GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,753
Erlang
35
GitHub Actions
29
Go
2,326
Maven
5,000+
npm
3,956
NuGet
712
pip
3,740
Pub
12
RubyGems
921
Rust
973
Swift
38
Unreviewed advisories
All unreviewed
5,000+
2,792 advisories
Filter by severity
org.ini4j allows attackers to cause a Denial of Service (DoS)
High
CVE-2022-41404
was published
for
org.ini4j:ini4j
(Maven)
Oct 12, 2022
D-Bus before 1.15.6 sometimes allows unprivileged users to crash dbus-daemon. If a privileged...
Moderate
Unreviewed
CVE-2023-34969
was published
Jun 8, 2023
Authorino Uncontrolled Resource Consumption vulnerability
Moderate
CVE-2025-25208
was published
for
github.com/kuadrant/authorino
(Go)
Jun 9, 2025
Authorino Uncontrolled Resource Consumption vulnerability
Moderate
CVE-2025-25207
was published
for
github.com/kuadrant/authorino
(Go)
Jun 9, 2025
HTTP/2 Stream Cancellation Attack
Moderate
CVE-2023-44487
was published
for
com.typesafe.akka:akka-http-core
(Go)
Oct 10, 2023
Uncontrolled resource consumption vulnerability in IDF v0.10.0-0C03-03 and ZLF v0.10.0-0C03-04....
High
Unreviewed
CVE-2025-41360
was published
Jun 6, 2025
Uncontrolled resource consumption vulnerability in IDF v0.10.0-0C03-03 and ZLF v0.10.0-0C03-04....
High
Unreviewed
CVE-2025-41361
was published
Jun 6, 2025
An issue in the box_equal function in openlink virtuoso-opensource v7.2.11 allows attackers to...
High
Unreviewed
CVE-2023-48951
was published
Nov 29, 2023
Apache Tomcat - Denial of Service
High
CVE-2024-34750
was published
for
org.apache.tomcat.embed:tomcat-embed-core
(Maven)
Jul 3, 2024
Microsoft ASP.NET Core project templates vulnerable to denial of service
Moderate
CVE-2024-21319
was published
for
Microsoft.IdentityModel.JsonWebTokens
(NuGet)
Jan 9, 2024
Windows Secure Socket Tunneling Protocol (SSTP) Denial of Service Vulnerability.
Moderate
Unreviewed
CVE-2022-34701
was published
Aug 10, 2022
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). ...
Moderate
Unreviewed
CVE-2024-20971
was published
Jan 17, 2024
Vulnerability in the Oracle ZFS Storage Appliance Kit product of Oracle Systems (component: Core)...
Moderate
Unreviewed
CVE-2024-20959
was published
Jan 17, 2024
kangax html-minifier REDoS vulnerability
High
CVE-2022-37620
was published
for
html-minifier
(npm)
Oct 31, 2022
In Splunk Enterprise Security (ES) versions below 7.1.2, an attacker can use investigation...
Moderate
Unreviewed
CVE-2024-22164
was published
Jan 9, 2024
Cloud Foundry routing release versions from v0.163.0 to v0.283.0 are vulnerable to a DOS attack. ...
High
Unreviewed
CVE-2023-34061
was published
Jan 12, 2024
In Expat (aka libexpat) before 2.4.5, an attacker can trigger stack exhaustion in build_model via...
Moderate
Unreviewed
CVE-2022-25313
was published
Feb 19, 2022
An issue in Open Network Foundation ONOS v2.7.0 allows attackers to cause a Denial of Service ...
Moderate
Unreviewed
CVE-2024-53423
was published
May 29, 2025
Windows Point-to-Point Protocol (PPP) Denial of Service Vulnerability. This CVE ID is unique from...
High
Unreviewed
CVE-2022-35769
was published
Aug 10, 2022
Azure Site Recovery Denial of Service Vulnerability.
Moderate
Unreviewed
CVE-2022-35776
was published
Aug 10, 2022
A denial-of-service issue was discovered in MediaWiki 1.37.x before 1.37.2. Rendering of w/index...
High
Unreviewed
CVE-2022-28204
was published
Sep 20, 2022
A remote potential adjacent denial of service (DoS) and potential adjacent arbitrary code...
High
Unreviewed
CVE-2022-28639
was published
Sep 21, 2022
A lack of rate limiting in pjActionAjaxSend in Car Rental v3.0 allows attackers to cause resource...
High
Unreviewed
CVE-2023-48834
was published
Dec 7, 2023
A vulnerability exists in the ClearPass Policy Manager Guest User Interface that can allow an...
High
Unreviewed
CVE-2022-37884
was published
Sep 21, 2022
ProTip!
Advisories are also available from the
GraphQL API