GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
40
GitHub Actions
40
Go
2,974
Maven
5,000+
npm
4,621
NuGet
788
pip
4,317
Pub
12
RubyGems
984
Rust
1,131
Swift
49
Unreviewed advisories
All unreviewed
5,000+
3,175 advisories
Filter by severity
IBM Spectrum Protect Operations Center 7.1 and 8.1 is vulnerable to a denial of service, caused...
Moderate
Unreviewed
CVE-2020-4956
was published
May 24, 2022
On BIG-IP APM version 16.0.x before 16.0.1.1, under certain conditions, when processing VPN...
High
Unreviewed
CVE-2021-22985
was published
May 24, 2022
On BIG-IP Advanced WAF and ASM version 16.0.x before 16.0.1.1, 15.1.x before 15.1.2, 14.1.x...
High
Unreviewed
CVE-2021-22976
was published
May 24, 2022
A vulnerability was found in openvswitch. A limitation in the implementation of userspace packet...
High
Unreviewed
CVE-2020-35498
was published
May 24, 2022
IBM Spectrum Protect Plus 10.1.0 through 10.1.7 could allow a remote user to inject arbitrary...
High
Unreviewed
CVE-2020-5023
was published
May 24, 2022
There is a denial of service (DoS) vulnerability in eCNS280 versions V100R005C00, V100R005C10....
High
Unreviewed
CVE-2021-22292
was published
May 24, 2022
A vulnerability in the REST API of Cisco Managed Services Accelerator (MSX) could allow an...
Moderate
Unreviewed
CVE-2021-1266
was published
May 24, 2022
ZIV Automation 4CCT-EA6-334126BF firmware version 3.23.80.27.36371, allows an unauthenticated,...
High
Unreviewed
CVE-2021-25909
was published
May 24, 2022
Resource management errors vulnerability in a robot controller of MELFA FR Series(controller ...
High
Unreviewed
CVE-2021-20586
was published
May 24, 2022
Moodle Client side denial of service via personal message
Moderate
CVE-2021-20185
was published
for
moodle/moodle
(Composer)
May 24, 2022
A memory exhaustion vulnerability in Trend Micro ServerProtect for Linux 3.0 could allow a local...
Moderate
Unreviewed
CVE-2021-25224
was published
May 24, 2022
A memory exhaustion vulnerability in Trend Micro ServerProtect for Linux 3.0 could allow a local...
Moderate
Unreviewed
CVE-2021-25226
was published
May 24, 2022
A memory exhaustion vulnerability in Trend Micro ServerProtect for Linux 3.0 could allow a local...
Moderate
Unreviewed
CVE-2021-25225
was published
May 24, 2022
A missing input validation in Nextcloud Server before 20.0.2, 19.0.5, 18.0.11 allows users to...
Moderate
Unreviewed
CVE-2020-8293
was published
May 24, 2022
A wrong check in Nextcloud Server 19 and prior allowed to perform a denial of service attack when...
High
Unreviewed
CVE-2020-8295
was published
May 24, 2022
The affected product has uncontrolled resource consumption issues, which may allow an attacker to...
High
Unreviewed
CVE-2020-27295
was published
May 24, 2022
This affects all versions of package jquery-ui; all versions of package org.fujion.webjars:jquery...
High
Unreviewed
CVE-2020-28488
was published
May 24, 2022
IBM MQ Internet Pass-Thru 2.1 and 9.2 could allow a remote user to cause a denial of service by...
High
Unreviewed
CVE-2020-4766
was published
May 24, 2022
A vulnerability in the system resource management of Cisco Elastic Services Controller (ESC)...
High
Unreviewed
CVE-2021-1312
was published
May 24, 2022
rfc822.c in Mutt through 2.0.4 allows remote attackers to cause a denial of service (mailbox...
Moderate
Unreviewed
CVE-2021-3181
was published
May 24, 2022
An issue was discovered in Open Design Alliance Drawings SDK before 2021.12. A memory corruption...
Moderate
Unreviewed
CVE-2021-25174
was published
May 24, 2022
A regular expression denial of service issue has been discovered in NuGet API affecting all...
Moderate
Unreviewed
CVE-2021-22168
was published
May 24, 2022
An attacker could cause a Prometheus denial of service in GitLab 13.7+ by sending an HTTP request...
High
Unreviewed
CVE-2021-22166
was published
May 24, 2022
There is a resource management errors vulnerability in Huawei P30. Local attackers construct...
Low
Unreviewed
CVE-2020-9203
was published
May 24, 2022
SAP NetWeaver AS ABAP, versions 740, 750, 751, 752, 753, 754, 755, allows an unauthenticated...
High
Unreviewed
CVE-2021-21446
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API