GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,324
Erlang
31
GitHub Actions
21
Go
2,087
Maven
5,000+
npm
3,751
NuGet
674
pip
3,437
Pub
12
RubyGems
892
Rust
881
Swift
37
Unreviewed advisories
All unreviewed
5,000+
2,422 advisories
Filter by severity
This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Ventura 13...
Moderate
Unreviewed
CVE-2024-27800
was published
Jun 10, 2024
go-grpc-compression has a zstd decompression bombing vulnerability
High
GHSA-87m9-rv8p-rgmg
was published
for
github.com/mostynb/go-grpc-compression
(Go)
Jun 10, 2024
GNOME VTE before 0.76.3 allows an attacker to cause a denial of service (memory consumption) via...
Moderate
Unreviewed
CVE-2024-37535
was published
Jun 9, 2024
Precor touchscreen console P62, P80, and P82 contains a default SSH public key in the...
High
Unreviewed
CVE-2023-49224
was published
Jun 7, 2024
An issue in obgm and Libcoap v.a3ed466 allows a remote attacker to cause a denial of service via...
High
Unreviewed
CVE-2023-51847
was published
Jun 7, 2024
mintplex-labs/anything-llm is affected by an uncontrolled resource consumption vulnerability in...
Moderate
Unreviewed
CVE-2024-3153
was published
Jun 6, 2024
Denial of service in langchain-community
Moderate
CVE-2024-2965
was published
for
langchain
(pip)
Jun 6, 2024
An issue in OneFlow-Inc. Oneflow v0.9.1 allows attackers to cause a Denial of Service (DoS) when...
High
Unreviewed
CVE-2024-36743
was published
Jun 6, 2024
The DNS protocol in RFC 1035 and updates allows remote attackers to cause a denial of service ...
High
Unreviewed
CVE-2024-33655
was published
Jun 6, 2024
Apport does not disable python crash handler before entering chroot
High
Unreviewed
CVE-2022-28657
was published
Jun 5, 2024
Denial of Service (DoS) attack possibility in TYPO3 component Indexed Search
Moderate
GHSA-pmxp-7224-h794
was published
for
typo3/cms
(Composer)
Jun 4, 2024
An uncontrolled resource consumption of file descriptors in SEH Computertechnik utnserver Pro,...
Unknown
Unreviewed
CVE-2024-5422
was published
Jun 4, 2024
A Regular Expression Denial of Service (ReDoS) vulnerability exists in the lunary-ai/lunary...
High
Unreviewed
CVE-2024-4148
was published
Jun 1, 2024
An invalid pointer in the modbus_receive() function of libmodbus v3.1.6 allows attackers to cause...
Moderate
Unreviewed
CVE-2024-36845
was published
May 31, 2024
Duplicate Advisory: Apache Superset uncontrolled resource consumption
Moderate
CVE-2024-23952
was published
for
apache-superset
(pip)
May 30, 2024
•
withdrawn
Soot Infinite Loop vulnerability
High
CVE-2023-46442
was published
for
org.soot-oss:soot
(Maven)
May 24, 2024
Kwik does not discard unused encryption keys
Moderate
CVE-2024-22588
was published
for
tech.kwik:kwik
(Maven)
May 24, 2024
SilverStripe framework XML Quadratic Blowup Attack
Moderate
GHSA-g43w-98wp-m694
was published
for
silverstripe/framework
(Composer)
May 23, 2024
A denial of service (DoS) condition was discovered in GitLab CE/EE affecting all versions from 13...
Moderate
Unreviewed
CVE-2024-1947
was published
May 23, 2024
A Denial of Service (DoS) condition has been discovered in GitLab CE/EE affecting all versions...
Moderate
Unreviewed
CVE-2023-6502
was published
May 23, 2024
An issue has been discovered in GitLab CE/EE affecting all versions before 16.10.6, version 16.11...
Moderate
Unreviewed
CVE-2024-2874
was published
May 23, 2024
In the Linux kernel, the following vulnerability has been resolved:
KVM: SVM: fix missing...
Moderate
Unreviewed
CVE-2021-47389
was published
May 21, 2024
In the Linux kernel, the following vulnerability has been resolved:
nexthop: Fix memory leaks in...
High
Unreviewed
CVE-2021-47371
was published
May 21, 2024
In the Linux kernel, the following vulnerability has been resolved:
enetc: Fix illegal access...
High
Unreviewed
CVE-2021-47368
was published
May 21, 2024
In the Linux kernel, the following vulnerability has been resolved:
scsi: megaraid_sas: Fix...
Moderate
Unreviewed
CVE-2021-47329
was published
May 21, 2024
ProTip!
Advisories are also available from the
GraphQL API