GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,510
Erlang
33
GitHub Actions
25
Go
2,213
Maven
5,000+
npm
3,871
NuGet
696
pip
3,643
Pub
12
RubyGems
913
Rust
922
Swift
38
Unreviewed advisories
All unreviewed
5,000+
433 advisories
Filter by severity
Comarch ERP XL client is vulnerable to MS SQL protocol downgrade request from a server side, what...
High
Unreviewed
CVE-2023-4537
was published
Feb 15, 2024
In the Linux kernel, the following vulnerability has been resolved:
net: tls: handle backlogging...
Moderate
Unreviewed
CVE-2024-26584
was published
Feb 21, 2024
In the Linux kernel, the following vulnerability has been resolved:
parisc: Clear stale IIR...
Moderate
Unreviewed
CVE-2021-46928
was published
Feb 27, 2024
D-Link DIR-823G A1V1.0.2B05 was discovered to contain a Null-pointer dereferences in sub_4110f4()...
Moderate
Unreviewed
CVE-2024-27662
was published
Feb 29, 2024
JFrog Artifactory later than version 7.17.4 but prior to version 7.77.0 is vulnerable to an issue...
Moderate
Unreviewed
CVE-2023-42509
was published
Mar 7, 2024
An improper error handling vulnerability in LabVIEW may result in remote code execution. ...
High
Unreviewed
CVE-2024-23609
was published
Mar 11, 2024
An improper error handling vulnerability in LabVIEW may result in remote code execution. ...
High
Unreviewed
CVE-2024-23612
was published
Mar 11, 2024
there is a possible way to bypass due to a logic error in the code. This could lead to local...
High
Unreviewed
CVE-2024-29748
was published
Apr 5, 2024
SpiceDB: LookupSubjects may return partial results if a specific kind of relation is used
Low
CVE-2024-32001
was published
for
github.com/authzed/spicedb
(Go)
Apr 10, 2024
An Improper Handling of Exceptional Conditions vulnerability in the Class of Service daemon (cosd...
Moderate
Unreviewed
CVE-2024-21610
was published
Apr 12, 2024
Traefik vulnerable to denial of service with Content-length header
High
CVE-2024-28869
was published
for
github.com/traefik/traefik
(Go)
Apr 12, 2024
An Improper Handling of Exceptional Conditions vulnerability in the routing protocol daemon (rpd)...
High
Unreviewed
CVE-2024-30382
was published
Apr 12, 2024
An Improper Handling of Exceptional Conditions vulnerability in Juniper Networks Junos OS and...
Moderate
Unreviewed
CVE-2024-30380
was published
Apr 16, 2024
In the Linux kernel, the following vulnerability has been resolved:
drm/buddy: Fix alloc_range()...
Low
Unreviewed
CVE-2024-26911
was published
Apr 17, 2024
@hono/node-server has Denial of Service risk when receiving Host header that cannot be parsed
High
CVE-2024-32652
was published
for
@hono/node-server
(npm)
Apr 19, 2024
D-Link G416 httpd Improper Handling of Exceptional Conditions Information Disclosure...
Moderate
Unreviewed
CVE-2023-50212
was published
May 3, 2024
In the Linux kernel, the following vulnerability has been resolved:
net/smc: Fix possible access...
Moderate
Unreviewed
CVE-2022-48673
was published
May 3, 2024
mintplex-labs/anything-llm is vulnerable to multiple security issues due to improper input...
High
Unreviewed
CVE-2024-3152
was published
Jun 6, 2024
Improper input validation in OneFlow-Inc. Oneflow v0.9.1 allows attackers to cause a Denial of...
High
Unreviewed
CVE-2024-36730
was published
Jun 6, 2024
In mintplex-labs/anything-llm, a vulnerability exists in the thread update process that allows...
High
Unreviewed
CVE-2024-3150
was published
Jun 6, 2024
Improper handling of exceptional conditions in Secure Folder prior to SMR Jul-2024 Release 1...
Moderate
Unreviewed
CVE-2024-20894
was published
Jul 2, 2024
Apache Tomcat - Denial of Service
High
CVE-2024-34750
was published
for
org.apache.tomcat.embed:tomcat-embed-core
(Maven)
Jul 3, 2024
Malicious Matrix homeserver can leak truncated message content of messages it shouldn't have access to
Moderate
CVE-2024-39691
was published
for
matrix-appservice-irc
(npm)
Jul 5, 2024
An Improper Handling of Exceptional Conditions vulnerability in the routing protocol daemon (rpd)...
High
Unreviewed
CVE-2024-39560
was published
Jul 11, 2024
An Improper Handling of Exceptional Conditions vulnerability in the Routing Protocol Daemon (RPD)...
High
Unreviewed
CVE-2024-39555
was published
Jul 11, 2024
ProTip!
Advisories are also available from the
GraphQL API