GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,869
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,119
NuGet
735
pip
3,941
Pub
12
RubyGems
945
Rust
1,018
Swift
39
Unreviewed advisories
All unreviewed
5,000+
617 advisories
Filter by severity
An infinite loop in Ivanti Avalanche before 6.4.6 allows a remote unauthenticated attacker to...
High
Unreviewed
CVE-2024-50321
was published
Nov 12, 2024
GNOME libsoup before 3.6.1 has an infinite loop, and memory consumption. during the reading of...
High
Unreviewed
CVE-2024-52532
was published
Nov 11, 2024
A vulnerability has been found in SourceCodester Student Record Management System 1.0 and...
Moderate
Unreviewed
CVE-2024-11097
was published
Nov 12, 2024
A vulnerability has been found in GPAC 2.5-DEV-rev228-g11067ea92-master and classified as...
Moderate
Unreviewed
CVE-2024-6061
was published
Jun 17, 2024
Uncontrolled resource consumption in validators Python package
High
CVE-2019-19588
was published
for
validators
(pip)
Jan 21, 2020
7-Zip CopyCoder Infinite Loop Denial-of-Service Vulnerability. This vulnerability allows remote...
Moderate
Unreviewed
CVE-2024-11612
was published
Nov 22, 2024
In the Linux kernel, the following vulnerability has been resolved:
wifi: iwlwifi: mvm: fix 6...
Moderate
Unreviewed
CVE-2024-53055
was published
Nov 19, 2024
Designate does not enforce the DNS protocol limit concerning record set sizes
Moderate
CVE-2015-5694
was published
for
designate
(pip)
May 24, 2022
Bouncy Castle crafted signature and public key can be used to trigger an infinite loop
Moderate
CVE-2024-30172
was published
for
BouncyCastle
(Maven)
May 14, 2024
Drupal core Denial of Service
High
CVE-2024-11941
was published
for
drupal/core
(Composer)
Dec 5, 2024
Infinite loop in github.com/gomarkdown/markdown
Moderate
CVE-2024-44337
was published
for
github.com/gomarkdown/markdown
(Go)
Oct 15, 2024
Predictable results in nanoid generation when given non-integer values
Moderate
CVE-2024-55565
was published
for
nanoid
(npm)
Dec 9, 2024
In ElementaryStreamQueue::dequeueAccessUnitMPEG4Video of ESQueue.cpp, there is a possible...
High
Unreviewed
CVE-2017-13313
was published
Nov 16, 2024
In the Linux kernel, the following vulnerability has been resolved:
virtio_net: Do not send RSS...
Moderate
Unreviewed
CVE-2024-35981
was published
May 20, 2024
Infinite loop and Blind SSRF found inside the Webfinger mechanism in @fedify/fedify
Moderate
CVE-2025-23221
was published
for
@fedify/fedify
(npm)
Jan 21, 2025
An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.0 prior to...
Moderate
Unreviewed
CVE-2025-0290
was published
Jan 28, 2025
In the Linux kernel, the following vulnerability has been resolved:
exfat: fix the infinite loop...
Moderate
Unreviewed
CVE-2024-57940
was published
Jan 21, 2025
In the Linux kernel, the following vulnerability has been resolved:
crypto: qcom-rng - fix...
Moderate
Unreviewed
CVE-2022-48630
was published
Mar 5, 2024
Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability in Arm Ltd Bifrost GPU...
Moderate
Unreviewed
CVE-2024-6790
was published
Feb 3, 2025
In the Linux kernel, the following vulnerability has been resolved:
filemap: avoid truncating 64...
Moderate
Unreviewed
CVE-2025-21665
was published
Jan 31, 2025
In the Linux kernel, the following vulnerability has been resolved:
iomap: avoid avoid...
Moderate
Unreviewed
CVE-2025-21667
was published
Jan 31, 2025
In parseUriInternal of Intent.java, there is a possible infinite loop due to improper input...
High
Unreviewed
CVE-2024-40675
was published
Jan 28, 2025
When calling bson_utf8_validate on some inputs a loop with an exit condition that cannot be...
Moderate
Unreviewed
CVE-2023-0437
was published
Jan 12, 2024
EDK2's Network Package is susceptible to an infinite lop vulnerability when parsing a PadN option...
High
Unreviewed
CVE-2023-45233
was published
Jan 16, 2024
ProTip!
Advisories are also available from the
GraphQL API