GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,750
Erlang
35
GitHub Actions
29
Go
2,323
Maven
5,000+
npm
3,956
NuGet
712
pip
3,739
Pub
12
RubyGems
921
Rust
973
Swift
38
Unreviewed advisories
All unreviewed
5,000+
17 advisories
Filter by severity
NVIDIA CUDA Toolkit for all platforms contains a vulnerability in the cuobjdump binary, where a...
Moderate
Unreviewed
CVE-2025-23247
was published
May 27, 2025
Layer 2 network filtering capabilities such as IPv6 RA guard can be bypassed using LLC/SNAP...
Moderate
Unreviewed
CVE-2021-27861
was published
Sep 28, 2022
Layer 2 network filtering capabilities such as IPv6 RA guard can be bypassed using LLC/SNAP...
Moderate
Unreviewed
CVE-2021-27862
was published
Sep 28, 2022
A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The...
Moderate
Unreviewed
CVE-2025-29931
was published
Apr 17, 2025
Tor path lengths too short when "full Vanguards" configured
Moderate
CVE-2024-35313
was published
for
arti
(Rust)
May 18, 2024
Out-of-bounds write vulnerability in the HAL-WIFI module
Impact: Successful exploitation of this...
Moderate
Unreviewed
CVE-2024-47293
was published
Sep 27, 2024
Django vulnerable to denial-of-service attack
Moderate
CVE-2024-41991
was published
for
Django
(pip)
Aug 7, 2024
Django vulnerable to a denial-of-service attack
Moderate
CVE-2024-41990
was published
for
Django
(pip)
Aug 7, 2024
A vulnerability in the upload module of Cisco RV340 and RV345 Dual WAN Gigabit VPN Routers could...
Moderate
Unreviewed
CVE-2024-20416
was published
Jul 17, 2024
Azure Private 5G Core Denial of Service Vulnerability
Moderate
Unreviewed
CVE-2024-20685
was published
Apr 9, 2024
Windows Hyper-V Denial of Service Vulnerability
Moderate
Unreviewed
CVE-2024-29064
was published
Apr 9, 2024
A denial of service vulnerability exists in the OAS Engine File Data Source Configuration...
Moderate
Unreviewed
CVE-2024-24976
was published
Apr 3, 2024
Improper Handling of Length Parameter Inconsistency in Apache Ant
Moderate
CVE-2021-36374
was published
for
org.apache.ant:ant
(Maven)
Aug 2, 2021
Multiple vulnerabilities in the Link Layer Discovery Protocol (LLDP) functionality of Cisco ATA...
Moderate
Unreviewed
CVE-2022-20686
was published
Dec 12, 2022
Out of memory error when submitting the dataset form with a specially-crafted field
Moderate
CVE-2023-50248
was published
for
ckan
(pip)
Dec 13, 2023
Jetty accepts "+" prefixed value in Content-Length
Moderate
CVE-2023-40167
was published
for
org.eclipse.jetty:jetty-http
(Maven)
Sep 14, 2023
Improper Handling of Length Parameter Inconsistency in Apache Ant
Moderate
CVE-2021-36373
was published
for
org.apache.ant:ant
(Maven)
Aug 2, 2021
ProTip!
Advisories are also available from the
GraphQL API