GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,467
Erlang
33
GitHub Actions
23
Go
2,172
Maven
5,000+
npm
3,832
NuGet
696
pip
3,508
Pub
12
RubyGems
910
Rust
907
Swift
38
Unreviewed advisories
All unreviewed
5,000+
1,051 advisories
Filter by severity
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Components Services...
Moderate
Unreviewed
CVE-2025-21505
was published
Jan 21, 2025
DoS in Cilium agent DNS proxy from crafted DNS responses
Moderate
CVE-2025-23028
was published
for
github.com/cilium/cilium
(Go)
Jan 22, 2025
In multiple locations, there is a possible failure to persist permissions settings due to...
High
Unreviewed
CVE-2024-49735
was published
Jan 22, 2025
Vulnerability in the MySQL Connectors product of Oracle MySQL (component: Connector/Python). ...
Moderate
Unreviewed
CVE-2025-21548
was published
Jan 21, 2025
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Information Schema)...
Moderate
Unreviewed
CVE-2025-21529
was published
Jan 21, 2025
Vulnerability in the Oracle Hospitality OPERA 5 product of Oracle Hospitality Applications ...
Critical
Unreviewed
CVE-2025-21547
was published
Jan 21, 2025
A memory leak exists in Palo Alto Networks PAN-OS software that enables an attacker to send a...
High
Unreviewed
CVE-2024-3382
was published
Apr 10, 2024
Litestar allows unbounded resource consumption (DoS vulnerability)
High
CVE-2024-52581
was published
for
litestar
(pip)
Nov 20, 2024
An allocation of resources without limits or throttling in Kibana can lead to a crash caused by a...
Moderate
Unreviewed
CVE-2024-52973
was published
Jan 21, 2025
IBM TXSeries for Multiplatforms 10.1 could allow a remote attacker to cause a denial of service...
High
Unreviewed
CVE-2024-41743
was published
Jan 19, 2025
IBM TXSeries for Multiplatforms 10.1 is vulnerable to a denial of service, caused by improper...
High
Unreviewed
CVE-2024-41742
was published
Jan 19, 2025
IBM Safer Payments 6.4.0.00 through 6.4.2.07, 6.5.0.00 through 6.5.0.05, and 6.6.0.00 through 6.6...
High
Unreviewed
CVE-2024-45662
was published
Jan 18, 2025
matrix-media-repo (MMR) allows denial of service/high operating costs through unauthenticated downloads
Moderate
CVE-2024-36403
was published
for
github.com/t2bot/matrix-media-repo
(Go)
Jan 16, 2025
Joomla! 1.03 does not restrict the number of "Search" Mambots, which allows remote attackers to...
Moderate
Unreviewed
CVE-2005-4650
was published
May 1, 2022
An unauthenticated remote attacker can cause a DoS in the controller due to uncontrolled resource...
High
Unreviewed
CVE-2018-25108
was published
Jan 16, 2025
Some HTTP/2 implementations are vulnerable to unconstrained interal data buffering, potentially...
High
Unreviewed
CVE-2019-9517
was published
May 24, 2022
Some HTTP/2 implementations are vulnerable to a flood of empty frames, potentially leading to a...
High
Unreviewed
CVE-2019-9518
was published
May 24, 2022
Some HTTP/2 implementations are vulnerable to a settings flood, potentially leading to a denial...
High
Unreviewed
CVE-2019-9515
was published
May 24, 2022
Some HTTP/2 implementations are vulnerable to a header leak, potentially leading to a denial of...
Moderate
Unreviewed
CVE-2019-9516
was published
May 24, 2022
mp4v2 v2.1.2 was discovered to contain a memory leak via the class MP4BytesProperty.
Moderate
Unreviewed
CVE-2023-33720
was published
May 26, 2023
Some HTTP/2 implementations are vulnerable to window size manipulation and stream prioritization...
High
Unreviewed
CVE-2019-9511
was published
May 24, 2022
Django denial-of-service in django.utils.html.strip_tags()
Moderate
CVE-2024-53907
was published
for
Django
(pip)
Dec 6, 2024
A allocation of resources without limits or throttling in Fortinet FortiSIEM 5.3 all versions, 5...
High
Unreviewed
CVE-2024-46667
was published
Jan 14, 2025
An allocation of resources without limits or throttling vulnerability [CWE-770] in FortiOS...
High
Unreviewed
CVE-2024-46668
was published
Jan 14, 2025
ProTip!
Advisories are also available from the
GraphQL API