GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,366 advisories
Filter by severity
SAP NetWeaver AS for ABAP and ABAP Platform - versions 740, 750, 751, 752, 753, 754, 755, 756,...
Moderate
Unreviewed
CVE-2023-28763
was published
Apr 11, 2023
An issue has been discovered in GitLab affecting all versions from 15.5 before 15.8.5, all...
Moderate
Unreviewed
CVE-2023-1071
was published
Apr 5, 2023
An issue has been discovered in GitLab affecting all versions starting from 15.9 before 15.9.4,...
Moderate
Unreviewed
CVE-2023-1787
was published
Apr 5, 2023
User-controlled operations could have allowed Denial of Service in M-Files Server before 23.4...
Moderate
Unreviewed
CVE-2023-0382
was published
Apr 5, 2023
Directus API vulnerable to denial of service
Moderate
CVE-2020-19850
was published
for
directus
(npm)
Apr 4, 2023
Denial of service vulnerability in PowerDNS Recursor allows authoritative servers to be marked...
Moderate
Unreviewed
CVE-2023-26437
was published
Apr 4, 2023
An issue found in Eteran edb-debugger v.1.3.0 allows a local attacker to causea denial of service...
Moderate
Unreviewed
CVE-2023-27734
was published
Apr 4, 2023
Wagtail vulnerable to denial-of-service via memory exhaustion when uploading large files
Moderate
CVE-2023-28837
was published
for
wagtail
(pip)
Apr 3, 2023
An issue was discovered in the CheckUser extension for MediaWiki through 1.39.3. When a user with...
Moderate
Unreviewed
CVE-2023-29139
was published
Mar 31, 2023
unpoly-rails Denial of Service vulnerability
Moderate
CVE-2023-28846
was published
for
unpoly-rails
(RubyGems)
Mar 30, 2023
Comrak vulnerable to quadratic runtime issues when parsing Markdown (GHSL-2023-047)
Moderate
CVE-2023-28626
was published
for
comrak
(Rust)
Mar 28, 2023
In addNetwork of WifiManager.java, there is a possible way to trigger a persistent DoS due to...
Moderate
Unreviewed
CVE-2023-21033
was published
Mar 24, 2023
In addNetworkSuggestions of WifiManager.java, there is a possible way to trigger permanent DoS...
Moderate
Unreviewed
CVE-2023-20910
was published
Mar 24, 2023
Spring Framework vulnerable to denial of service via specially crafted SpEL expression
Moderate
CVE-2023-20861
was published
for
org.springframework:spring-expression
(Maven)
Mar 23, 2023
An uncontrolled resource consumption vulnerability was discovered in HAProxy which could crash...
Moderate
Unreviewed
CVE-2023-0056
was published
Mar 23, 2023
Windows Secure Channel Denial of Service Vulnerability
Moderate
Unreviewed
CVE-2023-24862
was published
Mar 14, 2023
Windows Hyper-V Denial of Service Vulnerability
Moderate
Unreviewed
CVE-2023-23411
was published
Mar 14, 2023
Microsoft Excel Denial of Service Vulnerability
Moderate
Unreviewed
CVE-2023-23396
was published
Mar 14, 2023
SAP NetWeaver Application Server for ABAP and ABAP Platform - versions 700, 701, 702, 731, 740,...
Moderate
Unreviewed
CVE-2023-25618
was published
Mar 14, 2023
SAP NetWeaver Application Server for ABAP and ABAP Platform - versions 700, 701, 702, 731, 740,...
Moderate
Unreviewed
CVE-2023-27270
was published
Mar 14, 2023
fieldpath's Paved.SetValue allows growing arrays up to arbitrary sizes in crossplane-runtime
Moderate
CVE-2023-27483
was published
for
github.com/crossplane/crossplane-runtime
(Go)
Mar 13, 2023
Crossplane-runtime contains Improper Input Validation via Compositions
Moderate
CVE-2023-27484
was published
for
github.com/crossplane/crossplane
(Go)
Mar 10, 2023
An issue has been discovered in GitLab affecting all versions starting from 9.0 before 15.7.8,...
Moderate
Unreviewed
CVE-2023-1072
was published
Mar 10, 2023
openstack-neutron uncontrolled resource consumption flaw
Moderate
CVE-2022-3277
was published
for
neutron
(pip)
Mar 7, 2023
XWiki Platform subject to Uncontrolled Resource Consumption
Moderate
CVE-2023-26470
was published
for
org.xwiki.platform:xwiki-platform-oldcore
(Maven)
Mar 3, 2023
ProTip!
Advisories are also available from the
GraphQL API