GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,638
Maven
5,000+
npm
4,264
NuGet
760
pip
4,060
Pub
12
RubyGems
956
Rust
1,056
Swift
45
Unreviewed advisories
All unreviewed
5,000+
549 advisories
Filter by severity
Polipo before 1.0.4.1 suffers from a DoD vulnerability via specially-crafted HTTP POST / PUT...
High
Unreviewed
CVE-2011-3596
was published
Apr 22, 2022
Unbound before 1.9.5 allows an assertion failure and denial of service in synth_cname.
High
Unreviewed
CVE-2019-25036
was published
May 24, 2022
Unbound before 1.9.5 allows an assertion failure via a compressed name in dname_pkt_copy.
High
Unreviewed
CVE-2019-25041
was published
May 24, 2022
Unbound before 1.9.5 allows an assertion failure and denial of service in dname_pkt_copy via an...
High
Unreviewed
CVE-2019-25037
was published
May 24, 2022
** UNSUPPORTED WHEN ASSIGNED ** Polipo through 1.1.1 allows denial of service via a reachable...
High
Unreviewed
CVE-2020-36420
was published
May 24, 2022
BIND before 9.2.6-P1 and 9.3.x before 9.3.2-P1 allows remote attackers to cause a denial of...
Moderate
Unreviewed
CVE-2006-4095
was published
May 1, 2022
Transient DOS while processing 11AZ RTT management action frame received through OTA.
High
Unreviewed
CVE-2023-43523
was published
Feb 6, 2024
A flaw was found in the networking subsystem of the Linux kernel within the handling of the RPL...
High
Unreviewed
CVE-2023-2156
was published
May 10, 2023
oftpd before 0.3.7 allows remote attackers to cause a denial of service (daemon abort) via a (1)...
High
Unreviewed
CVE-2006-6767
was published
May 1, 2022
A reachable assertion was found in Frrouting frr-bgpd 8.3.0 in the peek_for_as4_capability...
High
Unreviewed
CVE-2022-36440
was published
Apr 3, 2023
Denial of Service via reachable assertion
High
CVE-2022-24777
was published
for
github.com/grpc/grpc-swift
(Swift)
Jun 9, 2023
KsIRC 1.3.12 allows remote attackers to cause a denial of service (crash) via a long PRIVMSG...
Moderate
Unreviewed
CVE-2006-6811
was published
May 1, 2022
An authorized user may trigger an invariant which may result in denial of service or server exit...
Moderate
Unreviewed
CVE-2021-32037
was published
May 24, 2022
FFmpeg version (git commit de8e6e67e7523e48bb27ac224a0b446df05e1640) suffers from a an assertion...
High
Unreviewed
CVE-2021-38291
was published
May 24, 2022
In 5G Modem, there is a possible system crash due to improper error handling. This could lead to...
High
Unreviewed
CVE-2023-32844
was published
Dec 4, 2023
In 5G Modem, there is a possible system crash due to improper error handling. This could lead to...
High
Unreviewed
CVE-2023-32843
was published
Dec 4, 2023
In 5G Modem, there is a possible system crash due to improper error handling. This could lead to...
High
Unreviewed
CVE-2023-32846
was published
Dec 4, 2023
In 5G Modem, there is a possible system crash due to improper error handling. This could lead to...
High
Unreviewed
CVE-2023-32842
was published
Dec 4, 2023
In 5G Modem, there is a possible system crash due to improper error handling. This could lead to...
High
Unreviewed
CVE-2023-32845
was published
Dec 4, 2023
Transient DOS in Data modem while handling TLB control messages from the Network.
High
Unreviewed
CVE-2023-33044
was published
Dec 5, 2023
Transient DOS in Modem when a Beam switch request is made with a non-configured BWP.
High
Unreviewed
CVE-2023-33043
was published
Dec 5, 2023
Under certain scenarios the WLAN Firmware will reach an assertion due to state confusion while...
High
Unreviewed
CVE-2023-33041
was published
Dec 5, 2023
In 5G Modem, there is a possible system crash due to improper error handling. This could lead to...
High
Unreviewed
CVE-2023-32841
was published
Dec 4, 2023
Incorrect implementation in streebog
High
CVE-2019-25007
was published
for
streebog
(Rust)
Aug 25, 2021
malformed proposed intoto entries can cause a panic
Moderate
CVE-2023-33199
was published
for
github.com/sigstore/rekor
(Go)
May 26, 2023
ProTip!
Advisories are also available from the
GraphQL API