GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,801
Erlang
36
GitHub Actions
29
Go
2,380
Maven
5,000+
npm
4,010
NuGet
720
pip
3,810
Pub
12
RubyGems
930
Rust
986
Swift
38
Unreviewed advisories
All unreviewed
5,000+
1,266 advisories
Filter by severity
Windows Event Tracing Discretionary Access Control List Denial of Service Vulnerability.
Moderate
Unreviewed
CVE-2022-21839
was published
Jan 12, 2022
Windows Hyper-V Denial of Service Vulnerability.
Moderate
Unreviewed
CVE-2022-21847
was published
Jan 12, 2022
DirectX Graphics Kernel File Denial of Service Vulnerability.
Moderate
Unreviewed
CVE-2022-21918
was published
Jan 12, 2022
Z-Wave devices based on Silicon Labs 500 series chipsets using S0 authentication are susceptible...
Moderate
Unreviewed
CVE-2020-9059
was published
Jan 11, 2022
Z-Wave devices based on Silicon Labs 500 series chipsets using S2, including but likely not...
Moderate
Unreviewed
CVE-2020-9060
was published
Jan 11, 2022
Regular Expression Denial of Service in postcss
Moderate
CVE-2021-23382
was published
for
postcss
(npm)
Jan 7, 2022
In libming 0.4.8, a memory exhaustion vulnerability exist in the function cws2fws in util/main.c....
Moderate
Unreviewed
CVE-2021-44590
was published
Jan 7, 2022
Hash collision in typelevel jawn
Moderate
CVE-2022-21653
was published
for
org.typelevel:jawn-parser
(Maven)
Jan 6, 2022
Regular expression deinal of service (ReDoS) in is-my-json-valid
Moderate
CVE-2018-1107
was published
for
is-my-json-valid
(npm)
Jan 6, 2022
Regular Expression Denial of Service (ReDoS) in lodash
Moderate
CVE-2020-28500
was published
for
lodash
(npm)
Jan 6, 2022
jsx-slack insufficient patch for CVE-2021-43838 ReDoS
Moderate
CVE-2021-43843
was published
for
jsx-slack
(npm)
Jan 6, 2022
Improper validation of LLM utility timers availability can lead to denial of service in...
Moderate
Unreviewed
CVE-2021-30348
was published
Jan 4, 2022
A flaw was found in the hivex library. This flaw allows an attacker to input a specially crafted...
Moderate
Unreviewed
CVE-2021-3622
was published
Dec 24, 2021
A vulnerability in Atomix v3.1.5 allows attackers to cause a denial of service (DoS) via a Raft session flooding attack using Raft OpenSessionRequest messages.
Moderate
CVE-2020-35210
was published
for
io.atomix:atomix
(Maven)
Dec 17, 2021
Windows Hyper-V Denial of Service Vulnerability
Moderate
Unreviewed
CVE-2021-43246
was published
Dec 16, 2021
In getOffsetBeforeAfter of TextLine.java, there is a possible denial of service due to resource...
Moderate
Unreviewed
CVE-2021-0993
was published
Dec 16, 2021
An issue has been discovered in GitLab CE/EE affecting all versions starting from 11.0 before 14...
Moderate
Unreviewed
CVE-2021-39932
was published
Dec 14, 2021
A vulnerable regular expression pattern in GitLab CE/EE since version 8.15 before 14.3.6, all...
Moderate
Unreviewed
CVE-2021-39938
was published
Dec 14, 2021
An uncontrolled resource consumption vulnerability in GitLab Runner affecting all versions...
Moderate
Unreviewed
CVE-2021-39939
was published
Dec 14, 2021
Prototype pollution in paypal-adaptive
Moderate
CVE-2020-7643
was published
for
paypal-adaptive
(npm)
Dec 10, 2021
Uncontrolled Resource Consumption in strapi
Moderate
CVE-2020-8123
was published
for
strapi-admin
(npm)
Dec 10, 2021
A vulnerability found in UniFi Switch firmware Version 5.43.35 and earlier allows a malicious...
Moderate
Unreviewed
CVE-2021-44527
was published
Dec 8, 2021
Insufficient Input Validation in Web Applications operating on Business-DNA Solutions GmbH’s...
Moderate
Unreviewed
CVE-2021-42120
was published
Dec 1, 2021
The Reviews Plus WordPress plugin before 1.2.14 does not validate the submitted rating, allowing...
Moderate
Unreviewed
CVE-2021-24894
was published
Nov 24, 2021
Dell Networking OS10, versions 10.4.3.x, 10.5.0.x, 10.5.1.x & 10.5.2.x, contain an uncontrolled...
Moderate
Unreviewed
CVE-2021-36310
was published
Nov 21, 2021
ProTip!
Advisories are also available from the
GraphQL API