GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,785
Erlang
36
GitHub Actions
29
Go
2,358
Maven
5,000+
npm
3,979
NuGet
720
pip
3,777
Pub
12
RubyGems
924
Rust
981
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
388 advisories
Filter by severity
A denial-of-service vulnerability due to improper prioritization of network traffic over...
High
Unreviewed
CVE-2025-2403
was published
Jun 24, 2025
IBM InfoSphere Information Server 11.7.0.0 through 11.7.1.6 could allow a remote attacker to...
High
Unreviewed
CVE-2025-3221
was published
Jun 23, 2025
An allocation of resources without limits or throttling vulnerability has been reported to affect...
High
Unreviewed
CVE-2025-29872
was published
Jun 6, 2025
A flaw was found in libsoup. The SoupWebsocketConnection may accept a large WebSocket message,...
High
Unreviewed
CVE-2025-32049
was published
Apr 3, 2025
IBM Cognos Analytics 11.2.0, 11.2.1, 11.2.2, 11.2.3, 11.2.4, 12.0.0, 12.0.1, 12.0.2, 12.0.3, and...
High
Unreviewed
CVE-2025-25032
was published
Jun 11, 2025
An allocation of resources without limits or throttling vulnerability has been reported to affect...
High
Unreviewed
CVE-2025-22484
was published
Jun 6, 2025
An unauthenticated remote attacker may use an uncontrolled resource consumption in the IEC 61131...
High
Unreviewed
CVE-2018-25112
was published
Jun 4, 2025
A Allocation of Resources Without Limits or Throttling vulnerability in sslh allows attackers to...
High
Unreviewed
CVE-2025-46807
was published
Jun 2, 2025
An issue has been discovered in GitLab CE/EE affecting all versions before 17.10.7, 17.11 before...
High
Unreviewed
CVE-2025-0993
was published
May 22, 2025
Allocation of Resources Without Limits or Throttling vulnerability in Drupal Events Log Track...
High
Unreviewed
CVE-2025-4416
was published
May 21, 2025
Uncontrolled resource consumption in Remote Desktop Gateway Service allows an unauthorized...
High
Unreviewed
CVE-2025-26677
was published
May 13, 2025
When a BIG-IP HTTP/2 httprouter profile is configured on a virtual server, undisclosed responses...
High
Unreviewed
CVE-2025-36504
was published
May 8, 2025
Xenstore: guests can let run xenstored out of memory T[his CNA information record relates to...
High
Unreviewed
CVE-2022-42311
was published
Nov 1, 2022
In libtirpc before 1.3.3rc1, remote attackers could exhaust the file descriptors of a process...
High
Unreviewed
CVE-2021-46828
was published
Jul 21, 2022
In NotificationChannel of NotificationChannel.java, there is a possible failure to persist...
High
Unreviewed
CVE-2022-20485
was published
Dec 13, 2022
In NotificationChannel of NotificationChannel.java, there is a possible failure to persist...
High
Unreviewed
CVE-2022-20484
was published
Dec 13, 2022
In NotificationChannel of NotificationChannel.java, there is a possible failure to persist...
High
Unreviewed
CVE-2022-20480
was published
Dec 13, 2022
In NotificationChannel of NotificationChannel.java, there is a possible failure to persist...
High
Unreviewed
CVE-2022-20479
was published
Dec 13, 2022
In NotificationChannel of NotificationChannel.java, there is a possible failure to persist...
High
Unreviewed
CVE-2022-20478
was published
Dec 13, 2022
In NotificationChannel of NotificationChannel.java, there is a possible failure to persist...
High
Unreviewed
CVE-2022-20486
was published
Dec 13, 2022
In NotificationChannel of NotificationChannel.java, there is a possible failure to persist...
High
Unreviewed
CVE-2022-20487
was published
Dec 13, 2022
ImageMagick 7.0.7-0 has a memory exhaustion issue in ReadSUNImage in coders/sun.c.
High
Unreviewed
CVE-2017-14531
was published
May 13, 2022
The ReadVIFFImage function in coders/viff.c in ImageMagick 7.0.6-6 allows remote attackers to...
High
Unreviewed
CVE-2017-12692
was published
May 13, 2022
The ReadOneLayer function in coders/xcf.c in ImageMagick 7.0.6-6 allows remote attackers to cause...
High
Unreviewed
CVE-2017-12691
was published
May 13, 2022
The ReadBMPImage function in coders/bmp.c in ImageMagick 7.0.6-6 allows remote attackers to cause...
High
Unreviewed
CVE-2017-12693
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API