GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,224
Erlang
31
GitHub Actions
19
Go
1,990
Maven
5,000+
npm
3,706
NuGet
661
pip
3,336
Pub
11
RubyGems
884
Rust
845
Swift
36
Unreviewed advisories
All unreviewed
5,000+
2,383 advisories
Filter by severity
In cloud foundry CAPI versions prior to 1.122, a denial-of-service attack in which a developer...
Moderate
Unreviewed
CVE-2021-22100
was published
Mar 26, 2022
A resource exhaustion issue was addressed with improved input validation. This issue is fixed in...
Moderate
Unreviewed
CVE-2022-22588
was published
Mar 19, 2022
RESTEasy 4.5.5.Final in hash flooding
High
CVE-2020-14326
was published
for
org.jboss.resteasy:resteasy-bom
(Maven)
Mar 18, 2022
Uncontrolled Resource Consumption in jboss-remoting
High
CVE-2020-35510
was published
for
org.jboss.remoting:jboss-remoting
(Maven)
Mar 18, 2022
Denial of service in go-ethereum
High
CVE-2021-42219
was published
for
github.com/ethereum/go-ethereum
(Go)
Mar 18, 2022
In Package Manger, there is a possible permanent denial of service due to resource exhaustion....
Moderate
Unreviewed
CVE-2021-39624
was published
Mar 17, 2022
CAMS for HIS Log Server contained in the following Yokogawa Electric products is vulnerable to...
High
Unreviewed
CVE-2022-22145
was published
Mar 12, 2022
Moodle denial-of-service risk in the draft files area
High
CVE-2021-32476
was published
for
moodle/moodle
(Composer)
Mar 12, 2022
There's a flaw in urllib's AbstractBasicAuthHandler class. An attacker who controls a malicious...
Moderate
Unreviewed
CVE-2021-3733
was published
Mar 11, 2022
Rust's regex crate vulnerable to regular expression denial of service
High
CVE-2022-24713
was published
for
regex
(Rust)
Mar 8, 2022
IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a...
Moderate
Unreviewed
CVE-2021-38989
was published
Mar 8, 2022
IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged trusted host user to exploit a...
High
Unreviewed
CVE-2022-22351
was published
Mar 8, 2022
IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a...
Moderate
Unreviewed
CVE-2021-38988
was published
Mar 8, 2022
regexp.Compile in Go before 1.16.15 and 1.17.x before 1.17.8 allows stack exhaustion via a deeply...
High
Unreviewed
CVE-2022-24921
was published
Mar 6, 2022
Denial of Service in Go-Ethereum
High
CVE-2022-23327
was published
for
github.com/ethereum/go-ethereum
(Go)
Mar 5, 2022
Denial of Service in Go-Ethereum
High
CVE-2022-23328
was published
for
github.com/ethereum/go-ethereum
(Go)
Mar 5, 2022
tsMuxer git-c6a0277 was discovered to contain a segmentation fault via DTSStreamReader::findFrame...
Moderate
Unreviewed
CVE-2021-45864
was published
Mar 3, 2022
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Linux Security whereby the...
Moderate
Unreviewed
CVE-2021-44747
was published
Mar 2, 2022
A security vulnerability in the Spectrum Scale 5.0 and 5.1 allows a non-root user to overflow the...
Moderate
Unreviewed
CVE-2020-4925
was published
Mar 2, 2022
Uncontrolled Resource Consumption in github.com/google/fscrypt
Moderate
CVE-2022-25326
was published
for
github.com/google/fscrypt
(Go)
Feb 26, 2022
An security agent resource exhaustion denial-of-service vulnerability in Trend Micro Apex One,...
High
Unreviewed
CVE-2022-24678
was published
Feb 25, 2022
Denial of Service in GitHub repository radareorg/radare2 prior to 5.6.4.
Moderate
Unreviewed
CVE-2022-0695
was published
Feb 25, 2022
HashiCorp Consul Ingress Gateway Panic Can Shutdown Servers
Moderate
CVE-2022-24687
was published
for
github.com/hashicorp/consul
(Go)
Feb 25, 2022
A vulnerability was found in Radare2 in versions prior to 5.6.2, 5.6.0, 5.5.4 and 5.5.2. Mapping...
High
Unreviewed
CVE-2021-4021
was published
Feb 25, 2022
ProTip!
Advisories are also available from the
GraphQL API