GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,324
Erlang
31
GitHub Actions
21
Go
2,087
Maven
5,000+
npm
3,751
NuGet
674
pip
3,437
Pub
12
RubyGems
892
Rust
881
Swift
37
Unreviewed advisories
All unreviewed
5,000+
910 advisories
Filter by severity
IBM Safer Payments 6.4.0.00 through 6.4.2.07, 6.5.0.00 through 6.5.0.05, and 6.6.0.00 through 6.6...
High
Unreviewed
CVE-2024-45662
was published
Jan 18, 2025
matrix-media-repo (MMR) allows denial of service/high operating costs through unauthenticated downloads
Moderate
CVE-2024-36403
was published
for
github.com/t2bot/matrix-media-repo
(Go)
Jan 16, 2025
An unauthenticated remote attacker can cause a DoS in the controller due to uncontrolled resource...
High
Unreviewed
CVE-2018-25108
was published
Jan 16, 2025
Django has a potential denial-of-service vulnerability in IPv6 validation
Moderate
CVE-2024-56374
was published
for
Django
(pip)
Jan 14, 2025
A allocation of resources without limits or throttling in Fortinet FortiSIEM 5.3 all versions, 5...
High
Unreviewed
CVE-2024-46667
was published
Jan 14, 2025
An allocation of resources without limits or throttling [CWE-770] vulnerability in FortiOS...
Moderate
Unreviewed
CVE-2024-46666
was published
Jan 14, 2025
An allocation of resources without limits or throttling vulnerability [CWE-770] in FortiOS...
High
Unreviewed
CVE-2024-46668
was published
Jan 14, 2025
IBM App Connect Enterprise Certified Container 7.1, 7.2, 8.0, 8.1, 8.2, 9.0, 9.1, 9.2, 10.0, 10.1...
Moderate
Unreviewed
CVE-2022-22491
was published
Jan 9, 2025
IBM Security ReaQta 3.12 could allow a privileged user to cause a denial of service by sending...
Moderate
Unreviewed
CVE-2024-45100
was published
Jan 7, 2025
go-git clients vulnerable to DoS via maliciously crafted Git server replies
High
CVE-2025-21614
was published
for
github.com/go-git/go-git
(Go)
Jan 6, 2025
Uncontrolled resource consumption when a driver, an application or a SMMU client tries to access...
High
Unreviewed
CVE-2024-43064
was published
Jan 6, 2025
Next.js Allows a Denial of Service (DoS) with Server Actions
Moderate
CVE-2024-56332
was published
for
next
(npm)
Jan 3, 2025
In the Linux kernel, the following vulnerability has been resolved:
media: s5p_cec: limit msg...
Moderate
Unreviewed
CVE-2022-49035
was published
Jan 2, 2025
In the Linux kernel, the following vulnerability has been resolved:
RDMA/hns: Fix cpu stuck...
Moderate
Unreviewed
CVE-2024-56722
was published
Dec 29, 2024
A denial-of-service issue was addressed with improved input validation. This issue is fixed in...
High
Unreviewed
CVE-2024-54538
was published
Dec 20, 2024
WhoDB Allows Unbounded Memory Consumption in Authentication Middleware Can Lead to Denial of Service
High
GHSA-5pf6-cq2v-23ww
was published
for
github.com/clidey/whodb/core
(Go)
Dec 19, 2024
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is...
Moderate
Unreviewed
CVE-2023-30443
was published
Dec 19, 2024
In Matter (aka connectedhomeip or Project CHIP) through 1.4.0.0 before e3277eb, unlimited user...
High
Unreviewed
CVE-2024-56319
was published
Dec 19, 2024
Non-linear parsing of case-insensitive content in golang.org/x/net/html
High
CVE-2024-45338
was published
for
golang.org/x/net
(Go)
Dec 18, 2024
An issue was discovered in GitLab CE/EE affecting all versions starting from 13.9 before 17.4.6,...
Moderate
Unreviewed
CVE-2024-9367
was published
Dec 12, 2024
The issue was addressed with improved checks. This issue is fixed in iPadOS 17.7.3, watchOS 11.2,...
Moderate
Unreviewed
CVE-2024-54501
was published
Dec 12, 2024
The issue was addressed with improved bounds checks. This issue is fixed in iOS 18.1 and iPadOS...
Critical
Unreviewed
CVE-2024-44241
was published
Dec 12, 2024
Django denial-of-service in django.utils.html.strip_tags()
Moderate
CVE-2024-53907
was published
for
Django
(pip)
Dec 6, 2024
rPGP Potential Resource Exhaustion when handling Untrusted Messages
High
CVE-2024-53857
was published
for
pgp
(Rust)
Dec 5, 2024
Denial of Service vulnerabilities where found providing a potiential for device service...
High
Unreviewed
CVE-2024-48844
was published
Dec 5, 2024
ProTip!
Advisories are also available from the
GraphQL API