GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Language support
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,028
Erlang
29
GitHub Actions
16
Go
1,832
Maven
5,000+
npm
3,573
NuGet
632
pip
3,158
Pub
10
RubyGems
847
Rust
797
Swift
34
Unreviewed advisories
All unreviewed
5,000+
1,139 advisories
Filter by severity
PrivX before 34.0 allows data exfiltration and denial of service via the REST API. This is fixed...
High
Unreviewed
CVE-2024-30170
was published
Aug 6, 2024
fast-xml-parser vulnerable to ReDOS at currency parsing
High
CVE-2024-41818
was published
for
fast-xml-parser
(npm)
Jul 29, 2024
Argo CD Unauthenticated Denial of Service (DoS) Vulnerability via /api/webhook Endpoint
High
CVE-2024-40634
was published
for
github.com/argoproj/argo-cd
(Go)
Jul 22, 2024
A Denial of Service vulnerability was identified in GitHub Enterprise Server that allowed an...
High
Unreviewed
CVE-2024-5795
was published
Jul 17, 2024
Fiona affected by CVE-2020-14152 related to madler-zlib
High
GHSA-g4m4-9q4c-mfw6
was published
for
fiona
(pip)
Jul 16, 2024
An Uncontrolled Resource Consumption vulnerability in the H.323 ALG (Application Layer Gateway)...
High
Unreviewed
CVE-2024-39551
was published
Jul 11, 2024
An Uncontrolled Resource Consumption vulnerability in the aftmand process of Juniper Networks...
High
Unreviewed
CVE-2024-39548
was published
Jul 11, 2024
A vulnerability in gaizhenbiao/chuanhuchatgpt version 20240410 allows any user to restart the...
High
Unreviewed
CVE-2024-6036
was published
Jul 11, 2024
An Uncontrolled Resource Consumption vulnerability in the
Layer 2 Address Learning Daemon ...
High
Unreviewed
CVE-2024-39557
was published
Jul 11, 2024
A vulnerability in gaizhenbiao/chuanhuchatgpt version 20240410 allows an attacker to create...
High
Unreviewed
CVE-2024-6037
was published
Jul 11, 2024
Next.js Denial of Service (DoS) condition
High
CVE-2024-39693
was published
for
next
(npm)
Jul 10, 2024
speaker vulnerable to Denial of Service
High
CVE-2024-21526
was published
for
speaker
(npm)
Jul 10, 2024
images vulnerable to Denial of Service
High
CVE-2024-21523
was published
for
images
(npm)
Jul 10, 2024
A vulnerability was discovered in Samsung Mobile Processor, Wearable Processor, and Modems with...
High
Unreviewed
CVE-2024-29153
was published
Jul 9, 2024
Microsoft Security Advisory CVE-2024-30105 | .NET Denial of Service Vulnerability
High
CVE-2024-30105
was published
for
System.Text.Json
(NuGet)
Jul 9, 2024
Windows Online Certificate Status Protocol (OCSP) Server Denial of Service Vulnerability
High
Unreviewed
CVE-2024-38067
was published
Jul 9, 2024
Windows Online Certificate Status Protocol (OCSP) Server Denial of Service Vulnerability
High
Unreviewed
CVE-2024-38068
was published
Jul 9, 2024
Windows Online Certificate Status Protocol (OCSP) Server Denial of Service Vulnerability
High
Unreviewed
CVE-2024-38031
was published
Jul 9, 2024
Windows Remote Desktop Gateway (RD Gateway) Denial of Service Vulnerability
High
Unreviewed
CVE-2024-38015
was published
Jul 9, 2024
In the Linux kernel, the following vulnerability has been resolved:
drm/i915/hwmon: Get rid of...
High
Unreviewed
CVE-2024-39479
was published
Jul 5, 2024
Apache Tomcat - Denial of Service
High
CVE-2024-34750
was published
for
org.apache.tomcat.embed:tomcat-embed-core
(Maven)
Jul 3, 2024
Uncontrolled Resource Consumption vulnerability in MESbook 20221021.03 version. An...
High
Unreviewed
CVE-2024-6427
was published
Jul 3, 2024
A flaw was found in the QEMU disk image utility (qemu-img) 'info' command. A specially crafted...
High
Unreviewed
CVE-2024-4467
was published
Jul 2, 2024
A path traversal vulnerability exists in gaizhenbiao/chuanhuchatgpt version 20240410, allowing...
High
Unreviewed
CVE-2024-6090
was published
Jun 27, 2024
ProTip!
Advisories are also available from the
GraphQL API