GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,361
Erlang
33
GitHub Actions
22
Go
2,127
Maven
5,000+
npm
3,794
NuGet
685
pip
3,473
Pub
12
RubyGems
895
Rust
894
Swift
38
Unreviewed advisories
All unreviewed
5,000+
88 advisories
Filter by severity
Double free vulnerability in the _zip_dirent_read function in zip_dirent.c in libzip allows...
Critical
Unreviewed
CVE-2017-12858
was published
May 17, 2022
Creolabs Gravity version 1.0 is vulnerable to a Double Free in gravity_value resulting...
Critical
Unreviewed
CVE-2017-1000072
was published
May 17, 2022
Multiple use-after-free and double-free vulnerabilities in gifcolor.c in GIFLIB 5.1.2 have...
Critical
Unreviewed
CVE-2016-3177
was published
May 17, 2022
Double free vulnerability in the SplDoublyLinkedList::offsetSet function in ext/spl/spl_dllist.c...
Critical
Unreviewed
CVE-2016-3132
was published
May 17, 2022
Adobe Acrobat and Reader versions 2019.010.20100 and earlier, 2019.010.20099 and earlier, 2017...
Critical
Unreviewed
CVE-2019-7784
was published
May 24, 2022
Adobe Acrobat and Reader versions 2019.010.20069 and earlier, 2019.010.20069 and earlier, 2017...
Critical
Unreviewed
CVE-2019-7080
was published
May 24, 2022
An issue was discovered in zlib_decompress_extra in modules/demux/mkv/util.cpp in VideoLAN VLC...
Critical
Unreviewed
CVE-2019-12874
was published
May 24, 2022
In the Linux kernel before 4.16.4, a double free vulnerability in the f_midi_set_alt function of...
Critical
Unreviewed
CVE-2018-20961
was published
May 24, 2022
Adobe Acrobat and Reader versions, 2019.012.20035 and earlier, 2019.012.20035 and earlier, 2017...
Critical
Unreviewed
CVE-2019-8044
was published
May 24, 2022
drivers/net/wireless/rsi/rsi_91x_usb.c in the Linux kernel through 5.2.9 has a Double Free via...
Critical
Unreviewed
CVE-2019-15504
was published
May 24, 2022
ssh-agent in OpenSSH before 8.5 has a double free that may be relevant in a few less-common...
Critical
Unreviewed
CVE-2021-28041
was published
May 24, 2022
move_elements can double-free objects on panic
Critical
CVE-2021-28031
was published
for
scratchpad
(Rust)
May 24, 2022
In sdp_copy_raw_data of sdp_discovery.cc, there is a possible system compromise due to a double...
Critical
Unreviewed
CVE-2021-0397
was published
May 24, 2022
In the standard library in Rust before 1.49.0, VecDeque::make_contiguous has a bug that pops the...
Critical
Unreviewed
CVE-2020-36318
was published
May 24, 2022
In the standard library in Rust before 1.53.0, a double free can occur in the Vec::from_iter...
Critical
Unreviewed
CVE-2021-31162
was published
May 24, 2022
Double free in video due to lack of input buffer length check in Snapdragon Auto, Snapdragon...
Critical
Unreviewed
CVE-2021-1910
was published
May 24, 2022
Miniaudio 0.10.35 has a Double free vulnerability that could cause a buffer overflow in...
Critical
Unreviewed
CVE-2021-34184
was published
May 24, 2022
Fluent Bit (aka fluent-bit) 1.7.0 through 1.7,4 has a double free in flb_free (called from...
Critical
Unreviewed
CVE-2021-36088
was published
May 24, 2022
When sending data to an MQTT server, libcurl <= 7.73.0 and 7.78.0 could in some circumstances...
Critical
Unreviewed
CVE-2021-22945
was published
May 24, 2022
Double-free vulnerability in the FTP-kerberos code in cURL 7.52.0 to 7.65.3.
Critical
Unreviewed
CVE-2019-5481
was published
May 24, 2022
Memory corruption in video due to double free while parsing 3gp clip with invalid meta data atoms...
Critical
Unreviewed
CVE-2022-22086
was published
Jun 15, 2022
A double free issue was discovered in radare2 in cmd_info.c:cmd_info(). Successful exploitation...
Critical
Unreviewed
CVE-2020-27794
was published
Aug 20, 2022
Jsonxx or Json++ is a JSON parser, writer and reader written in C++. In affected versions of...
Critical
Unreviewed
CVE-2022-23459
was published
Aug 20, 2022
Memory corruption in video driver due to double free while parsing ASF clip in Snapdragon Auto,...
Critical
Unreviewed
CVE-2022-25668
was published
Sep 3, 2022
Double free vulnerability in the storage module. Successful exploitation of this vulnerability...
Critical
Unreviewed
CVE-2022-39002
was published
Sep 17, 2022
ProTip!
Advisories are also available from the
GraphQL API