GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,801
Erlang
36
GitHub Actions
29
Go
2,380
Maven
5,000+
npm
4,005
NuGet
720
pip
3,809
Pub
12
RubyGems
928
Rust
986
Swift
38
Unreviewed advisories
All unreviewed
5,000+
12 advisories
Filter by severity
letmein connection limiter allows an arbitrary amount of simultaneous connections
Moderate
CVE-2025-52570
was published
for
letmeind
(Rust)
Jun 23, 2025
ring has some AES functions that may panic when overflow checking is enabled in
Moderate
CVE-2025-4432
was published
for
ring
(Rust)
May 9, 2025
Web Push Denial of Service via malicious Web Push endpoint
Moderate
GHSA-fc83-9jwq-gc2m
was published
for
web-push
(Rust)
Mar 24, 2025
Crash due to uncontrolled recursion in protobuf crate
Moderate
GHSA-2gh3-rmm4-6rq5
was published
for
protobuf
(Rust)
Mar 7, 2025
Some AES functions may panic when overflow checking is enabled in ring
Moderate
GHSA-4p46-pwfr-66x6
was published
for
ring
(Rust)
Mar 7, 2025
zlib-rs stack overflow during decompression with malicious input
Moderate
GHSA-j3px-q95c-9683
was published
for
libz-rs-sys
(Rust)
Nov 14, 2024
Miniscript allows stack consumption
Moderate
CVE-2024-44073
was published
for
miniscript
(Rust)
Aug 19, 2024
h2 servers vulnerable to degradation of service with CONTINUATION Flood
Moderate
GHSA-q6cp-qfwq-4gcv
was published
for
h2
(Rust)
Apr 5, 2024
Memory over-allocation in evm crate
Moderate
CVE-2021-29511
was published
for
evm
(Rust)
Jan 30, 2024
Unsafe parsing in SWHKD
Moderate
CVE-2022-27819
was published
for
Simple-Wayland-HotKey-Daemon
(Rust)
Apr 8, 2022
ProTip!
Advisories are also available from the
GraphQL API