021-33645
was published
Aug 11, 2022
The th_read() function doesn’t free a variable t->th_buf.gnu_longname after allocating memory,...
High
Unreviewed
CVE-2021-33646
was published
Aug 11, 2022
The TEE_PopulateTransientObject and __utee_from_attr functions in Samsung mTower 0.3.0 allow a...
High
Unreviewed
CVE-2022-35858
was published
Aug 5, 2022
SDL v1.2 was discovered to contain a use-after-free via the XFree function at /src/video/x11...
High
Unreviewed
CVE-2022-34568
was published
Jul 29, 2022
A memory leak flaw was found in the Linux kernel in acrn_dev_ioctl in the drivers/virt/acrn/hsm.c...
High
Unreviewed
CVE-2022-1651
was published
Jul 27, 2022
A Missing Release of Memory after Effective Lifetime vulnerability in the kernel of Juniper...
High
Unreviewed
CVE-2022-22209
was published
Jul 21, 2022
A Missing Release of Memory after Effective Lifetime vulnerability in the Application Quality of...
High
Unreviewed
CVE-2022-22205
was published
Jul 21, 2022
Undertow vulnerable to memory exhaustion due to buffer leak
High
CVE-2021-3690
was published
for
io.undertow:undertow-core
(Maven)
Jul 15, 2022
DCMTK through 3.6.6 does not handle memory free properly. The program malloc a heap memory for...
High
Unreviewed
CVE-2021-41687
was published
Jun 29, 2022
DCMTK through 3.6.6 does not handle memory free properly. The malloced memory for storing all...
High
Unreviewed
CVE-2021-41690
was published
Jun 29, 2022
Redis v7.0 was discovered to contain a memory leak via the component streamGetEdgeID.
High
Unreviewed
CVE-2022-33105
was published
Jun 24, 2022
Memory leaks in LazyPRM.cpp of OMPL v1.5.0 can cause unexpected behavior.
High
Unreviewed
CVE-2021-41490
was published
Jun 18, 2022
A memory leak (out-of-memory) in gif2rgb in util/gif2rgb.c in giflib 5.1.4 allows remote...
High
Unreviewed
CVE-2021-40633
was published
Jun 15, 2022
ProTip!
Advisories are also available from the
GraphQL API