GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,318
Erlang
31
GitHub Actions
21
Go
2,074
Maven
5,000+
npm
3,746
NuGet
674
pip
3,434
Pub
12
RubyGems
892
Rust
880
Swift
37
Unreviewed advisories
All unreviewed
5,000+
138 advisories
Filter by severity
An issue in the qst_vec_get_int64 component of openlink virtuoso-opensource v7.2.11 allows...
High
Unreviewed
CVE-2024-57654
was published
Jan 14, 2025
An issue in the sqlo_df component of openlink virtuoso-opensource v7.2.11 allows attackers to...
High
Unreviewed
CVE-2024-57661
was published
Jan 14, 2025
An issue in the HEAP_malloc component of MonetDB Server v11.49.1 allows attackers to cause a...
High
Unreviewed
CVE-2024-57623
was published
Jan 14, 2025
A vulnerability was found in TP-Link VN020 F3v(T) TT_V6.2.1021. It has been rated as critical....
High
Unreviewed
CVE-2024-12342
was published
Dec 8, 2024
An issue in Open 5GS v.2.7.1 allows a remote attacker to cause a denial of service via the...
High
Unreviewed
CVE-2024-51179
was published
Nov 13, 2024
wasm3 139076a is vulnerable to Denial of Service (DoS).
High
Unreviewed
CVE-2024-27527
was published
Nov 9, 2024
An issue was discovered in Ollama before 0.1.34. The CreateModelHandler function uses os.Open to...
High
Unreviewed
CVE-2024-39721
was published
Oct 31, 2024
A website configured to initiate a specially crafted WebTransport session could crash the Firefox...
High
Unreviewed
CVE-2024-9399
was published
Oct 1, 2024
RMQTT Broker 0.4.0 allows remote attackers to cause a Denial of Service (daemon crash) via a...
High
Unreviewed
CVE-2024-36856
was published
Jun 12, 2024
A vulnerability classified as critical was found in Contemporary Control System BASrouter BACnet...
High
Unreviewed
CVE-2024-4791
was published
May 14, 2024
The 'control' in Parrot ANAFI USA firmware 1.10.4 does not check the MAV_MISSION_TYPE(0, 1, 2,...
High
Unreviewed
CVE-2024-33844
was published
May 3, 2024
Traefik vulnerable to denial of service with Content-length header
High
CVE-2024-28869
was published
for
github.com/traefik/traefik
(Go)
Apr 12, 2024
CoreWCF NetFraming based services can leave connections open when they should be closed
High
CVE-2024-28252
was published
for
CoreWCF.NetFramingBase
(NuGet)
Mar 15, 2024
A vulnerability in Node.js HTTP servers allows an attacker to send a specially crafted HTTP...
High
Unreviewed
CVE-2024-22019
was published
Feb 20, 2024
A vulnerability was found in Uniway Router up to 2.0. It has been rated as critical. Affected by...
High
Unreviewed
CVE-2023-7209
was published
Jan 7, 2024
For certificates that utilize the auto-renew feature in Puppet Server, a flaw exists which...
High
Unreviewed
CVE-2023-5255
was published
Oct 3, 2023
DOS vulnerability that could allow an attacker to register a new VNF (Virtual Network Function)...
High
Unreviewed
CVE-2023-4882
was published
Oct 3, 2023
Configuration defects in the secure OS module.Successful exploitation of this vulnerability will...
High
Unreviewed
CVE-2022-48500
was published
Jun 19, 2023
Configuration defects in the secure OS module.Successful exploitation of this vulnerability will...
High
Unreviewed
CVE-2022-48499
was published
Jun 19, 2023
Configuration defects in the secure OS module.Successful exploitation of this vulnerability will...
High
Unreviewed
CVE-2022-48489
was published
Jun 19, 2023
The Call Blocker application 6.6.3 for Android incorrectly opens a key component that an attacker...
High
Unreviewed
CVE-2023-29726
was published
May 31, 2023
A vulnerability classified as critical has been found in Ubiquiti EdgeRouter X up to 2.0.9-hotfix...
High
Unreviewed
CVE-2023-2379
was published
Apr 28, 2023
A vulnerability exists in a SDM600 endpoint. An attacker could exploit this vulnerability by...
High
Unreviewed
CVE-2022-3684
was published
Mar 28, 2023
A vulnerability was found in Filseclab Twister Antivirus 8. It has been declared as problematic....
High
Unreviewed
CVE-2023-1443
was published
Mar 17, 2023
GoPistolet vulnerable to Improper Resource Shutdown or Release
High
CVE-2015-10085
was published
for
github.com/gopistolet/gopistolet
(Go)
Feb 21, 2023
ProTip!
Advisories are also available from the
GraphQL API