GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,645
Maven
5,000+
npm
4,271
NuGet
760
pip
4,065
Pub
12
RubyGems
957
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
463 advisories
Filter by severity
An Improper Handling of Exceptional Conditions vulnerability in the routing protocol daemon (rpd)...
High
Unreviewed
CVE-2024-39560
was published
Jul 11, 2024
An Improper Handling of Exceptional Conditions vulnerability in the routing protocol daemon (RPD)...
High
Unreviewed
CVE-2024-39552
was published
Jul 11, 2024
Malicious Matrix homeserver can leak truncated message content of messages it shouldn't have access to
Moderate
CVE-2024-39691
was published
for
matrix-appservice-irc
(npm)
Jul 5, 2024
Improper handling of exceptional conditions in Secure Folder prior to SMR Jul-2024 Release 1...
Moderate
Unreviewed
CVE-2024-20894
was published
Jul 2, 2024
Windows Hyper-V Denial of Service Vulnerability
Moderate
Unreviewed
CVE-2024-20699
was published
Jan 9, 2024
In the Linux kernel, the following vulnerability has been resolved:
net: tls: handle backlogging...
Moderate
Unreviewed
CVE-2024-26584
was published
Feb 21, 2024
In the Linux kernel, the following vulnerability has been resolved:
net/smc: Fix possible access...
Moderate
Unreviewed
CVE-2022-48673
was published
May 3, 2024
github.com/nats-io/nats-server Import token permissions checking not enforced
High
GHSA-j756-f273-xhp4
was published
for
github.com/nats-io/nats-server/v2
(Go)
May 21, 2021
Authorization bypass in github.com/dgrijalva/jwt-go
High
CVE-2020-26160
was published
for
github.com/dgrijalva/jwt-go
(Go)
May 18, 2021
D-Link G416 httpd Improper Handling of Exceptional Conditions Information Disclosure...
Moderate
Unreviewed
CVE-2023-50212
was published
May 3, 2024
In the Linux kernel, the following vulnerability has been resolved:
drm/buddy: Fix alloc_range()...
Low
Unreviewed
CVE-2024-26911
was published
Apr 17, 2024
@hono/node-server has Denial of Service risk when receiving Host header that cannot be parsed
High
CVE-2024-32652
was published
for
@hono/node-server
(npm)
Apr 19, 2024
Traefik vulnerable to denial of service with Content-length header
High
CVE-2024-28869
was published
for
github.com/traefik/traefik
(Go)
Apr 12, 2024
SpiceDB: LookupSubjects may return partial results if a specific kind of relation is used
Low
CVE-2024-32001
was published
for
github.com/authzed/spicedb
(Go)
Apr 10, 2024
In the Linux kernel, the following vulnerability has been resolved:
parisc: Clear stale IIR...
Moderate
Unreviewed
CVE-2021-46928
was published
Feb 27, 2024
XNSoft Nconvert 7.136 has an Exception Handler Chain Corrupted via a crafted image file....
High
Unreviewed
CVE-2023-43251
was published
Oct 19, 2023
When IPSec is configured on a Virtual Server, undisclosed traffic can cause TMM to terminate.
...
High
Unreviewed
CVE-2023-41085
was published
Oct 10, 2023
A problem with a protection mechanism in the Palo Alto Networks Cortex XDR agent on Windows...
Moderate
Unreviewed
CVE-2023-3280
was published
Sep 13, 2023
A lack of custom error pages vulnerability [CWE-756] in FortiPresence versions 1.2.0 through 1.2...
Moderate
Unreviewed
CVE-2023-27998
was published
Sep 13, 2023
An Improper Handling of Unicode Encoding vulnerability in the Schweitzer Engineering...
Moderate
Unreviewed
CVE-2023-31169
was published
Aug 31, 2023
A lack of exception handling in the Renault Easy Link Multimedia System Software Version...
Moderate
Unreviewed
CVE-2023-39801
was published
Aug 24, 2023
Improper frame handling in the Zyxel XGS2220-30 firmware version V4.80(ABXN.1), XMG1930-30...
Moderate
Unreviewed
CVE-2023-28768
was published
Aug 14, 2023
"FFRI yarai", "FFRI yarai Home and Business Edition" and their OEM products handle exceptional...
Low
Unreviewed
CVE-2023-39341
was published
Aug 9, 2023
Due to insufficient file permissions, unprivileged users could gain access to unencrypted...
Critical
Unreviewed
CVE-2023-21409
was published
Aug 3, 2023
Due to insufficient file permissions, unprivileged users could gain access to unencrypted user...
Critical
Unreviewed
CVE-2023-21408
was published
Aug 3, 2023
ProTip!
Advisories are also available from the
GraphQL API