An open API service providing security vulnerability metadata for many open source software ecosystems.

Browse Security Advisories

Low
1 day ago

ImageMagick BlobStream Forward-Seek Under-Allocation GSA_kwCzR0hTQS0yM2hnLTUzcTYtaHFmZ84ABLxJ

nuget Magick.NET-Q16-HDRI-arm64, Magick.NET-Q16-HDRI-OpenMP-arm64, Magick.NET-Q8-OpenMP-arm64, Magick.NET-Q16-OpenMP-arm64, Magick.NET-Q16-arm64, Magick.NET-Q8-arm64, Magick.NET-Q16-OpenMP-x64, Magick.NET-Q16-HDRI-OpenMP-x64, Magick.NET-Q8-OpenMP-x64, Magick.NET-Q16-HDRI-x64, Magick.NET-Q8-x64, Magick.NET-Q16-x64
High
12 days ago

ImageMagick has a Format String Bug in InterpretImageFilename leads to arbitrary code execution GSA_kwCzR0hTQS05Y2NnLTZwancteDY0Nc4ABLbl

nuget Magick.NET-Q8-x86, Magick.NET-Q8-x64, Magick.NET-Q8-arm64, Magick.NET-Q8-OpenMP-x64, Magick.NET-Q8-OpenMP-arm64, Magick.NET-Q8-AnyCPU, Magick.NET-Q16-x86, Magick.NET-Q16-x64, Magick.NET-Q16-arm64, Magick.NET-Q16-OpenMP-x64, Magick.NET-Q16-OpenMP-arm64, Magick.NET-Q16-HDRI-x86, Magick.NET-Q16-HDRI-x64, Magick.NET-Q16-HDRI-arm64, Magick.NET-Q16-HDRI-OpenMP-x64, Magick.NET-Q16-HDRI-OpenMP-arm64, Magick.NET-Q16-HDRI-AnyCPU, Magick.NET-Q16-AnyCPU
Low
12 days ago

ImageMagick affected by divide-by-zero in ThumbnailImage via montage -geometry ":" leads to crash GSA_kwCzR0hTQS1maDU1LXE1cGotcHhnd84ABLbk

nuget Magick.NET-Q8-x86, Magick.NET-Q8-x64, Magick.NET-Q8-arm64, Magick.NET-Q8-OpenMP-x64, Magick.NET-Q8-OpenMP-arm64, Magick.NET-Q8-AnyCPU, Magick.NET-Q16-x86, Magick.NET-Q16-x64, Magick.NET-Q16-arm64, Magick.NET-Q16-OpenMP-x64, Magick.NET-Q16-OpenMP-arm64, Magick.NET-Q16-HDRI-x86, Magick.NET-Q16-HDRI-x64, Magick.NET-Q16-HDRI-arm64, Magick.NET-Q16-HDRI-OpenMP-x64, Magick.NET-Q16-HDRI-OpenMP-arm64, Magick.NET-Q16-HDRI-AnyCPU, Magick.NET-Q16-AnyCPU
Moderate
12 days ago

ImageMagick has Undefined Behavior (function-type-mismatch) in CloneSplayTree GSA_kwCzR0hTQS02aGd3LTZ4ODctNTc4eM4ABLZ9

nuget Magick.NET-Q8-x86, Magick.NET-Q8-x64, Magick.NET-Q8-arm64, Magick.NET-Q8-OpenMP-x64, Magick.NET-Q8-OpenMP-arm64, Magick.NET-Q8-AnyCPU, Magick.NET-Q16-x86, Magick.NET-Q16-x64, Magick.NET-Q16-arm64, Magick.NET-Q16-OpenMP-x64, Magick.NET-Q16-OpenMP-arm64, Magick.NET-Q16-HDRI-x86, Magick.NET-Q16-HDRI-x64, Magick.NET-Q16-HDRI-arm64, Magick.NET-Q16-HDRI-OpenMP-x64, Magick.NET-Q16-HDRI-OpenMP-arm64, Magick.NET-Q16-HDRI-AnyCPU, Magick.NET-Q16-AnyCPU
High
12 days ago

imagemagick: integer overflows in MNG magnification GSA_kwCzR0hTQS1xcDI5LXd4cDUtd2g4Ms4ABLZ8

