GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,224
Erlang
31
GitHub Actions
19
Go
1,990
Maven
5,000+
npm
3,706
NuGet
661
pip
3,336
Pub
11
RubyGems
884
Rust
845
Swift
36
Unreviewed advisories
All unreviewed
5,000+
416 advisories
Filter by severity
SpiceDB: LookupSubjects may return partial results if a specific kind of relation is used
Low
CVE-2024-32001
was published
for
github.com/authzed/spicedb
(Go)
Apr 10, 2024
An issue was discovered in Exynos Mobile Processor and Modem for Exynos Modem 5123, Exynos Modem...
High
Unreviewed
CVE-2023-29092
was published
May 9, 2023
An Improper Handling of Exceptional Conditions vulnerability in the Class of Service daemon (cosd...
Moderate
Unreviewed
CVE-2024-21610
was published
Apr 12, 2024
An Improper Handling of Exceptional Conditions vulnerability in the routing protocol daemon (rpd)...
High
Unreviewed
CVE-2024-30382
was published
Apr 12, 2024
Traefik vulnerable to denial of service with Content-length header
High
CVE-2024-28869
was published
for
github.com/traefik/traefik
(Go)
Apr 12, 2024
An Improper Handling of Exceptional Conditions vulnerability in Juniper Networks Junos OS and...
Moderate
Unreviewed
CVE-2024-30380
was published
Apr 16, 2024
@hono/node-server has Denial of Service risk when receiving Host header that cannot be parsed
High
CVE-2024-32652
was published
for
@hono/node-server
(npm)
Apr 19, 2024
bgpd/bgp_flowspec.c in FRRouting (FRR) before 8.4.3 mishandles an nlri length of zero, aka a ...
Critical
Unreviewed
CVE-2023-38406
was published
Nov 6, 2023
In the Linux kernel, the following vulnerability has been resolved:
drm/buddy: Fix alloc_range()...
Low
Unreviewed
CVE-2024-26911
was published
Apr 17, 2024
D-Link G416 httpd Improper Handling of Exceptional Conditions Information Disclosure...
Moderate
Unreviewed
CVE-2023-50212
was published
May 3, 2024
Authorization bypass in github.com/dgrijalva/jwt-go
High
CVE-2020-26160
was published
for
github.com/dgrijalva/jwt-go
(Go)
May 18, 2021
github.com/nats-io/nats-server Import token permissions checking not enforced
High
GHSA-j756-f273-xhp4
was published
for
github.com/nats-io/nats-server/v2
(Go)
May 21, 2021
In the Linux kernel, the following vulnerability has been resolved:
net/smc: Fix possible access...
Moderate
Unreviewed
CVE-2022-48673
was published
May 3, 2024
In the Linux kernel, the following vulnerability has been resolved:
net: tls: handle backlogging...
Moderate
Unreviewed
CVE-2024-26584
was published
Feb 21, 2024
Windows Hyper-V Denial of Service Vulnerability
Moderate
Unreviewed
CVE-2024-20699
was published
Jan 9, 2024
Improper handling of exceptional conditions in Secure Folder prior to SMR Jul-2024 Release 1...
Moderate
Unreviewed
CVE-2024-20894
was published
Jul 2, 2024
Malicious Matrix homeserver can leak truncated message content of messages it shouldn't have access to
Moderate
CVE-2024-39691
was published
for
matrix-appservice-irc
(npm)
Jul 5, 2024
smtp_mailaddr in smtp_session.c in OpenSMTPD 6.6, as used in OpenBSD 6.6 and other products,...
High
Unreviewed
CVE-2020-7247
was published
May 24, 2022
Apache Struts vulnerable to remote arbitrary command execution due to improper input validation
Critical
CVE-2017-5638
was published
for
org.apache.struts:struts2-core
(Maven)
Oct 18, 2018
Inappropriate implementation in V8 in Google Chrome prior to 95.0.4638.69 allowed a remote...
High
Unreviewed
CVE-2021-38003
was published
Nov 24, 2021
An Improper Handling of Exceptional Conditions vulnerability in the routing protocol daemon (RPD)...
High
Unreviewed
CVE-2024-39552
was published
Jul 11, 2024
An Improper Handling of Exceptional Conditions vulnerability in the routing protocol daemon (rpd)...
High
Unreviewed
CVE-2024-39560
was published
Jul 11, 2024
An Improper Handling of Exceptional Conditions vulnerability in the Routing Protocol Daemon (rpd)...
High
Unreviewed
CVE-2024-39541
was published
Jul 11, 2024
Apache Tomcat - Denial of Service
High
CVE-2024-34750
was published
for
org.apache.tomcat.embed:tomcat-embed-core
(Maven)
Jul 3, 2024
Incomplete WebAssembly exception handing could have led to a use-after-free. This vulnerability...
Critical
Unreviewed
CVE-2024-7521
was published
Aug 6, 2024
ProTip!
Advisories are also available from the
GraphQL API