GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,821
Erlang
36
GitHub Actions
32
Go
2,413
Maven
5,000+
npm
4,052
NuGet
723
pip
3,844
Pub
12
RubyGems
933
Rust
1,004
Swift
38
Unreviewed advisories
All unreviewed
5,000+
1,299 advisories
Filter by severity
In getOffsetBeforeAfter of TextLine.java, there is a possible denial of service due to resource...
Moderate
Unreviewed
CVE-2021-0993
was published
Dec 16, 2021
Windows Hyper-V Denial of Service Vulnerability
Moderate
Unreviewed
CVE-2021-43246
was published
Dec 16, 2021
A vulnerability in Atomix v3.1.5 allows attackers to cause a denial of service (DoS) via a Raft session flooding attack using Raft OpenSessionRequest messages.
Moderate
CVE-2020-35210
was published
for
io.atomix:atomix
(Maven)
Dec 17, 2021
A flaw was found in the hivex library. This flaw allows an attacker to input a specially crafted...
Moderate
Unreviewed
CVE-2021-3622
was published
Dec 24, 2021
Improper validation of LLM utility timers availability can lead to denial of service in...
Moderate
Unreviewed
CVE-2021-30348
was published
Jan 4, 2022
jsx-slack insufficient patch for CVE-2021-43838 ReDoS
Moderate
CVE-2021-43843
was published
for
jsx-slack
(npm)
Jan 6, 2022
Regular Expression Denial of Service (ReDoS) in lodash
Moderate
CVE-2020-28500
was published
for
lodash
(npm)
Jan 6, 2022
Regular expression deinal of service (ReDoS) in is-my-json-valid
Moderate
CVE-2018-1107
was published
for
is-my-json-valid
(npm)
Jan 6, 2022
Hash collision in typelevel jawn
Moderate
CVE-2022-21653
was published
for
org.typelevel:jawn-parser
(Maven)
Jan 6, 2022
In libming 0.4.8, a memory exhaustion vulnerability exist in the function cws2fws in util/main.c....
Moderate
Unreviewed
CVE-2021-44590
was published
Jan 7, 2022
Regular Expression Denial of Service in postcss
Moderate
CVE-2021-23382
was published
for
postcss
(npm)
Jan 7, 2022
Z-Wave devices based on Silicon Labs 500 series chipsets using S0 authentication are susceptible...
Moderate
Unreviewed
CVE-2020-9059
was published
Jan 11, 2022
Z-Wave devices based on Silicon Labs 500 series chipsets using S2, including but likely not...
Moderate
Unreviewed
CVE-2020-9060
was published
Jan 11, 2022
DirectX Graphics Kernel File Denial of Service Vulnerability.
Moderate
Unreviewed
CVE-2022-21918
was published
Jan 12, 2022
Windows Hyper-V Denial of Service Vulnerability.
Moderate
Unreviewed
CVE-2022-21847
was published
Jan 12, 2022
Windows Event Tracing Discretionary Access Control List Denial of Service Vulnerability.
Moderate
Unreviewed
CVE-2022-21839
was published
Jan 12, 2022
Uncontrolled Resource Consumption in markdown-it
Moderate
CVE-2022-21670
was published
for
markdown-it
(npm)
Jan 12, 2022
A denial of service vulnerability in GitLab CE/EE affecting all versions starting from 12.0...
Moderate
Unreviewed
CVE-2021-39942
was published
Jan 19, 2022
Mattermost 6.2 and earlier fails to sufficiently process a specifically crafted GIF file when it...
Moderate
Unreviewed
CVE-2021-37865
was published
Jan 19, 2022
An Uncontrolled Resource Consumption vulnerability in the handling of IPv6 neighbor state change...
Moderate
Unreviewed
CVE-2022-22155
was published
Jan 20, 2022
Due to the lack of media file checks before rendering, it was possible for an attacker to cause...
Moderate
Unreviewed
CVE-2022-22820
was published
Jan 21, 2022
Memory leak in micronaut-core
Moderate
CVE-2022-21700
was published
for
io.micronaut:micronaut-http
(Maven)
Jan 21, 2022
On version 16.1.x before 16.1.2, 15.1.x before 15.1.4.1, 14.1.x before 14.1.4.5, and all versions...
Moderate
Unreviewed
CVE-2022-23030
was published
Jan 26, 2022
On BIG-IP version 16.1.x before 16.1.2.1, 15.1.x before 15.1.5, 14.1.x before 14.1.4.5, and all...
Moderate
Unreviewed
CVE-2022-23023
was published
Jan 26, 2022
Denial of Service in graphql-go
Moderate
CVE-2022-21708
was published
for
github.com/graph-gophers/graphql-go
(Go)
Jan 27, 2022
ProTip!
Advisories are also available from the
GraphQL API