nuget Magick.NET-Q16-AnyCPU, Magick.NET-Q16-HDRI-AnyCPU, Magick.NET-Q16-HDRI-OpenMP-arm64, Magick.NET-Q16-HDRI-OpenMP-x64, Magick.NET-Q16-HDRI-arm64, Magick.NET-Q16-HDRI-x64, Magick.NET-Q16-HDRI-x86, Magick.NET-Q16-OpenMP-arm64, Magick.NET-Q16-OpenMP-x64, Magick.NET-Q16-arm64, Magick.NET-Q16-x64, Magick.NET-Q16-x86, Magick.NET-Q8-AnyCPU, Magick.NET-Q8-OpenMP-arm64, Magick.NET-Q8-OpenMP-x64, Magick.NET-Q8-arm64, Magick.NET-Q8-x64, Magick.NET-Q8-x86
High
13 days ago

imagemagick: heap-buffer overflow read in MNG magnification with alpha GSA_kwCzR0hTQS1jamM4LWc5dzgtY2hmd84ABLZ6

nuget Magick.NET-Q8-x86, Magick.NET-Q8-x64, Magick.NET-Q8-arm64, Magick.NET-Q8-OpenMP-x64, Magick.NET-Q8-OpenMP-arm64, Magick.NET-Q8-AnyCPU, Magick.NET-Q16-x86, Magick.NET-Q16-x64, Magick.NET-Q16-arm64, Magick.NET-Q16-OpenMP-x64, Magick.NET-Q16-OpenMP-arm64, Magick.NET-Q16-HDRI-x86, Magick.NET-Q16-HDRI-x64, Magick.NET-Q16-HDRI-arm64, Magick.NET-Q16-HDRI-OpenMP-x64, Magick.NET-Q16-HDRI-OpenMP-arm64, Magick.NET-Q16-HDRI-AnyCPU, Magick.NET-Q16-AnyCPU
Low
13 days ago

ImageMagick has a heap-buffer-overflow GSA_kwCzR0hTQS1mZmYzLTRycDctcHg5N84ABLZ5

nuget Magick.NET-Q8-x86, Magick.NET-Q8-x64, Magick.NET-Q8-arm64, Magick.NET-Q8-OpenMP-x64, Magick.NET-Q8-OpenMP-arm64, Magick.NET-Q8-AnyCPU, Magick.NET-Q16-x86, Magick.NET-Q16-x64, Magick.NET-Q16-arm64, Magick.NET-Q16-OpenMP-x64, Magick.NET-Q16-OpenMP-arm64, Magick.NET-Q16-HDRI-x86, Magick.NET-Q16-HDRI-x64, Magick.NET-Q16-HDRI-arm64, Magick.NET-Q16-HDRI-OpenMP-x64, Magick.NET-Q16-HDRI-OpenMP-arm64, Magick.NET-Q16-HDRI-AnyCPU, Magick.NET-Q16-AnyCPU
Low
13 days ago

ImageMagick has a Memory Leak in magick stream GSA_kwCzR0hTQS1jZmg0LTlmN3YtZmhyY84ABLZ4

nuget Magick.NET-Q8-x86, Magick.NET-Q8-x64, Magick.NET-Q8-arm64, Magick.NET-Q8-OpenMP-x64, Magick.NET-Q8-OpenMP-arm64, Magick.NET-Q8-AnyCPU, Magick.NET-Q16-x86, Magick.NET-Q16-x64, Magick.NET-Q16-arm64, Magick.NET-Q16-OpenMP-x64, Magick.NET-Q16-OpenMP-arm64, Magick.NET-Q16-HDRI-x86, Magick.NET-Q16-HDRI-x64, Magick.NET-Q16-HDRI-arm64, Magick.NET-Q16-HDRI-OpenMP-x64, Magick.NET-Q16-HDRI-OpenMP-arm64, Magick.NET-Q16-HDRI-AnyCPU, Magick.NET-Q16-AnyCPU
Low
13 days ago

ImageMagick has a Heap Buffer Overflow in InterpretImageFilename GSA_kwCzR0hTQS1obTR4LXI1aGMtNzk0Zs4ABLZ3

nuget Magick.NET-Q8-x86, Magick.NET-Q8-x64, Magick.NET-Q8-arm64, Magick.NET-Q8-OpenMP-x64, Magick.NET-Q8-OpenMP-arm64, Magick.NET-Q8-AnyCPU, Magick.NET-Q16-x86, Magick.NET-Q16-x64, Magick.NET-Q16-arm64, Magick.NET-Q16-OpenMP-x64, Magick.NET-Q16-OpenMP-arm64, Magick.NET-Q16-HDRI-x86, Magick.NET-Q16-HDRI-x64, Magick.NET-Q16-HDRI-arm64, Magick.NET-Q16-HDRI-OpenMP-x64, Magick.NET-Q16-HDRI-OpenMP-arm64, Magick.NET-Q16-HDRI-AnyCPU, Magick.NET-Q16-AnyCPU
High
13 days ago

