GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,189
Erlang
31
GitHub Actions
19
Go
1,985
Maven
5,000+
npm
3,701
NuGet
657
pip
3,326
Pub
11
RubyGems
882
Rust
836
Swift
35
Unreviewed advisories
All unreviewed
5,000+
809 advisories
Filter by severity
StorageGRID (formerly StorageGRID Webscale) versions prior to 11.9 are susceptible to a Denial of...
Moderate
Unreviewed
CVE-2024-21994
was published
Nov 8, 2024
Eclipse Jetty's PushSessionCacheFilter can cause remote DoS attacks
Low
CVE-2024-6762
was published
for
org.eclipse.jetty:jetty-servlets
(Maven)
Oct 14, 2024
Eclipse Jetty's ThreadLimitHandler.getRemote() vulnerable to remote DoS attacks
Moderate
CVE-2024-8184
was published
for
org.eclipse.jetty:jetty-server
(Maven)
Oct 14, 2024
An issue in Espressif Esp idf v5.3.0 allows attackers to cause a Denial of Service (DoS) via a...
High
Unreviewed
CVE-2024-51428
was published
Nov 7, 2024
This vulnerability exists in the Wave 2.0 due to missing rate limiting on OTP requests in an API...
High
Unreviewed
CVE-2024-51557
was published
Nov 4, 2024
Marinus Pfund, member of the AXIS OS Bug Bounty Program,
has found the VAPIX API alwaysmulti.cgi...
Moderate
Unreviewed
CVE-2024-6509
was published
Sep 10, 2024
Apache Tomcat Allocation of Resources Without Limits or Throttling vulnerability
High
CVE-2024-38286
was published
for
org.apache.tomcat:tomcat-util
(Maven)
Nov 7, 2024
When parsing a multipart form (either explicitly with Request.ParseMultipartForm or implicitly...
Moderate
Unreviewed
CVE-2023-45290
was published
Mar 6, 2024
A security vulnerability in HPE IceWall Agent products could be exploited remotely to cause a...
Moderate
Unreviewed
CVE-2024-22436
was published
Mar 26, 2024
In the Linux kernel, the following vulnerability has been resolved:
crypto: sun8i-ss - Fix...
Moderate
Unreviewed
CVE-2021-47057
was published
Mar 1, 2024
An issue in Open Networking Foundations sdran-in-a-box v.1.4.3 and onos-a1t v.0.2.3 allows a...
High
Unreviewed
CVE-2024-48809
was published
Nov 4, 2024
In multiple functions of ShortcutService.java, there is a possible persistent DOS due to resource...
Moderate
Unreviewed
CVE-2024-31314
was published
Jul 9, 2024
In the Linux kernel, the following vulnerability has been resolved:
ipv6: fix race condition...
Moderate
Unreviewed
CVE-2024-35969
was published
May 20, 2024
In the Linux kernel, the following vulnerability has been resolved:
f2fs: compress: fix to cover...
High
Unreviewed
CVE-2024-34027
was published
Jun 24, 2024
In the Linux kernel, the following vulnerability has been resolved:
net: lantiq: fix memory...
High
Unreviewed
CVE-2021-47137
was published
Mar 25, 2024
Improper resource initialization handling in firmware of some Solidigm DC Products may allow an...
Critical
Unreviewed
CVE-2024-47967
was published
Oct 7, 2024
Wildfly vulnerable to denial of service
Moderate
CVE-2024-4029
was published
for
org.wildfly:wildfly-domain-http
(Maven)
May 2, 2024
A vulnerability, which was classified as problematic, has been found in Tongda OA 2017 up to 11.7...
Moderate
Unreviewed
CVE-2024-10599
was published
Nov 1, 2024
VMware ESXi, Workstation, and Fusion contain an information disclosure vulnerability in the UHCI...
High
Unreviewed
CVE-2024-22255
was published
Mar 5, 2024
Mattermost Server vulnerable to application crash from attacker-generated large response
Moderate
CVE-2024-47401
was published
for
github.com/mattermost/mattermost/server/v8
(Go)
Oct 29, 2024
Potential race conditions in IndexedDB could have caused memory corruption, leading to a...
Critical
Unreviewed
CVE-2024-10468
was published
Oct 29, 2024
The O-RAN E2T I-Release Prometheus metric Increment function can crash in sctpThread.cpp for...
High
Unreviewed
CVE-2024-34046
was published
Apr 30, 2024
In the Linux kernel, the following vulnerability has been resolved:
HID: sony: Fix a potential...
Moderate
Unreviewed
CVE-2023-52529
was published
Mar 3, 2024
In the Linux kernel, the following vulnerability has been resolved:
Bluetooth: hci_codec: Fix...
Moderate
Unreviewed
CVE-2023-52518
was published
Mar 3, 2024
Improper resource management in firmware of some Solidigm DC Products may allow an attacker to...
Moderate
Unreviewed
CVE-2024-47969
was published
Oct 8, 2024
ProTip!
Advisories are also available from the
GraphQL API