GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,635
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
3,036 advisories
Filter by severity
DHCP Server Service Denial of Service Vulnerability
Moderate
Unreviewed
CVE-2024-30019
was published
May 14, 2024
A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All...
Moderate
Unreviewed
CVE-2024-33498
was published
May 14, 2024
An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.4 prior to...
Moderate
Unreviewed
CVE-2024-4539
was published
May 14, 2024
Uncontrolled resource consumption in braces
High
CVE-2024-4068
was published
for
braces
(npm)
May 14, 2024
Uncontrolled resource consumption vulnerability in White Bear Solutions WBSAirback, version 21.02...
Moderate
Unreviewed
CVE-2024-3789
was published
May 14, 2024
A buffer overflow vulnerability in /bin/boa on D-Link DIR-619L Rev.B 2.06B1 via...
Moderate
Unreviewed
CVE-2024-33774
was published
May 14, 2024
An issue was discovered on certain Nuki Home Solutions devices. It is possible to send multiple...
High
Unreviewed
CVE-2022-32505
was published
May 14, 2024
An issue was discovered on certain Nuki Home Solutions devices. By sending a malformed HTTP verb,...
High
Unreviewed
CVE-2022-32508
was published
May 14, 2024
An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.11 prior to...
Moderate
Unreviewed
CVE-2024-2454
was published
May 14, 2024
An issue has been discovered in GitLab CE/EE affecting all versions before 16.9.7, all versions...
Moderate
Unreviewed
CVE-2024-2651
was published
May 14, 2024
Bouncy Castle certificate parsing issues cause high CPU usage during parameter evaluation.
Moderate
CVE-2024-29857
was published
for
BouncyCastle
(Maven)
May 14, 2024
An issue has been discovered in GitLab CE/EE affecting all versions starting from 16.9 prior to...
Moderate
Unreviewed
CVE-2023-6682
was published
May 14, 2024
An issue has been discovered in GitLab CE/EE affecting all versions starting from 16.11 prior to...
Moderate
Unreviewed
CVE-2023-6688
was published
May 14, 2024
octo-sts vulnerable to unauthenticated attacker causing unbounded CPU and memory usage
Low
CVE-2024-34079
was published
for
github.com/octo-sts/app
(Go)
May 13, 2024
An issue in Open5GS v.2.7.0 allows an attacker to cause a denial of service via the 64...
Moderate
Unreviewed
CVE-2024-33382
was published
May 8, 2024
The etcd package distributed with the Red Hat OpenStack platform has an incomplete fix for CVE...
High
Unreviewed
CVE-2024-4436
was published
May 8, 2024
The etcd package distributed with the Red Hat OpenStack platform has an incomplete fix for CVE...
High
Unreviewed
CVE-2024-4437
was published
May 8, 2024
The etcd package distributed with the Red Hat OpenStack platform has an incomplete fix for CVE...
High
Unreviewed
CVE-2024-4438
was published
May 8, 2024
No Limit on Number of Open Sessions / Bad Session Close Behaviour in dnf5daemon-server before 5...
Moderate
Unreviewed
CVE-2024-1930
was published
May 8, 2024
In multiple functions of AppOpsService.java, there is a possible way to saturate the content of ...
Moderate
Unreviewed
CVE-2024-23712
was published
May 7, 2024
In multiple functions of SnoozeHelper.java, there is a possible persistent denial of service due...
Moderate
Unreviewed
CVE-2024-0026
was published
May 7, 2024
Minder's GitHub Webhook Handler vulnerable to DoS from un-validated requests
High
CVE-2024-34084
was published
for
github.com/stacklok/minder
(Go)
May 7, 2024
Remote denial of service vulnerability in LAN Messenger affecting version 3.4.0. This...
High
Unreviewed
CVE-2024-4599
was published
May 7, 2024
A denial of service vulnerability exists in Delta Electronics DIAEnergie v1.10.1.8610 and prior....
Critical
Unreviewed
CVE-2024-4549
was published
May 6, 2024
go-ethereum vulnerable to DoS via malicious p2p message
High
CVE-2024-32972
was published
for
github.com/ethereum/go-ethereum
(Go)
May 6, 2024
ProTip!
Advisories are also available from the
GraphQL API