GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,819
Erlang
36
GitHub Actions
32
Go
2,410
Maven
5,000+
npm
4,046
NuGet
723
pip
3,842
Pub
12
RubyGems
933
Rust
1,003
Swift
38
Unreviewed advisories
All unreviewed
5,000+
309 advisories
Filter by severity
In the Linux kernel, the following vulnerability has been resolved:
libfs: fix infinite...
Moderate
Unreviewed
CVE-2024-46701
was published
Sep 13, 2024
Liferay Portal denial-of-service vulnerability
Moderate
CVE-2024-25144
was published
for
com.liferay.portal:release.dxp.bom
(Maven)
Feb 8, 2024
An issue has been discovered in GitLab CE/EE affecting all versions starting from 16.2 before 16...
Moderate
Unreviewed
CVE-2023-5825
was published
Nov 6, 2023
Windows Standards-Based Storage Management Service Denial of Service Vulnerability
Moderate
Unreviewed
CVE-2024-43512
was published
Oct 8, 2024
Manipulated inline images can cause Infinite Loop in PyPDF2
Moderate
CVE-2022-24859
was published
for
PyPDF2
(pip)
Apr 22, 2022
Stack consumption vulnerability in the dissect_ber_choice function in the BER dissector in...
Moderate
Unreviewed
CVE-2011-1142
was published
May 17, 2022
Use of "infinity" as an input to datetime and date fields causes infinite loop in pydantic
Moderate
CVE-2021-29510
was published
for
pydantic
(pip)
May 13, 2021
In the Linux kernel, the following vulnerability has been resolved:
x86/sgx: Fix deadlock in SGX...
Moderate
Unreviewed
CVE-2024-49856
was published
Oct 21, 2024
The frame iterator could get stuck in a loop when encountering certain wasm frames leading to...
Moderate
Unreviewed
CVE-2024-6614
was published
Jul 9, 2024
In the Linux kernel, the following vulnerability has been resolved:
ASoC: Intel: soc-acpi-intel...
Moderate
Unreviewed
CVE-2024-50011
was published
Oct 21, 2024
Golang protojson.Unmarshal function infinite loop when unmarshaling certain forms of invalid JSON
Moderate
CVE-2024-24786
was published
for
google.golang.org/protobuf
(Go)
Mar 6, 2024
A vulnerability has been found in SourceCodester Student Record Management System 1.0 and...
Moderate
Unreviewed
CVE-2024-11097
was published
Nov 12, 2024
A vulnerability has been found in GPAC 2.5-DEV-rev228-g11067ea92-master and classified as...
Moderate
Unreviewed
CVE-2024-6061
was published
Jun 17, 2024
7-Zip CopyCoder Infinite Loop Denial-of-Service Vulnerability. This vulnerability allows remote...
Moderate
Unreviewed
CVE-2024-11612
was published
Nov 22, 2024
In the Linux kernel, the following vulnerability has been resolved:
wifi: iwlwifi: mvm: fix 6...
Moderate
Unreviewed
CVE-2024-53055
was published
Nov 19, 2024
Designate does not enforce the DNS protocol limit concerning record set sizes
Moderate
CVE-2015-5694
was published
for
designate
(pip)
May 24, 2022
Bouncy Castle crafted signature and public key can be used to trigger an infinite loop
Moderate
CVE-2024-30172
was published
for
BouncyCastle
(Maven)
May 14, 2024
Infinite loop in github.com/gomarkdown/markdown
Moderate
CVE-2024-44337
was published
for
github.com/gomarkdown/markdown
(Go)
Oct 15, 2024
Predictable results in nanoid generation when given non-integer values
Moderate
CVE-2024-55565
was published
for
nanoid
(npm)
Dec 9, 2024
In the Linux kernel, the following vulnerability has been resolved:
virtio_net: Do not send RSS...
Moderate
Unreviewed
CVE-2024-35981
was published
May 20, 2024
Infinite loop and Blind SSRF found inside the Webfinger mechanism in @fedify/fedify
Moderate
CVE-2025-23221
was published
for
@fedify/fedify
(npm)
Jan 21, 2025
An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.0 prior to...
Moderate
Unreviewed
CVE-2025-0290
was published
Jan 28, 2025
In the Linux kernel, the following vulnerability has been resolved:
exfat: fix the infinite loop...
Moderate
Unreviewed
CVE-2024-57940
was published
Jan 21, 2025
In the Linux kernel, the following vulnerability has been resolved:
crypto: qcom-rng - fix...
Moderate
Unreviewed
CVE-2022-48630
was published
Mar 5, 2024
ProTip!
Advisories are also available from the
GraphQL API