ImageMagick has a Stack Buffer Overflow in image.c GSA_kwCzR0hTQS1xaDNoLWo1NDUtaDhjOc4ABLZ2

nuget Magick.NET-Q8-x86, Magick.NET-Q8-x64, Magick.NET-Q8-arm64, Magick.NET-Q8-OpenMP-x64, Magick.NET-Q8-OpenMP-arm64, Magick.NET-Q8-AnyCPU, Magick.NET-Q16-x86, Magick.NET-Q16-x64, Magick.NET-Q16-arm64, Magick.NET-Q16-OpenMP-x64, Magick.NET-Q16-OpenMP-arm64, Magick.NET-Q16-HDRI-x86, Magick.NET-Q16-HDRI-x64, Magick.NET-Q16-HDRI-arm64, Magick.NET-Q16-HDRI-OpenMP-x64, Magick.NET-Q16-HDRI-OpenMP-arm64, Magick.NET-Q16-HDRI-AnyCPU, Magick.NET-Q16-AnyCPU
High
about 2 months ago

ImageMagick has XMP profile write that triggers hang due to unbounded loop GSA_kwCzR0hTQS12bWhoLThyeHEtZnA5Z84ABKdQ

nuget Magick.NET-Q16-HDRI-OpenMP-arm64, Magick.NET-Q16-HDRI-OpenMP-x64, Magick.NET-Q16-HDRI-x86, Magick.NET-Q16-HDRI-arm64, Magick.NET-Q16-HDRI-x64, Magick.NET-Q16-OpenMP-x86, Magick.NET-Q16-OpenMP-arm64, Magick.NET-Q16-OpenMP-x64, Magick.NET-Q16-x86, Magick.NET-Q16-arm64, Magick.NET-Q16-x64, Magick.NET-Q8-OpenMP-arm64, Magick.NET-Q8-OpenMP-x64, Magick.NET-Q8-x86, Magick.NET-Q8-arm64, Magick.NET-Q8-x64, Magick.NET-Q16-HDRI-AnyCPU, Magick.NET-Q16-AnyCPU, Magick.NET-Q8-AnyCPU

