GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,813
Erlang
36
GitHub Actions
32
Go
2,396
Maven
5,000+
npm
4,037
NuGet
721
pip
3,827
Pub
12
RubyGems
932
Rust
1,001
Swift
38
Unreviewed advisories
All unreviewed
5,000+
608 advisories
Filter by severity
There is a defect in the CPython “tarfile” module affecting the “TarFile” extraction and entry...
High
Unreviewed
CVE-2025-8194
was published
Jul 28, 2025
Duplicate Advisory: Low severity (DoS) vulnerability in sequoia-openpgp
Low
GHSA-g97w-mw7g-v3jv
was published
for
sequoia-openpgp
(Rust)
Jul 27, 2025
•
withdrawn
ImageMagick has XMP profile write that triggers hang due to unbounded loop
High
CVE-2025-53015
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Jul 23, 2025
SAP NetWeaver Business Warehouse CCAW application allows a privileged attacker to cause a high...
Low
Unreviewed
CVE-2025-42954
was published
Jul 8, 2025
An issue has been discovered in GitLab CE/EE affecting all versions from 17.7 before 17.10.8, 17...
High
Unreviewed
CVE-2025-0673
was published
Jun 12, 2025
OctoPrint Vulnerable to Denial of Service through malformed HTTP request in OctoPrint
Moderate
CVE-2025-48879
was published
for
OctoPrint
(pip)
Jun 10, 2025
GeoServer Infinite Loop Vulnerability in Jiffle process
High
CVE-2025-30145
was published
for
org.geoserver.extension:gs-wps-core
(Maven)
Jun 10, 2025
tcpreplay v4.4.4 was discovered to contain an infinite loop via the tcprewrite function at get.c.
High
Unreviewed
CVE-2024-22654
was published
May 29, 2025
FiveCo RAP dissector infinite loop in Wireshark 4.4.0 to 4.4.1 and 4.2.0 to 4.2.8 allows denial...
Moderate
Unreviewed
CVE-2024-11595
was published
May 7, 2025
Infinite loop condition in Amazon.IonDotnet
High
CVE-2025-3857
was published
for
Amazon.IonDotnet
(NuGet)
Apr 21, 2025
In the Linux kernel, the following vulnerability has been resolved:
wifi: ath11k: fix RCU stall...
Moderate
Unreviewed
CVE-2024-58097
was published
Apr 16, 2025
This vulnerability allows any attacker to cause the PeerTube server to stop responding to...
High
Unreviewed
CVE-2025-32947
was published
Apr 15, 2025
SurrealDB CPU exhaustion via custom functions result in total DoS
High
GHSA-pxw4-94j3-v9pf
was published
for
surrealdb
(Rust)
Apr 11, 2025
ts-asn1-der has Incorrect DER Encoding of Numbers Leading to Denial of Service and Incorrect Value Representation
Moderate
CVE-2025-32029
was published
for
@apeleghq/asn1-der
(npm)
Apr 7, 2025
In the Linux kernel, the following vulnerability has been resolved:
RDMA/core: Fix ib block...
Moderate
Unreviewed
CVE-2023-53026
was published
Mar 27, 2025
Silicon Labs Gecko OS DNS Response Processing Infinite Loop Denial-of-Service Vulnerability. This...
Moderate
Unreviewed
CVE-2025-2838
was published
Mar 27, 2025
ZenML unauthenticated DoS via Multipart Boundry
High
CVE-2024-9340
was published
for
zenml
(pip)
Mar 20, 2025
In Azle, calling `setTimer` causes infinite loop of timers
High
CVE-2025-29776
was published
for
azle
(npm)
Mar 14, 2025
In the Linux kernel, the following vulnerability has been resolved:
f2fs: avoid infinite loop to...
Moderate
Unreviewed
CVE-2022-49317
was published
Mar 14, 2025
In the Linux kernel, the following vulnerability has been resolved:
nvmet: Fix crash when a...
Moderate
Unreviewed
CVE-2025-21850
was published
Mar 12, 2025
OpenDJ Denial of Service (DoS) using alias loop
High
CVE-2025-27497
was published
for
org.openidentityplatform.opendj:opendj-server-legacy
(Maven)
Mar 5, 2025
In NGINX Unit before version 1.34.2 with the Java Language Module in use, undisclosed requests...
Moderate
Unreviewed
CVE-2025-1695
was published
Mar 4, 2025
Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability in Arm Ltd Bifrost GPU...
Moderate
Unreviewed
CVE-2024-6790
was published
Feb 3, 2025
In the Linux kernel, the following vulnerability has been resolved:
openvswitch: fix lockup on...
Moderate
Unreviewed
CVE-2025-21681
was published
Jan 31, 2025
In the Linux kernel, the following vulnerability has been resolved:
iomap: avoid avoid...
Moderate
Unreviewed
CVE-2025-21667
was published
Jan 31, 2025
ProTip!
Advisories are also available from the
GraphQL API