GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,645
Maven
5,000+
npm
4,271
NuGet
760
pip
4,065
Pub
12
RubyGems
957
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,316 advisories
Filter by severity
SUCHMOKUO node-worker-threads-pool denial of service Vulnerability
Moderate
CVE-2021-29057
was published
for
node-worker-threads-pool
(npm)
Aug 11, 2023
FaucetSDN Ryu Denial of Service Vulnerability
High
CVE-2020-35139
was published
for
ryu
(pip)
Aug 11, 2023
FaucetSDN Ryu Denial of Service Vulnerability
High
CVE-2020-35141
was published
for
ryu
(pip)
Aug 11, 2023
libp2p nodes vulnerable to attack using large RSA keys
High
CVE-2023-39533
was published
for
github.com/libp2p/go-libp2p
(Go)
Aug 9, 2023
A vulnerability has been identified in RUGGEDCOM i800, RUGGEDCOM i800NC, RUGGEDCOM i801,...
High
Unreviewed
CVE-2023-39269
was published
Aug 8, 2023
A vulnerability has been identified in Parasolid V34.1 (All versions < V34.1.258), Parasolid V35...
Moderate
Unreviewed
CVE-2023-38532
was published
Aug 8, 2023
RDiffWeb vulnerable to Allocation of Resources Without Limits or Throttling
Moderate
CVE-2023-4138
was published
for
rdiffweb
(pip)
Aug 3, 2023
Golang TIFF decoder does not place a limit on the size of compressed tile data
Moderate
CVE-2023-29408
was published
for
golang.org/x/image
(Go)
Aug 2, 2023
Data Illusion Survey Software Solutions ngSurvey version 2.4.28 and below is vulnerable to Denial...
High
Unreviewed
CVE-2022-46485
was published
Aug 2, 2023
An issue has been discovered in GitLab EE affecting all versions from 15.11 prior to 16.2.2 which...
High
Unreviewed
CVE-2023-4011
was published
Aug 2, 2023
In some circumstances, a stale value could have been used for a global variable in WASM JIT...
Moderate
Unreviewed
CVE-2023-4046
was published
Aug 1, 2023
Denial of service from unlimited password lengths
Moderate
CVE-2023-38492
was published
for
getkirby/cms
(Composer)
Jul 28, 2023
A missing allocation check in sftp server processing read requests may cause a NULL dereference...
Moderate
Unreviewed
CVE-2023-3603
was published
Jul 21, 2023
Wyse Management Suite versions prior to 4.0 contain a denial-of-service vulnerability. An...
Moderate
Unreviewed
CVE-2023-32481
was published
Jul 20, 2023
On Crestron 3-Series Control Systems before 1.8001.0187, crafting and sending a specific BACnet...
High
Unreviewed
CVE-2023-38405
was published
Jul 17, 2023
JavaScript preprocessing, webhooks and global scripts can cause uncontrolled CPU, memory, and...
Moderate
Unreviewed
CVE-2023-29449
was published
Jul 13, 2023
A vulnerability has been identified in SIMATIC MV540 H (All versions < V3.3.4), SIMATIC MV540 S ...
High
Unreviewed
CVE-2023-36521
was published
Jul 11, 2023
Wallabag vulnerable to Allocation of Resources Without Limits or Throttling
Moderate
CVE-2023-3566
was published
for
wallabag/wallabag
(Composer)
Jul 10, 2023
IBM Watson CP4D Data Stores 4.6.0 does not properly allocate resources without limits or...
High
Unreviewed
CVE-2023-27540
was published
Jul 10, 2023
Any request send to a Netgear Nighthawk Wifi6 Router (RAX30)'s web service containing a “Content...
High
Unreviewed
CVE-2023-28338
was published
Jul 6, 2023
A remote, unauthenticated attacker could cause a denial-of-service of PHOENIX CONTACT FL MGUARD...
High
Unreviewed
CVE-2022-3480
was published
Jul 6, 2023
Products.CMFCore unauthenticated denial of service and crash via unchecked use of input with Python's marshal module
High
CVE-2023-36814
was published
for
Products.CMFCore
(pip)
Jul 5, 2023
CometBFT PeerState JSON serialization deadlock
Moderate
CVE-2023-34450
was published
for
github.com/cometbft/cometbft
(Go)
Jul 5, 2023
In list_key_entries of utils.rs, there is a possible way to disable user credentials due to...
Moderate
Unreviewed
CVE-2023-21176
was published
Jun 28, 2023
ProTip!
Advisories are also available from the
GraphQL API