GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,680
Maven
5,000+
npm
4,308
NuGet
760
pip
4,080
Pub
12
RubyGems
958
Rust
1,061
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
1,011 advisories
Filter by severity
BACnet Test Server versions up to and including 1.01 contains a remote denial of service...
High
Unreviewed
CVE-2020-36872
was published
Nov 27, 2025
An issue was discovered in Veal98 Echo Open-Source Community System 2.2 thru 2.3 allowing an...
High
Unreviewed
CVE-2025-51741
was published
Nov 25, 2025
An out-of-memory flaw was found in libtiff that could be triggered by passing a crafted tiff file...
High
Unreviewed
CVE-2023-52355
was published
Jan 25, 2024
Lib/zipfile.py in Python through 3.7.2 allows remote attackers to cause a denial of service ...
High
Unreviewed
CVE-2019-9674
was published
May 24, 2022
Denial-of-service condition in M-Files Server versions before 25.11.15392.1 allows an...
High
Unreviewed
CVE-2025-11681
was published
Nov 17, 2025
A vulnerability in the web-based management interface of affected products could allow an...
High
Unreviewed
CVE-2025-37161
was published
Nov 18, 2025
Positive Technologies MaxPatrol 8 and XSpider contain a remote denial-of-service vulnerability in...
High
Unreviewed
CVE-2021-4467
was published
Nov 15, 2025
ReQuest Serious Play F3 Media Server versions 7.0.3.4968 (Pro), 7.0.2.4954, 6.5.2.4954, 6.4.2...
High
Unreviewed
CVE-2021-4465
was published
Nov 15, 2025
The Epson Stylus SX510W embedded web management service fails to properly handle consecutive...
High
Unreviewed
CVE-2023-7326
was published
Nov 13, 2025
In Open5GS 2.7.6, AMF crashes when receiving an abnormal NGSetupRequest message, resulting in...
High
Unreviewed
CVE-2025-63288
was published
Nov 10, 2025
An issue in KiloView Dual Channel 4k HDMI & 3G-SDI HEVC Video Encoder Firmware v.1.20.0006 allows...
High
Unreviewed
CVE-2025-63560
was published
Nov 6, 2025
An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in...
High
Unreviewed
CVE-2025-43385
was published
Nov 4, 2025
The issue was addressed with improved bounds checks. This issue is fixed in iOS 26.1 and iPadOS...
High
Unreviewed
CVE-2025-43424
was published
Nov 4, 2025
An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modem. Mishandling...
High
Unreviewed
CVE-2025-49494
was published
Nov 4, 2025
In the Linux kernel, the following vulnerability has been resolved:
ksmbd: limit repeated...
High
Unreviewed
CVE-2025-38501
was published
Aug 16, 2025
The DNS protocol in RFC 1035 and updates allows remote attackers to cause a denial of service ...
High
Unreviewed
CVE-2024-33655
was published
Jun 6, 2024
latchset jose through version 11 allows attackers to cause a denial of service (CPU consumption)...
High
Unreviewed
CVE-2023-50967
was published
Mar 20, 2024
GE Multilink ML800, ML1200, ML1600, and ML2400 switches with firmware 4.2.1 and earlier and...
High
Unreviewed
CVE-2014-5418
was published
May 17, 2022
HTTP/2 incoming headers exceeding the limit are temporarily buffered in nghttp2 in order to...
High
Unreviewed
CVE-2024-27316
was published
Apr 4, 2024
libexpat through 2.5.0 allows a denial of service (resource consumption) because many full...
High
Unreviewed
CVE-2023-52425
was published
Feb 4, 2024
The issue was addressed with improved memory handling. This issue is fixed in watchOS 26.1, iOS...
High
Unreviewed
CVE-2025-43462
was published
Nov 4, 2025
A lack of rate limiting in the "Login Section, Forgot Email" feature of PHPJabbers Hotel Booking...
High
Unreviewed
CVE-2023-51301
was published
Feb 19, 2025
A lack of rate limiting in the 'Forgot Password' feature of PHPJabbers Bus Reservation System v1...
High
Unreviewed
CVE-2023-51316
was published
Feb 20, 2025
A lack of rate limiting in the 'Forgot Password', 'Email Settings' feature of PHPJabbers...
High
Unreviewed
CVE-2023-51314
was published
Feb 20, 2025
The Closest Encloser Proof aspect of the DNS protocol (in RFC 5155 when RFC 9276 guidance is...
High
Unreviewed
CVE-2023-50868
was published
Feb 14, 2024
ProTip!
Advisories are also available from the
GraphQL API