GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,876
Erlang
37
GitHub Actions
37
Go
2,526
Maven
5,000+
npm
4,189
NuGet
742
pip
3,968
Pub
12
RubyGems
947
Rust
1,030
Swift
39
Unreviewed advisories
All unreviewed
5,000+
1,237 advisories
Filter by severity
Pexip Infinity 27 before 28.0 allows remote attackers to trigger excessive resource consumption...
High
Unreviewed
CVE-2022-29286
was published
Jul 18, 2022
TEE_Malloc in Samsung mTower through 0.3.0 allows a trusted application to achieve Excessive...
High
Unreviewed
CVE-2022-38155
was published
Aug 12, 2022
An Allocation of Resources Without Limits or Throttling vulnerability in the Packet Forwarding...
High
Unreviewed
CVE-2022-22212
was published
Jul 21, 2022
A remote attacker with general user privilege can send a message to Teamplus Pro’s chat group...
High
Unreviewed
CVE-2022-32958
was published
Jul 21, 2022
Teamplus Pro community discussion has an ‘allocation of resource without limits or throttling’...
Moderate
Unreviewed
CVE-2022-35221
was published
Aug 3, 2022
Teamplus Pro community discussion function has an ‘allocation of resource without limits or...
Moderate
Unreviewed
CVE-2022-35220
was published
Aug 3, 2022
DDOS reflection amplification vulnerability in eAut module of Ruckus Wireless SmartZone...
High
Unreviewed
CVE-2021-36630
was published
Jan 18, 2023
Apache Avro Rust SDK's Reader could consume memory beyond allowed constraints
High
CVE-2022-36124
was published
for
apache-avro
(Rust)
Aug 10, 2022
On version 15.1.x before 15.1.3, 14.1.x before 14.1.3.1, and 13.1.x before 13.1.3.6, when the...
Moderate
Unreviewed
CVE-2021-23053
was published
May 24, 2022
Uncontrolled Resource Consumption in opcua
High
CVE-2022-25888
was published
for
opcua
(Rust)
Aug 24, 2022
IBM Security Guardium Big Data Intelligence 4.0 (SonarG) does not properly restrict the size or...
High
Unreviewed
CVE-2019-4338
was published
May 24, 2022
Duplicate of GHSA-m77f-652q-wwp4
High
GHSA-2gg5-7c4v-6xx2
was published
for
axum-core
(Rust)
Sep 15, 2022
•
withdrawn
Out-of-Memory Error in Bouncy Castle Crypto
High
CVE-2019-17359
was published
for
org.bouncycastle:bcprov-jdk14
(Maven)
Oct 17, 2019
An Environment (CWE-2) vulnerability exists in SoMachine Basic, all versions, and Modicon M221...
High
Unreviewed
CVE-2018-7821
was published
May 24, 2022
An Allocation of Resources Without Limits or Throttling vulnerability in the Packet Forwarding...
High
Unreviewed
CVE-2023-22403
was published
Jan 13, 2023
Z-Wave devices based on Silicon Labs 500 series chipsets using S0 authentication are susceptible...
Moderate
Unreviewed
CVE-2020-9059
was published
Jan 11, 2022
In tzdata there is possible memory corruption due to a mismatch between allocation and...
High
Unreviewed
CVE-2019-9290
was published
May 24, 2022
A flaw was found in Clmg, where with the help of a maliciously crafted pandore or bmp file with...
Moderate
Unreviewed
CVE-2022-1325
was published
Sep 1, 2022
In LibRaw, there is a memory corruption vulnerability within the "crxFreeSubbandData()" function ...
Moderate
Unreviewed
CVE-2020-35534
was published
Sep 2, 2022
sf-pcapng.c in libpcap before 1.9.1 does not properly validate the PHB header length before...
Moderate
Unreviewed
CVE-2019-15165
was published
May 24, 2022
rdiffweb vulnerable to potential DoS via memory consumption
High
CVE-2022-3298
was published
for
rdiffweb
(pip)
Sep 27, 2022
A potential DoS flaw was found in the virtio-fs shared file system daemon (virtiofsd)...
Low
Unreviewed
CVE-2020-10717
was published
May 24, 2022
GNU LibreDWG 0.9.3.2564 has an attempted excessive memory allocation in read_sections_map in...
Moderate
Unreviewed
CVE-2020-6610
was published
May 24, 2022
Dell PowerScale OneFS, versions 8.2.0.x-9.4.0.x contain allocation of Resources Without Limits or...
High
Unreviewed
CVE-2022-34439
was published
Oct 21, 2022
An issue was discovered in LibVNCServer before 0.9.13. libvncclient/rfbproto.c does not limit...
High
Unreviewed
CVE-2020-14405
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API