GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,248
Erlang
31
GitHub Actions
21
Go
2,016
Maven
5,000+
npm
3,721
NuGet
662
pip
3,400
Pub
11
RubyGems
890
Rust
852
Swift
36
Unreviewed advisories
All unreviewed
5,000+
341 advisories
Filter by severity
An attacker could send a specially crafted message to Crimson 3.1 (Build versions prior to 3119...
Moderate
Unreviewed
CVE-2020-27283
was published
May 24, 2022
An issue was discovered in res_pjsip_session.c in Digium Asterisk through 13.38.1; 14.x, 15.x,...
Moderate
Unreviewed
CVE-2021-26906
was published
May 24, 2022
A vulnerability has been found in Open5GS up to 2.4.10 and classified as problematic. This...
High
Unreviewed
CVE-2022-3354
was published
Sep 29, 2022
A potential DOS vulnerability was discovered in all versions of Gitlab starting from 13.4.x (>=13...
Moderate
Unreviewed
CVE-2020-26411
was published
May 24, 2022
A vulnerability in the ingress packet processing function of Cisco IOS XR Software for Cisco ASR...
High
Unreviewed
CVE-2020-26070
was published
May 24, 2022
D-Link Wireless AC1200 Dual Band VDSL ADSL Modem Router DSL-3782 Firmware v1.01 allows...
Moderate
Unreviewed
CVE-2022-35191
was published
Aug 24, 2022
D-link DIR-816 A2_v1.10CNB04.img reboots the router without authentication via /goform/doReboot....
High
Unreviewed
CVE-2022-37133
was published
Aug 23, 2022
Failing DTLS handshakes may cause throttling to block processing of records
High
CVE-2022-39368
was published
for
org.eclipse.californium:scandium
(Maven)
Nov 9, 2022
A vulnerability was found in Linux Kernel. It has been rated as problematic. This issue affects...
Moderate
Unreviewed
CVE-2022-3630
was published
Oct 21, 2022
A vulnerability was found in Linux Kernel and classified as problematic. Affected by this issue...
Low
Unreviewed
CVE-2022-3624
was published
Oct 21, 2022
A vulnerability has been found in Linux Kernel and classified as problematic. This vulnerability...
Moderate
Unreviewed
CVE-2022-3619
was published
Oct 21, 2022
Unless a nameserver is providing authoritative service for one or more zones and at least one...
Moderate
Unreviewed
CVE-2020-8619
was published
May 24, 2022
EnumStringValues vulnerable to Uncontrolled Resource Consumption
Low
CVE-2020-36620
was published
for
EnumStringValues
(NuGet)
Dec 21, 2022
A vulnerability was found in emmflo yuko-bot. It has been declared as problematic. This...
High
Unreviewed
CVE-2014-125066
was published
Jan 8, 2023
A vulnerability has been found in luelista miniConf up to 1.7.6 and classified as problematic....
High
Unreviewed
CVE-2015-10025
was published
Jan 7, 2023
A vulnerability was found in Exiv2. It has been classified as problematic. This affects the...
Moderate
Unreviewed
CVE-2022-3953
was published
Nov 11, 2022
Jetty SslConnection does not release pooled ByteBuffers in case of errors
High
CVE-2022-2191
was published
for
org.eclipse.jetty:jetty-server
(Maven)
Jul 7, 2022
A vulnerability classified as problematic has been found in Kakao PotPlayer. This affects an...
High
Unreviewed
CVE-2022-4246
was published
Dec 1, 2022
A vulnerability was found in styler_praat_scripts. It has been classified as problematic....
Moderate
Unreviewed
CVE-2021-4280
was published
Dec 25, 2022
Improper Resource Shutdown or Release vulnerability in Mitsubishi Electric Corporation MELSEC iQ...
High
Unreviewed
CVE-2022-33324
was published
Dec 23, 2022
The sqlite3VdbeExec function in vdbe.c in SQLite before 3.8.9 does not properly implement...
High
Unreviewed
CVE-2015-3415
was published
May 14, 2022
Cleanup errors in some data cache evictions for some Intel(R) Processors may allow an...
Low
Unreviewed
CVE-2020-0549
was published
May 24, 2022
A vulnerability classified as problematic has been found in SourceCodester Gym Management System....
Moderate
Unreviewed
CVE-2022-2776
was published
Aug 12, 2022
drivers/hid/hid-cp2112.c in the Linux kernel 4.9.x before 4.9.9 uses a spinlock without...
Moderate
Unreviewed
CVE-2017-8071
was published
May 17, 2022
PingID Windows Login prior to 2.8 is vulnerable to a denial of service condition on local...
Moderate
Unreviewed
CVE-2022-23717
was published
Jul 1, 2022
ProTip!
Advisories are also available from the
GraphQL API