GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,747
Erlang
35
GitHub Actions
29
Go
2,321
Maven
5,000+
npm
3,955
NuGet
712
pip
3,736
Pub
12
RubyGems
921
Rust
972
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
65 advisories
Filter by severity
The C++ method SignTraits::DeriveBits() may incorrectly call ThrowException() based on user...
High
Unreviewed
CVE-2025-23166
was published
May 19, 2025
Uncaught exception in the core management mechanism for some Intel(R) Processors may allow an...
Moderate
Unreviewed
CVE-2025-20054
was published
May 13, 2025
A flaw was found in the mod_auth_openidc module for Apache httpd. This flaw allows a remote,...
Moderate
Unreviewed
CVE-2025-3891
was published
Apr 29, 2025
The vulnerability allows any authenticated user to cause the PeerTube server to stop functioning...
Moderate
Unreviewed
CVE-2025-32944
was published
Apr 15, 2025
Internet Starter, one of SoftCOM iKSORIS system modules, is vulnerable to client-side Denial of...
Moderate
Unreviewed
CVE-2024-49705
was published
Apr 14, 2025
In wlan AP driver, there is a possible information disclosure due to an uncaught exception. This...
High
Unreviewed
CVE-2025-20664
was published
Apr 7, 2025
Exception capture failure vulnerability in the SVG parsing module of the ArkUI framework
Impact:...
High
Unreviewed
CVE-2024-58111
was published
Apr 7, 2025
Exception capture failure vulnerability in the SVG parsing module of the ArkUI framework
Impact:...
High
Unreviewed
CVE-2024-58112
was published
Apr 7, 2025
In wlan AP driver, there is a possible information disclosure due to an uncaught exception. This...
High
Unreviewed
CVE-2025-20663
was published
Apr 7, 2025
Specifically crafted MongoDB wire protocol messages can cause mongos to crash during command...
High
Unreviewed
CVE-2025-3083
was published
Apr 1, 2025
mintplex-labs/anything-llm version git 6dc3642 contains an unauthenticated Denial of Service (DoS...
High
Unreviewed
CVE-2024-8249
was published
Mar 20, 2025
An unhandled exception in the danny-avila/librechat repository, version git 600d217, can cause...
Moderate
Unreviewed
CVE-2024-11173
was published
Mar 20, 2025
With a specially crafted Python script, an attacker could send
continuous startMeasurement...
Moderate
Unreviewed
CVE-2025-24836
was published
Feb 14, 2025
Uncaught exception in OpenBMC Firmware for the Intel(R) Server M50FCP Family and Intel(R) Server...
Moderate
Unreviewed
CVE-2025-20097
was published
Feb 13, 2025
IBM EntireX 11.1 could allow a local user to cause a denial of service due to an unhandled error...
Moderate
Unreviewed
CVE-2025-0158
was published
Feb 6, 2025
Specifically crafted payloads sent to the RFID reader could cause DoS of RFID reader. After the...
Moderate
Unreviewed
CVE-2024-13417
was published
Feb 6, 2025
A vulnerability in the SNMP subsystem of Cisco IOS Software and Cisco IOS XE Software could allow...
High
Unreviewed
CVE-2025-20173
was published
Feb 5, 2025
A vulnerability in the SNMP subsystem of Cisco IOS Software, Cisco IOS XE Software, and Cisco IOS...
High
Unreviewed
CVE-2025-20172
was published
Feb 5, 2025
A vulnerability in the SNMP subsystem of Cisco IOS Software and Cisco IOS XE Software could allow...
High
Unreviewed
CVE-2025-20171
was published
Feb 5, 2025
A vulnerability in the SNMP subsystem of Cisco IOS Software and Cisco IOS XE Software could allow...
High
Unreviewed
CVE-2025-20176
was published
Feb 5, 2025
Denial of service in DNS-over-QUIC in Technitium DNS Server <= v13.2.2 allows remote attackers to...
Moderate
Unreviewed
CVE-2024-56946
was published
Feb 3, 2025
In network HW, there is a possible system hang due to an uncaught exception. This could lead to...
High
Unreviewed
CVE-2025-20637
was published
Feb 3, 2025
Unexpected server crash in database driver in M-Files Server before 25.1.14445.5 allows a highly...
Moderate
Unreviewed
CVE-2025-0648
was published
Jan 23, 2025
Null pointer dereference vulnerability in the image decoding module
Impact: Successful...
High
Unreviewed
CVE-2024-54106
was published
Dec 12, 2024
In wlan driver, there is a possible client disconnection due to improper handling of exceptional...
High
Unreviewed
CVE-2024-20137
was published
Dec 2, 2024
ProTip!
Advisories are also available from the
GraphQL API