Filter by Severity

Filter by Ecosystem

Filter by Package

Microsoft.ChakraCore 247 Microsoft.AspNetCore.App.Runtime.win-x64 22 Microsoft.AspNetCore.App.Runtime.win-x86 22 DotNetNuke.Core 22 Microsoft.AspNetCore.App.Runtime.win-arm 21 Microsoft.AspNetCore.App.Runtime.linux-arm 19 Microsoft.AspNetCore.App.Runtime.win-arm64 19 Microsoft.AspNetCore.App.Runtime.linux-musl-x64 19 Microsoft.AspNetCore.App.Runtime.linux-x64 19 Microsoft.AspNetCore.App.Runtime.osx-x64 19 Microsoft.AspNetCore.App.Runtime.linux-arm64 19 Microsoft.AspNetCore.App.Runtime.linux-musl-arm64 18 Microsoft.NetCore.App.Runtime.win-x64 16 Microsoft.NetCore.App.Runtime.win-x86 16 Microsoft.NetCore.App.Runtime.win-arm 16 Microsoft.NetCore.App.Runtime.win-arm64 16 Microsoft.AspNetCore.App.Runtime.linux-musl-arm 14 Umbraco.CMS 13 Microsoft.NETCore.App.Runtime.win-arm64 12 Microsoft.NETCore.App.Runtime.win-x64 12 Microsoft.AspNetCore.App.Runtime.osx-arm64 12 Microsoft.NETCore.App.Runtime.win-x86 12 Magick.NET-Q16-x64 11 Magick.NET-Q8-OpenMP-arm64 11 Magick.NET-Q16-OpenMP-arm64 11 Magick.NET-Q16-arm64 11 Microsoft.NetCore.App.Runtime.linux-musl-arm64 11 Microsoft.NetCore.App.Runtime.osx-x64 11 Microsoft.NetCore.App.Runtime.linux-x64 11 Magick.NET-Q16-OpenMP-x64 11 Magick.NET-Q16-x86 11 tinymce/tinymce 11 Magick.NET-Q8-x64 11 TinyMCE 11 Magick.NET-Q8-AnyCPU 11 Microsoft.NetCore.App.Runtime.linux-arm 11 Microsoft.NetCore.App.Runtime.osx-arm64 11 tinymce 11 OPCFoundation.NetStandard.Opc.Ua.Core 11 Magick.NET-Q8-arm64 11 Magick.NET-Q16-AnyCPU 11 Magick.NET-Q8-x86 11 Magick.NET-Q16-HDRI-AnyCPU 11 Magick.NET-Q16-HDRI-OpenMP-x64 11 Microsoft.NetCore.App.Runtime.linux-musl-arm 11 Magick.NET-Q16-HDRI-x86 11 Magick.NET-Q16-HDRI-OpenMP-arm64 11 Magick.NET-Q16-HDRI-x64 11 Microsoft.NetCore.App.Runtime.linux-arm64 11 Microsoft.NetCore.App.Runtime.linux-musl-x64 11 Magick.NET-Q16-HDRI-arm64 11 Magick.NET-Q8-OpenMP-x64 11 Microsoft.AspNetCore.All 10 Microsoft.NETCore.App 10 bootstrap 10 Microsoft.NETCore.App.Runtime.linux-musl-x64 9 bootstrap 9 twbs/bootstrap 9 Microsoft.NETCore.App.Runtime.linux-arm 9 Microsoft.NETCore.App.Runtime.linux-musl-arm64 9 org.webjars:bootstrap 9 bootstrap 9 Microsoft.NETCore.App.Runtime.linux-arm64 9 Microsoft.NETCore.App.Runtime.linux-x64 9 Microsoft.NETCore.App.Runtime.osx-x64 8 Microsoft.AspNetCore.App 8 jquery 8 org.webjars.npm:jquery 8 jquery-rails 8 Umbraco.Cms 8 Microsoft.NETCore.App.Runtime.win-arm 8 bootstrap.sass 8 SixLabors.ImageSharp 7 jquery-ui-rails 7 bootstrap-sass 7 Microsoft.NETCore.App.Runtime.linux-musl-arm 7 CefSharp.Common 7 org.webjars.npm:jquery-ui 7 jquery-ui 7 jQuery 7 jQuery.UI.Combined 7 bootstrap-sass 6 OPCFoundation.NetStandard.Opc.Ua 6 CefSharp.Wpf 6 Microsoft.AspNetCore.Mvc.Core 6 CefSharp.Wpf.HwndHost 6 CefSharp.WinForms 6 Microsoft.WindowsDesktop.App.Runtime.win-x86 5 Microsoft.NETCore.App.Runtime.Mono.linux-musl-x64 5 Microsoft.NETCore.App.Runtime.Mono.osx-x64 5 System.Text.Encodings.Web 5 Microsoft.NETCore.App.Runtime.Mono.LLVM.osx-x64 5 Microsoft.NETCore.App.Runtime.Mono.linux-arm 5 Microsoft.NETCore.App.Runtime.Mono.LLVM.AOT.linux-arm64 5 Microsoft.WindowsDesktop.App.Runtime.win-x64 5 Microsoft.NETCore.App.Runtime.Mono.LLVM.linux-arm64 5 Microsoft.NETCore.App.Runtime.Mono.linux-x64 5 Microsoft.NETCore.App.Runtime.Mono.LLVM.AOT.osx-x64 5 System.Net.Http 5 Microsoft.AspNetCore.Server.Kestrel.Core 5 Microsoft.AspNetCore.Mvc.Cors 5 Microsoft.NETCore.App.Runtime.Mono.LLVM.AOT.linux-x64 5 Microsoft.NETCore.App.Runtime.rhel.6-x64 