GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,126
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,021
Swift
39
Unreviewed advisories
All unreviewed
5,000+
23 advisories
Filter by severity
Improper Handling of Length Parameter Inconsistency in Apache Ant
Moderate
CVE-2021-36373
was published
for
org.apache.ant:ant
(Maven)
Aug 2, 2021
Jetty accepts "+" prefixed value in Content-Length
Moderate
CVE-2023-40167
was published
for
org.eclipse.jetty:jetty-http
(Maven)
Sep 14, 2023
Out of memory error when submitting the dataset form with a specially-crafted field
Moderate
CVE-2023-50248
was published
for
ckan
(pip)
Dec 13, 2023
Multiple vulnerabilities in the Link Layer Discovery Protocol (LLDP) functionality of Cisco ATA...
Moderate
Unreviewed
CVE-2022-20686
was published
Dec 12, 2022
Improper Handling of Length Parameter Inconsistency in Apache Ant
Moderate
CVE-2021-36374
was published
for
org.apache.ant:ant
(Maven)
Aug 2, 2021
A denial of service vulnerability exists in the OAS Engine File Data Source Configuration...
Moderate
Unreviewed
CVE-2024-24976
was published
Apr 3, 2024
Windows Hyper-V Denial of Service Vulnerability
Moderate
Unreviewed
CVE-2024-29064
was published
Apr 9, 2024
Azure Private 5G Core Denial of Service Vulnerability
Moderate
Unreviewed
CVE-2024-20685
was published
Apr 9, 2024
A vulnerability in the upload module of Cisco RV340 and RV345 Dual WAN Gigabit VPN Routers could...
Moderate
Unreviewed
CVE-2024-20416
was published
Jul 17, 2024
Django vulnerable to a denial-of-service attack
Moderate
CVE-2024-41990
was published
for
Django
(pip)
Aug 7, 2024
Django vulnerable to denial-of-service attack
Moderate
CVE-2024-41991
was published
for
Django
(pip)
Aug 7, 2024
Out-of-bounds write vulnerability in the HAL-WIFI module
Impact: Successful exploitation of this...
Moderate
Unreviewed
CVE-2024-47293
was published
Sep 27, 2024
Tor path lengths too short when "full Vanguards" configured
Moderate
CVE-2024-35313
was published
for
arti
(Rust)
May 18, 2024
A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The...
Moderate
Unreviewed
CVE-2025-29931
was published
Apr 17, 2025
Layer 2 network filtering capabilities such as IPv6 RA guard can be bypassed using LLC/SNAP...
Moderate
Unreviewed
CVE-2021-27862
was published
Sep 28, 2022
Layer 2 network filtering capabilities such as IPv6 RA guard can be bypassed using LLC/SNAP...
Moderate
Unreviewed
CVE-2021-27861
was published
Sep 28, 2022
NVIDIA CUDA Toolkit for all platforms contains a vulnerability in the cuobjdump binary, where a...
Moderate
Unreviewed
CVE-2025-23247
was published
May 27, 2025
Rust Web Push is vulnerable to a DoS attack via a large integer in a Content-Length header
Moderate
CVE-2025-53604
was published
for
web-push
(Rust)
Jul 5, 2025
Duplicate Advisory: Remotely exploitable denial of service in Rosenpass
Moderate
GHSA-624c-2h52-gf7f
was published
for
rosenpass
(Rust)
Jul 28, 2025
•
withdrawn
Remotely exploitable denial of service in Rosenpass
Moderate
CVE-2023-53157
was published
for
rosenpass
(Rust)
Dec 21, 2023
Vulnerability of inadequate packet length check in the BLE module.
Impact: Successful...
Moderate
Unreviewed
CVE-2025-54646
was published
Aug 6, 2025
Improper Handling of Length Parameter Inconsistency vulnerability in web server function on...
Moderate
Unreviewed
CVE-2025-5514
was published
Aug 25, 2025
In multiple locations, there is a possible way to persistently DoS the device due to a missing...
Moderate
Unreviewed
CVE-2025-26432
was published
Sep 5, 2025
ProTip!
Advisories are also available from the
GraphQL API