GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,645
Maven
5,000+
npm
4,271
NuGet
760
pip
4,065
Pub
12
RubyGems
957
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
2,094 advisories
Filter by severity
An unauthenticated denial of service vulnerability exists in the SMM v1, SMM v2, and FPC...
High
Unreviewed
CVE-2023-2992
was published
Jun 26, 2023
Denial of Service in GitHub repository jgraph/drawio prior to 18.1.3.
Moderate
Unreviewed
CVE-2023-3398
was published
Jun 26, 2023
Uncontrolled resource consumption in Series WAGO 750-3x/-8x products may allow an unauthenticated...
High
Unreviewed
CVE-2023-1150
was published
Jun 26, 2023
Fortra Globalscape EFT versions before 8.1.0.16 suffer from a denial of service vulnerability,...
High
Unreviewed
CVE-2023-2990
was published
Jun 22, 2023
When adding an external mail account, processing of SMTP "capabilities" responses are not limited...
Moderate
Unreviewed
CVE-2023-26432
was published
Jun 20, 2023
When adding an external mail account, processing of POP3 "capabilities" responses are not limited...
Moderate
Unreviewed
CVE-2023-26434
was published
Jun 20, 2023
When adding an external mail account, processing of IMAP "capabilities" responses are not limited...
Moderate
Unreviewed
CVE-2023-26433
was published
Jun 20, 2023
Vulnerability of system restart triggered by abnormal callbacks passed to APIs.Successful...
High
Unreviewed
CVE-2023-34166
was published
Jun 19, 2023
Mattermost fails to unescape Markdown strings in a memory-efficient way, allowing an attacker to...
Moderate
Unreviewed
CVE-2023-2831
was published
Jun 16, 2023
Mattermost fails to validate links on external websites when constructing a preview for a linked...
Moderate
Unreviewed
CVE-2023-2793
was published
Jun 16, 2023
Mattermost fails to properly truncate the postgres error log message of a search query failure...
Moderate
Unreviewed
CVE-2023-2785
was published
Jun 16, 2023
A memory leak in the EFR32 Bluetooth LE stack 5.1.0 through 5.1.1 allows an attacker to send an...
Moderate
Unreviewed
CVE-2023-2683
was published
Jun 15, 2023
Due to an error in the software interface to the secure element chip on Bosch IP cameras of...
Moderate
Unreviewed
CVE-2023-32229
was published
Jun 15, 2023
IBM Security Directory Suite VA 8.0.1 could allow an attacker to cause a denial of service due to...
High
Unreviewed
CVE-2022-33168
was published
Jun 15, 2023
A denial-of-service vulnerability exists in Rockwell Automation FactoryTalk Transaction Manager....
High
Unreviewed
CVE-2023-2778
was published
Jun 13, 2023
SAP NetWeaver (Change and Transport System) - versions 702, 731, 740, 750, 751, 752, 753, 754,...
Low
Unreviewed
CVE-2023-32114
was published
Jun 13, 2023
In JetBrains YouTrack before 2023.1.10518 a DoS attack was possible via Helpdesk forms
High
Unreviewed
CVE-2023-35053
was published
Jun 12, 2023
An issue found in CrossX v.1.15.3 for Android allows a local attacker to cause a persistent...
Moderate
Unreviewed
CVE-2023-29767
was published
Jun 9, 2023
D-Bus before 1.15.6 sometimes allows unprivileged users to crash dbus-daemon. If a privileged...
Moderate
Unreviewed
CVE-2023-34969
was published
Jun 8, 2023
A denial of service issue was discovered in GitLab CE/EE affecting all versions starting from 13...
High
Unreviewed
CVE-2023-0121
was published
Jun 7, 2023
A lack of length validation in GitLab CE/EE affecting all versions from 8.3 before 15.10.8, 15.11...
Moderate
Unreviewed
CVE-2023-0921
was published
Jun 6, 2023
Transient DOS due to uncontrolled resource consumption in Linux kernel when malformed messages...
Moderate
Unreviewed
CVE-2022-33303
was published
Jun 6, 2023
If multiple instances of resource exhaustion occurred at the incorrect time, the garbage...
Moderate
Unreviewed
CVE-2023-29544
was published
Jun 2, 2023
If a MIME email combines OpenPGP and OpenPGP MIME data in a certain way Thunderbird repeatedly...
Moderate
Unreviewed
CVE-2023-0616
was published
Jun 2, 2023
An issue found in edjing Mix v.7.09.01 for Android allows a local attacker to cause a denial of...
Moderate
Unreviewed
CVE-2023-29735
was published
May 30, 2023
ProTip!
Advisories are also available from the
GraphQL API