GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,743
Erlang
35
GitHub Actions
29
Go
2,315
Maven
5,000+
npm
3,949
NuGet
711
pip
3,729
Pub
12
RubyGems
920
Rust
965
Swift
38
Unreviewed advisories
All unreviewed
5,000+
282 advisories
Filter by severity
Undertow denial of service vulnerability
High
CVE-2023-1108
was published
for
io.undertow:undertow-core
(Maven)
Sep 14, 2023
Improper Handling of Exceptional Conditions vulnerability in Daurnimator HTTP Library for Lua...
High
Unreviewed
CVE-2023-4540
was published
Sep 5, 2023
BT SDP dissector infinite loop in Wireshark 4.0.0 to 4.0.7 and 3.6.0 to 3.6.15 allows denial of...
High
Unreviewed
CVE-2023-4511
was published
Aug 24, 2023
A vulnerability in the filesystem image parser for Hierarchical File System Plus (HFS+) of ClamAV...
High
Unreviewed
CVE-2023-20197
was published
Aug 17, 2023
Memory Exhaustion vulnerability in ONLYOFFICE Document Server 4.0.3 through 7.3.2 allows remote...
High
Unreviewed
CVE-2023-30188
was published
Aug 14, 2023
FaucetSDN Ryu Denial of Service Vulnerability
High
CVE-2020-35141
was published
for
ryu
(pip)
Aug 11, 2023
FaucetSDN Ryu Denial of Service Vulnerability
High
CVE-2020-35139
was published
for
ryu
(pip)
Aug 11, 2023
A flaw was found in FRRouting when parsing certain babeld unicast hello messages that are...
High
Unreviewed
CVE-2023-3748
was published
Jul 24, 2023
An infinite loop vulnerability was found in Samba's mdssvc RPC service for Spotlight. When...
High
Unreviewed
CVE-2023-34966
was published
Jul 20, 2023
An issue was discovered in Qt before 5.15.15, 6.x before 6.2.10, and 6.3.x through 6.5.x before 6...
High
Unreviewed
CVE-2023-38197
was published
Jul 13, 2023
SwiftNIO Extras vulnerable to improper detection of complete HTTP body decompression
High
CVE-2022-3252
was published
for
github.com/apple/swift-nio-extras
(Swift)
Jun 7, 2023
GDSDB infinite loop in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via...
High
Unreviewed
CVE-2023-2879
was published
May 26, 2023
This vulnerability allows remote attackers to create a denial-of-service condition on affected...
High
Unreviewed
CVE-2022-37013
was published
Mar 29, 2023
phpseclib Infinite Loop vulnerability
High
CVE-2023-27560
was published
for
phpseclib/phpseclib
(Composer)
Mar 3, 2023
Improper calculations in ECC implementation can trigger a Denial-of-Service (DoS)
High
CVE-2023-25653
was published
for
node-jose
(npm)
Feb 16, 2023
Denial of service in modem due to missing null check while processing IP packets with padding
High
Unreviewed
CVE-2022-25734
was published
Feb 12, 2023
A flaw was found in libXpm. This issue occurs when parsing a file with a comment not closed; the...
High
Unreviewed
CVE-2022-46285
was published
Feb 7, 2023
A flaw was found in libXpm. When processing a file with width of 0 and a very large height, some...
High
Unreviewed
CVE-2022-44617
was published
Feb 7, 2023
When a file is processed, an infinite loop occurs in next_inline() of the more_curly() function.
High
Unreviewed
CVE-2021-33642
was published
Jan 20, 2023
A vulnerability in the Device Management Servlet application of Cisco BroadWorks Application...
High
Unreviewed
CVE-2023-20020
was published
Jan 20, 2023
Technitium DNS Server before 10.0 allows a self-CNAME denial-of-service attack in which a CNAME...
High
Unreviewed
CVE-2022-48256
was published
Jan 13, 2023
socks Infinite Loop vulnerability
High
CVE-2013-10005
was published
for
github.com/btcsuite/go-socks
(Go)
Dec 28, 2022
Transient DOS due to loop with unreachable exit condition in WLAN while processing an incoming...
High
Unreviewed
CVE-2022-33238
was published
Dec 13, 2022
qubes-mirage-firewall (aka Mirage firewall for QubesOS) 0.8.x through 0.8.3 allows guest OS users...
High
Unreviewed
CVE-2022-46770
was published
Dec 7, 2022
Transient DOS due to loop with unreachable exit condition in WLAN firmware while parsing IPV6...
High
Unreviewed
CVE-2022-33239
was published
Nov 15, 2022
ProTip!
Advisories are also available from the
GraphQL API