5 Microsoft.NETCore.App.Runtime.Mono.LLVM.linux-x64 5 Microsoft.NETCore.App.Runtime.Mono.linux-arm64 5 BouncyCastle 4 Microsoft.AspNetCore.Mvc.TagHelpers 4 Microsoft.AspNetCore.Mvc.Razor 4 System.Net.WebSockets.Client 4 Microsoft.AspNetCore.Mvc.ApiExplorer 4 Microsoft.AspNetCore.Mvc.Formatters.Xml 4 Microsoft.AspNetCore.Mvc.Localization 4 Microsoft.AspNetCore.Mvc.DataAnnotations 4 Microsoft.AspNetCore.Mvc.Abstractions 4 Microsoft.AspNetCore.Mvc 4 Serenity.Net.Core 4 Microsoft.AspNetCore.Mvc.Razor.Host 4 SSCMS 4 org.bouncycastle:bcprov-jdk15to18 4 Microsoft.AspNetCore.Mvc.Formatters.Json 4 Snowflake.Data 4 AjaxNetProfessional 4 Microsoft.WindowsDesktop.App.Runtime.win-arm64 4 NuGet.CommandLine 4 UmbracoCms 4 System.Net.Security 4 org.bouncycastle:bcprov-jdk14 4 DNN.PLATFORM 4 SharpZipLib 4 Piranha 4 System.Net.Http.WinHttpHandler 4 Microsoft.AspNetCore.Mvc.ViewFeatures 4 Microsoft.AspNetCore.Mvc.WebApiCompatShim 4 NuGet.Commands 4 Umbraco.Cms.Core 3 Microsoft.Native.Quic.MsQuic.OpenSSL 3 org.bouncycastle:bctls-jdk15to18 3 Microsoft.AspNetCore.Identity 3 org.bouncycastle:bctls-jdk18on 3 Umbraco.Cms.Web.BackOffice 3 Sustainsys.Saml2 3 org.bouncycastle:bcprov-jdk15on 3 BouncyCastle.Cryptography 3 org.bouncycastle:bctls-jdk14 3 System.Security.Cryptography.Xml 3 org.bouncycastle:bcprov-jdk18on 3 Umbraco.Forms 3 Azure.Identity 3 System.Private.Uri 3 Microsoft.Native.Quic.MsQuic.Schannel 3 Oqtane.Server 3 CefSharp.Common.NETCore 3 django-tinymce 3 OPCFoundation.NetStandard.Opc.Ua.Server 3 Microsoft.NETCore.App.Runtime.osx-arm64 3 wix 3 UmbracoCms.Core 3 UmbracoForms 3 Oqtane.Framework 3 Microsoft.Owin 2 Microsoft.NETCore.App.Runtime.Mono.maccatalyst-arm64 2 PeterO.Cbor 2 Microsoft.NETCore.App.Runtime.Mono.android-arm.Msi.x64 2 DisCatSharp 2 Microsoft.NETCore.App.Runtime.Mono.browser-wasm.Msi.arm64 2 Microsoft.NETCore.App.Runtime.Mono.iossimulator-arm64.Msi.x86 2 Microsoft.NETCore.App.Runtime.Mono.tvossimulator-x64.Msi.x86 2 Microsoft.NETCore.App.Runtime.Mono.iossimulator-x86.Msi.x64 2 Microsoft.NETCore.App.Runtime.Mono.iossimulator-x64.Msi.x64 2 Microsoft.NETCore.App.Runtime.AOT.win-x64.Cross.android-x64 2 DotNetNuke.Web 2 Microsoft.NETCore.App.Runtime.AOT.osx-x64.Cross.ios-arm 2 Microsoft.NETCore.App.Runtime.Mono.iossimulator-x64.Msi.arm64 2 Microsoft.NETCore.App.Runtime.Mono.tvossimulator-x64.Msi.x64 2 Microsoft.NETCore.App.Runtime.Mono.maccatalyst-arm64.Msi.x64 2 Microsoft.NETCore.App.Runtime.Mono.tvossimulator-x64 2 Microsoft.NETCore.App.Runtime.Mono.tvossimulator-arm64 2 System.Formats.Nrbf 2 Microsoft.AspNetCore.Http.Connections 2 Microsoft.NETCore.App.Runtime.Mono.tvos-arm64.Msi.x86 2 ServiceStack 2 Microsoft.NETCore.App.Runtime.AOT.win-x64.Cross.browser-wasm.Msi.x64 2 System.ServiceModel.Duplex 2 System.ServiceModel.Security 2 System.IO.Packaging 2 Microsoft.NETCore.App.Runtime.AOT.osx-x64.Cross.tvossimulator-x64 2 System.ServiceModel.NetTcp 2 Microsoft.NETCore.App.Runtime.Mono.maccatalyst-arm64.Msi.arm64 2 Microsoft.NETCore.App.Runtime.Mono.android-arm.Msi.arm64 2 System.ServiceModel.Http 2 Microsoft.NETCore.App.Runtime.Mono.android-x86.Msi.x86 2 Microsoft.NETCore.App.Runtime.Mono.android-arm64.Msi.x64 2 Microsoft.Identity.Client 2 Microsoft.NETCore.App.Runtime.Mono.iossimulator-arm64.Msi.arm64 2 Microsoft.NETCore.App.Runtime.Mono.android-x64.Msi.arm64 2 components/jquery 2 Microsoft.NETCore.App.Runtime.Mono.android-arm.Msi.x86 2 UmbracoCMS.Core 2 Bootstrap.Less 2 RestSharp 2

Filter by Repository