GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,366 advisories
Filter by severity
An issue was discovered in Bento4 1.6.0-639. There ie excessive memory consumption in...
Moderate
Unreviewed
CVE-2022-40736
was published
Sep 16, 2022
Mattermost version 7.0.x and earlier fails to sufficiently limit the in-memory sizes of...
Moderate
Unreviewed
CVE-2022-3147
was published
Sep 10, 2022
Multiple vulnerabilities exist in the processing of packet data by the LLDP service of AOS-CX....
Moderate
Unreviewed
CVE-2022-23689
was published
Sep 7, 2022
Multiple vulnerabilities exist in the processing of packet data by the LLDP service of AOS-CX....
Moderate
Unreviewed
CVE-2022-23687
was published
Sep 7, 2022
Multiple vulnerabilities exist in the processing of packet data by the LLDP service of AOS-CX....
Moderate
Unreviewed
CVE-2022-23688
was published
Sep 7, 2022
Multiple vulnerabilities exist in the processing of packet data by the LLDP service of AOS-CX....
Moderate
Unreviewed
CVE-2022-23686
was published
Sep 7, 2022
Samourai Wallet Stonewallx2 0.99.98e allows a denial of service via a P2P coinjoin. The attacker...
Moderate
Unreviewed
CVE-2022-35913
was published
Sep 7, 2022
An issue was discovered in the MediaWiki through 1.38.2. The community configuration pages for...
Moderate
Unreviewed
CVE-2022-39194
was published
Sep 3, 2022
Denial of service in multimedia due to uncontrolled resource consumption while parsing an...
Moderate
Unreviewed
CVE-2022-22101
was published
Sep 3, 2022
An issue was discovered in net/netfilter/nf_tables_api.c in the Linux kernel before 5.19.6. A...
Moderate
Unreviewed
CVE-2022-39190
was published
Sep 3, 2022
In OpenShift Container Platform, a user with permissions to create or modify Routes can craft a...
Moderate
Unreviewed
CVE-2022-1677
was published
Sep 2, 2022
Helm Vulnerable to denial of service through string value parsing
Moderate
CVE-2022-36055
was published
for
helm.sh/helm/v3
(Go)
Aug 30, 2022
A deadlock issue was found in the AHCI controller device of QEMU. It occurs on a software reset ...
Moderate
Unreviewed
CVE-2021-3735
was published
Aug 27, 2022
A flaw was found in the Linux kernel. Measuring usage of the shared memory does not scale with...
Moderate
Unreviewed
CVE-2021-3669
was published
Aug 27, 2022
org.apache.activemq:artemis-core-client Vulnerable to Out-of-Bounds Write
Moderate
CVE-2021-4040
was published
for
org.apache.activemq:artemis-core-client
(Maven)
Aug 25, 2022
Authenticated (subscriber+) Denial Of Service (DoS) vulnerability in WordPlus WordPress Better...
Moderate
Unreviewed
CVE-2022-33142
was published
Aug 24, 2022
A memory overflow vulnerability was found in the Linux kernel’s ipc functionality of the memcg...
Moderate
Unreviewed
CVE-2021-3759
was published
Aug 24, 2022
MaxQueryDuration not honoured in Samba AD DC LDAP
Moderate
Unreviewed
CVE-2021-3670
was published
Aug 24, 2022
libjpeg commit 281daa9 was discovered to contain a segmentation fault via HuffmanDecoder::Get at...
Moderate
Unreviewed
CVE-2022-37769
was published
Aug 19, 2022
libjpeg commit 281daa9 was discovered to contain a segmentation fault via LineMerger:...
Moderate
Unreviewed
CVE-2022-37770
was published
Aug 19, 2022
PNGDec commit 8abf6be was discovered to contain a FPE via SaveBMP at /linux/main.cpp.
Moderate
Unreviewed
CVE-2022-35013
was published
Aug 17, 2022
OpenZeppelin Contracts ERC165Checker unbounded gas consumption
Moderate
CVE-2022-35915
was published
for
@openzeppelin/contracts
(npm)
Aug 14, 2022
In the Phone app, there is a possible crash loop due to resource exhaustion. This could lead to...
Moderate
Unreviewed
CVE-2022-20260
was published
Aug 13, 2022
Windows Secure Socket Tunneling Protocol (SSTP) Denial of Service Vulnerability.
Moderate
Unreviewed
CVE-2022-34701
was published
Aug 10, 2022
Azure Site Recovery Denial of Service Vulnerability.
Moderate
Unreviewed
CVE-2022-35776
was published
Aug 10, 2022
ProTip!
Advisories are also available from the
GraphQL API