GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,312 advisories
Filter by severity
Duplicate of GHSA-m77f-652q-wwp4
High
GHSA-2gg5-7c4v-6xx2
was published
for
axum-core
(Rust)
Sep 15, 2022
•
withdrawn
IBM Security Guardium Big Data Intelligence 4.0 (SonarG) does not properly restrict the size or...
High
Unreviewed
CVE-2019-4338
was published
May 24, 2022
Uncontrolled Resource Consumption in opcua
High
CVE-2022-25888
was published
for
opcua
(Rust)
Aug 24, 2022
On version 15.1.x before 15.1.3, 14.1.x before 14.1.3.1, and 13.1.x before 13.1.3.6, when the...
Moderate
Unreviewed
CVE-2021-23053
was published
May 24, 2022
Apache Avro Rust SDK's Reader could consume memory beyond allowed constraints
High
CVE-2022-36124
was published
for
apache-avro
(Rust)
Aug 10, 2022
DDOS reflection amplification vulnerability in eAut module of Ruckus Wireless SmartZone...
High
Unreviewed
CVE-2021-36630
was published
Jan 18, 2023
Teamplus Pro community discussion function has an ‘allocation of resource without limits or...
Moderate
Unreviewed
CVE-2022-35220
was published
Aug 3, 2022
Teamplus Pro community discussion has an ‘allocation of resource without limits or throttling’...
Moderate
Unreviewed
CVE-2022-35221
was published
Aug 3, 2022
A remote attacker with general user privilege can send a message to Teamplus Pro’s chat group...
High
Unreviewed
CVE-2022-32958
was published
Jul 21, 2022
An Allocation of Resources Without Limits or Throttling vulnerability in the Packet Forwarding...
High
Unreviewed
CVE-2022-22212
was published
Jul 21, 2022
TEE_Malloc in Samsung mTower through 0.3.0 allows a trusted application to achieve Excessive...
High
Unreviewed
CVE-2022-38155
was published
Aug 12, 2022
Pexip Infinity 27 before 28.0 allows remote attackers to trigger excessive resource consumption...
High
Unreviewed
CVE-2022-29286
was published
Jul 18, 2022
Improper input validation vulnerability in Space of Cybozu Garoon 4.0.0 to 5.5.1 allows a remote...
Moderate
Unreviewed
CVE-2022-29892
was published
Jul 5, 2022
TOTOLINK T6 V4.1.9cu.5179_B20201015 was discovered to contain a stack overflow via the command...
High
Unreviewed
CVE-2022-32048
was published
Jul 2, 2022
TOTOLINK T6 V4.1.9cu.5179_B20201015 was discovered to contain a stack overflow via the cloneMac...
High
Unreviewed
CVE-2022-32050
was published
Jul 2, 2022
TOTOLINK T6 V4.1.9cu.5179_B20201015 was discovered to contain a stack overflow via the desc...
High
Unreviewed
CVE-2022-32045
was published
Jul 2, 2022
TOTOLINK T6 V4.1.9cu.5179_B20201015 was discovered to contain a stack overflow via the desc...
High
Unreviewed
CVE-2022-32047
was published
Jul 2, 2022
Tenda M3 V1.0.0.12 was discovered to contain a stack overflow via the function formSetAPCfg.
High
Unreviewed
CVE-2022-32037
was published
Jul 2, 2022
Tenda M3 V1.0.0.12 was discovered to contain a stack overflow via the function formSetCfm.
High
Unreviewed
CVE-2022-32040
was published
Jul 2, 2022
TOTOLINK T6 V4.1.9cu.5179_B20201015 was discovered to contain a stack overflow via the desc, week...
High
Unreviewed
CVE-2022-32051
was published
Jul 2, 2022
Tenda M3 V1.0.0.12 was discovered to contain a stack overflow via the listN parameter in the...
High
Unreviewed
CVE-2022-32039
was published
Jul 2, 2022
There's a flaw in OpenEXR's Scanline API functionality in versions before 3.0.0-beta. An attacker...
Moderate
Unreviewed
CVE-2021-3479
was published
May 24, 2022
An issue was discovered in glFTPd 2.11a that allows remote attackers to cause a denial of service...
High
Unreviewed
CVE-2021-31645
was published
Jul 8, 2022
Tenda M3 V1.0.0.12 was discovered to contain a stack overflow via the function...
High
Unreviewed
CVE-2022-32043
was published
Jul 2, 2022
TOTOLINK T6 V4.1.9cu.5179_B20201015 was discovered to contain a stack overflow via the password...
High
Unreviewed
CVE-2022-32044
was published
Jul 2, 2022
ProTip!
Advisories are also available from the
GraphQL API