GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,801
Erlang
36
GitHub Actions
29
Go
2,380
Maven
5,000+
npm
4,010
NuGet
720
pip
3,810
Pub
12
RubyGems
930
Rust
986
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
927 advisories
Filter by severity
An issue was discovered in GitLab CE/EE affecting all versions starting from 11.10 prior to 17.0...
Moderate
Unreviewed
CVE-2024-3114
was published
Aug 8, 2024
A Denial of Service (DoS) condition has been discovered in GitLab CE/EE affecting all versions...
Moderate
Unreviewed
CVE-2024-4210
was published
Aug 8, 2024
ReDoS flaw in RefMatcher when matching branch names using wildcards in GitLab EE/CE affecting all...
Moderate
Unreviewed
CVE-2024-2800
was published
Aug 8, 2024
Multiple unauthenticated Denial-of-Service (DoS) vulnerabilities exist in the AP Certificate...
Moderate
Unreviewed
CVE-2024-42397
was published
Aug 6, 2024
Multiple unauthenticated Denial-of-Service (DoS) vulnerabilities exist in the Soft AP daemon...
Moderate
Unreviewed
CVE-2024-42399
was published
Aug 6, 2024
Multiple unauthenticated Denial-of-Service (DoS) vulnerabilities exist in the Soft AP daemon...
Moderate
Unreviewed
CVE-2024-42398
was published
Aug 6, 2024
An issue was discovered in Kibana where a user with Viewer role could cause a Kibana instance to...
Moderate
Unreviewed
CVE-2024-37281
was published
Jul 31, 2024
A logic issue was addressed with improved state management. This issue is fixed in macOS Sonoma...
Moderate
Unreviewed
CVE-2024-27862
was published
Jul 30, 2024
An issue in Huawei Technologies opengauss (openGauss 5.0.0 build) v.7.3.0 allows a local attacker...
Moderate
Unreviewed
CVE-2024-40575
was published
Jul 24, 2024
An issue in the Certificate Authenticated Session Establishment (CASE) protocol for establishing...
Moderate
Unreviewed
CVE-2024-3297
was published
Jul 24, 2024
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). ...
Moderate
Unreviewed
CVE-2024-21171
was published
Jul 17, 2024
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). ...
Moderate
Unreviewed
CVE-2024-21163
was published
Jul 17, 2024
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). ...
Moderate
Unreviewed
CVE-2024-21177
was published
Jul 17, 2024
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported...
Moderate
Unreviewed
CVE-2024-21173
was published
Jul 17, 2024
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported...
Moderate
Unreviewed
CVE-2024-21185
was published
Jul 17, 2024
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). ...
Moderate
Unreviewed
CVE-2024-21161
was published
Jul 17, 2024
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported...
Moderate
Unreviewed
CVE-2024-20996
was published
Jul 17, 2024
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security:...
Moderate
Unreviewed
CVE-2024-21142
was published
Jul 17, 2024
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported...
Moderate
Unreviewed
CVE-2024-21127
was published
Jul 17, 2024
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). ...
Moderate
Unreviewed
CVE-2024-21130
was published
Jul 17, 2024
Vulnerability in the Oracle Database Portable Clusterware component of Oracle Database Server. ...
Moderate
Unreviewed
CVE-2024-21126
was published
Jul 17, 2024
A flaw was found in libtiff. This flaw allows an attacker to create a crafted tiff file, forcing...
Moderate
Unreviewed
CVE-2024-6716
was published
Jul 15, 2024
A flaw was found in OpenJPEG. Maliciously constructed pictures can cause the program to enter a...
Moderate
Unreviewed
CVE-2023-39327
was published
Jul 13, 2024
A flaw was found in OpenJPEG. A resource exhaustion can occur in the opj_t1_decode_cblks function...
Moderate
Unreviewed
CVE-2023-39329
was published
Jul 13, 2024
In Docker Desktop on Windows before v4.31.0 allows a user in the docker-users group to cause a...
Moderate
Unreviewed
CVE-2024-5652
was published
Jul 9, 2024
ProTip!
Advisories are also available from the
GraphQL API