GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,359
Erlang
33
GitHub Actions
22
Go
2,124
Maven
5,000+
npm
3,787
NuGet
683
pip
3,467
Pub
12
RubyGems
894
Rust
892
Swift
38
Unreviewed advisories
All unreviewed
5,000+
156 advisories
Filter by severity
Malformed S2 Nonce Get command classes can be sent to crash the gateway. A hard reset is...
High
Unreviewed
CVE-2024-3052
was published
Apr 27, 2024
json2xml Uncaught Exception vulnerability
High
CVE-2022-25024
was published
for
json2xml
(pip)
Aug 23, 2023
Prior to v7.4.0, Ember ZNet is vulnerable to a denial of service attack through manipulation of...
High
Unreviewed
CVE-2023-6874
was published
Feb 5, 2024
An unauthenticated remote attacker can causes the CODESYS web server to access invalid memory...
High
Unreviewed
CVE-2024-8175
was published
Sep 25, 2024
When checking if the Browsing Context had been discarded in `HttpBaseChannel`, if the load group...
High
Unreviewed
CVE-2023-4583
was published
Sep 11, 2023
In wlan, there is a possible denial of service due to incorrect error handling. This could lead...
High
Unreviewed
CVE-2024-20089
was published
Sep 2, 2024
In the Linux kernel, the following vulnerability has been resolved:
tipc: Return non-zero value...
High
Unreviewed
CVE-2024-42284
was published
Aug 17, 2024
An Improper Check for Unusual or Exceptional Conditions vulnerability in the Layer 2 Address...
High
Unreviewed
CVE-2024-39517
was published
Jul 11, 2024
An Improper Check for Unusual or Exceptional Conditions vulnerability in packet processing of...
High
Unreviewed
CVE-2024-39559
was published
Jul 11, 2024
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1)....
High
Unreviewed
CVE-2024-39869
was published
Jul 9, 2024
irodsServerMonPerf in iRODS before 4.3.2 attempts to proceed with use of a path even if it is not...
High
Unreviewed
CVE-2024-38461
was published
Jun 16, 2024
An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding...
High
Unreviewed
CVE-2024-21586
was published
Jul 1, 2024
In the Linux kernel, the following vulnerability has been resolved:
gve: Account for stopped...
High
Unreviewed
CVE-2024-42162
was published
Jul 30, 2024
In the Linux kernel, the following vulnerability has been resolved:
net: dsa: mv88e6xxx: Correct...
High
Unreviewed
CVE-2024-42224
was published
Jul 30, 2024
In the Linux kernel, the following vulnerability has been resolved:
scsi: mpi3mr: Sanitise...
High
Unreviewed
CVE-2024-42159
was published
Jul 30, 2024
In the Linux kernel, the following vulnerability has been resolved:
f2fs: check validation of...
High
Unreviewed
CVE-2024-42160
was published
Jul 30, 2024
An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding...
High
Unreviewed
CVE-2024-39519
was published
Jul 11, 2024
An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding...
High
Unreviewed
CVE-2024-39535
was published
Jul 11, 2024
An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding...
High
Unreviewed
CVE-2024-39540
was published
Jul 11, 2024
An Improper Check for Unusual or Exceptional Conditions vulnerability in the chassis management...
High
Unreviewed
CVE-2024-39530
was published
Jul 11, 2024
An Improper Check for Unusual or Exceptional Conditions vulnerability in the the IKE daemon (iked...
High
Unreviewed
CVE-2024-39545
was published
Jul 11, 2024
It was found that polkit could be tricked into bypassing the credential checks for D-Bus requests...
High
Unreviewed
CVE-2021-3560
was published
Feb 17, 2022
LNbits improperly handles potential network and payment failures when using Eclair backend
High
CVE-2024-34694
was published
for
lnbits
(pip)
Jun 17, 2024
Directus is soft-locked by providing a string value to random string util
High
CVE-2024-36128
was published
for
directus
(npm)
Jun 4, 2024
Previous ATX is not checked to be the newest valid ATX by Smesher when validating incoming ATX
High
CVE-2024-34360
was published
for
github.com/spacemeshos/api
(Go)
May 10, 2024
ProTip!
Advisories are also available from the
GraphQL API