GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,866
Erlang
36
GitHub Actions
36
Go
2,491
Maven
5,000+
npm
4,109
NuGet
735
pip
3,933
Pub
12
RubyGems
945
Rust
1,018
Swift
39
Unreviewed advisories
All unreviewed
5,000+
309 advisories
Filter by severity
In the Linux kernel, the following vulnerability has been resolved:
f2fs: avoid infinite loop to...
Moderate
Unreviewed
CVE-2022-49317
was published
Mar 14, 2025
In the Linux kernel, the following vulnerability has been resolved:
net: dsa: fix a crash if -...
Moderate
Unreviewed
CVE-2021-47159
was published
Mar 25, 2024
In the Linux kernel, the following vulnerability has been resolved:
nvmet: Fix crash when a...
Moderate
Unreviewed
CVE-2025-21850
was published
Mar 12, 2025
In NGINX Unit before version 1.34.2 with the Java Language Module in use, undisclosed requests...
Moderate
Unreviewed
CVE-2025-1695
was published
Mar 4, 2025
Apache Commons Compress: Denial of service caused by an infinite loop for a corrupted DUMP file
Moderate
CVE-2024-25710
was published
for
org.apache.commons:commons-compress
(Maven)
Feb 19, 2024
When calling bson_utf8_validate on some inputs a loop with an exit condition that cannot be...
Moderate
Unreviewed
CVE-2023-0437
was published
Jan 12, 2024
In the Linux kernel, the following vulnerability has been resolved:
filemap: avoid truncating 64...
Moderate
Unreviewed
CVE-2025-21665
was published
Jan 31, 2025
In the Linux kernel, the following vulnerability has been resolved:
iomap: avoid avoid...
Moderate
Unreviewed
CVE-2025-21667
was published
Jan 31, 2025
Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability in Arm Ltd Bifrost GPU...
Moderate
Unreviewed
CVE-2024-6790
was published
Feb 3, 2025
In the Linux kernel, the following vulnerability has been resolved:
crypto: qcom-rng - fix...
Moderate
Unreviewed
CVE-2022-48630
was published
Mar 5, 2024
In the Linux kernel, the following vulnerability has been resolved:
exfat: fix the infinite loop...
Moderate
Unreviewed
CVE-2024-57940
was published
Jan 21, 2025
An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.0 prior to...
Moderate
Unreviewed
CVE-2025-0290
was published
Jan 28, 2025
Infinite loop and Blind SSRF found inside the Webfinger mechanism in @fedify/fedify
Moderate
CVE-2025-23221
was published
for
@fedify/fedify
(npm)
Jan 21, 2025
In the Linux kernel, the following vulnerability has been resolved:
virtio_net: Do not send RSS...
Moderate
Unreviewed
CVE-2024-35981
was published
May 20, 2024
Predictable results in nanoid generation when given non-integer values
Moderate
CVE-2024-55565
was published
for
nanoid
(npm)
Dec 9, 2024
Infinite loop in github.com/gomarkdown/markdown
Moderate
CVE-2024-44337
was published
for
github.com/gomarkdown/markdown
(Go)
Oct 15, 2024
Bouncy Castle crafted signature and public key can be used to trigger an infinite loop
Moderate
CVE-2024-30172
was published
for
BouncyCastle
(Maven)
May 14, 2024
Designate does not enforce the DNS protocol limit concerning record set sizes
Moderate
CVE-2015-5694
was published
for
designate
(pip)
May 24, 2022
In the Linux kernel, the following vulnerability has been resolved:
wifi: iwlwifi: mvm: fix 6...
Moderate
Unreviewed
CVE-2024-53055
was published
Nov 19, 2024
7-Zip CopyCoder Infinite Loop Denial-of-Service Vulnerability. This vulnerability allows remote...
Moderate
Unreviewed
CVE-2024-11612
was published
Nov 22, 2024
A vulnerability has been found in GPAC 2.5-DEV-rev228-g11067ea92-master and classified as...
Moderate
Unreviewed
CVE-2024-6061
was published
Jun 17, 2024
A vulnerability has been found in SourceCodester Student Record Management System 1.0 and...
Moderate
Unreviewed
CVE-2024-11097
was published
Nov 12, 2024
Golang protojson.Unmarshal function infinite loop when unmarshaling certain forms of invalid JSON
Moderate
CVE-2024-24786
was published
for
google.golang.org/protobuf
(Go)
Mar 6, 2024
In the Linux kernel, the following vulnerability has been resolved:
ASoC: Intel: soc-acpi-intel...
Moderate
Unreviewed
CVE-2024-50011
was published
Oct 21, 2024
ProTip!
Advisories are also available from the
GraphQL API