GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,342
Erlang
31
GitHub Actions
22
Go
2,106
Maven
5,000+
npm
3,764
NuGet
679
pip
3,451
Pub
12
RubyGems
892
Rust
886
Swift
37
Unreviewed advisories
All unreviewed
5,000+
439 advisories
Filter by severity
Mattermost Server vulnerable to application crash from attacker-generated large response
Moderate
CVE-2024-47401
was published
for
github.com/mattermost/mattermost/server/v8
(Go)
Oct 29, 2024
In the Linux kernel, the following vulnerability has been resolved:
HID: sony: Fix a potential...
Moderate
Unreviewed
CVE-2023-52529
was published
Mar 3, 2024
In the Linux kernel, the following vulnerability has been resolved:
Bluetooth: hci_codec: Fix...
Moderate
Unreviewed
CVE-2023-52518
was published
Mar 3, 2024
Improper resource management in firmware of some Solidigm DC Products may allow an attacker to...
Moderate
Unreviewed
CVE-2024-47969
was published
Oct 8, 2024
In the Linux kernel, the following vulnerability has been resolved:
ACPI: processor_idle: Fix...
Moderate
Unreviewed
CVE-2024-26894
was published
Apr 17, 2024
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Data Dictionary). ...
Moderate
Unreviewed
CVE-2024-21060
was published
Apr 17, 2024
A vulnerability in the SSH server of Cisco Adaptive Security Appliance (ASA) Software could allow...
Moderate
Unreviewed
CVE-2024-20526
was published
Oct 23, 2024
A denial of service (DoS) vulnerability was found in OpenShift. This flaw allows attackers to...
Moderate
Unreviewed
CVE-2024-50311
was published
Oct 22, 2024
Due to large allocation checks in Angle for GLSL shaders being too lenient an out-of-bounds...
Moderate
Unreviewed
CVE-2024-6600
was published
Jul 9, 2024
Denial of service in tensorflow-lite
Moderate
CVE-2020-15213
was published
for
tensorflow
(pip)
Sep 25, 2020
By sending a specific reset UDS request via OBDII port of Skoda vehicles, it is possible to cause...
Moderate
Unreviewed
CVE-2023-28899
was published
Jan 12, 2024
rdiffweb's unlimited length Fullname field can lead to DoS
Moderate
CVE-2022-3364
was published
for
rdiffweb
(pip)
Sep 30, 2022
An issue has been discovered in GitLab CE/EE affecting all versions from 11.2 before 17.3.6, 17.4...
Moderate
Unreviewed
CVE-2024-6826
was published
Oct 24, 2024
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is...
Moderate
Unreviewed
CVE-2024-31880
was published
Oct 23, 2024
Security Update for the OPC UA .NET Standard Stack
Moderate
CVE-2024-45526
was published
for
OPCFoundation.NetStandard.Opc.Ua
(NuGet)
Oct 18, 2024
In some circumstances, a stale value could have been used for a global variable in WASM JIT...
Moderate
Unreviewed
CVE-2023-4046
was published
Aug 1, 2023
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 could...
Moderate
Unreviewed
CVE-2023-47746
was published
Jan 22, 2024
Bref's Uploaded Files Not Deleted in Event-Driven Functions
Moderate
CVE-2024-24752
was published
for
bref/bref
(Composer)
Feb 1, 2024
Possible ReDoS vulnerability in query parameter filtering in Action Dispatch
Moderate
CVE-2024-41128
was published
for
actionpack
(RubyGems)
Oct 15, 2024
Microsoft Communicator, and Communicator in Microsoft Office 2010 beta, allows remote attackers...
Moderate
Unreviewed
CVE-2008-5180
was published
May 17, 2022
When a HTTP/2 stream was reset (RST frame) by a client, there was a time window were the request...
Moderate
Unreviewed
CVE-2023-45802
was published
Oct 23, 2023
plone.rest vulnerable to Denial of Service when ++api++ is used many times
Moderate
CVE-2023-42457
was published
for
plone.rest
(pip)
Sep 21, 2023
SUCHMOKUO node-worker-threads-pool denial of service Vulnerability
Moderate
CVE-2021-29057
was published
for
node-worker-threads-pool
(npm)
Aug 11, 2023
An issue has been discovered in GitLab CE/EE affecting all versions before 16.10.6, version 16.11...
Moderate
Unreviewed
CVE-2024-2874
was published
May 23, 2024
An issue has been discovered in GitLab CE/EE affecting all versions before 16.8.5, all versions...
Moderate
Unreviewed
CVE-2024-2818
was published
Mar 28, 2024
ProTip!
Advisories are also available from the
GraphQL API