GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,871
Erlang
37
GitHub Actions
36
Go
2,502
Maven
5,000+
npm
4,148
NuGet
735
pip
3,949
Pub
12
RubyGems
945
Rust
1,025
Swift
39
Unreviewed advisories
All unreviewed
5,000+
16 advisories
Filter by severity
Unchecked input for loop condition vulnerability in XML-RPC in Liferay Portal 7.4.0 through 7.4.3...
Moderate
Unreviewed
CVE-2025-43801
was published
Sep 16, 2025
SAP Business Planning and Consolidation allows an authenticated standard user to call a function...
Moderate
Unreviewed
CVE-2025-42930
was published
Sep 9, 2025
An Unchecked Loop Condition in ASPECT provides an attacker the ability to maliciously consume...
Moderate
Unreviewed
CVE-2024-13930
was published
May 22, 2025
Relative Path Traversal vulnerabilities in ASPECT allow access to file resources if session...
High
Unreviewed
CVE-2024-13931
was published
May 22, 2025
An Unchecked Input for Loop Condition in RT-Labs P-Net version 1.0.1 or earlier allows an...
Moderate
Unreviewed
CVE-2025-32399
was published
May 7, 2025
.NET Denial of Service Vulnerability
High
CVE-2024-43499
was published
for
System.Formats.Nrbf
(NuGet)
Nov 12, 2024
Duplicate Advisory: .NET and Visual Studio Denial of Service Vulnerability
High
GHSA-wmm6-pgp8-29hg
was published
for
System.Formats.Nrbf
(NuGet)
Nov 12, 2024
•
withdrawn
NLnet Labs Unbound up to and including version 1.21.0 contains a vulnerability when handling...
Moderate
Unreviewed
CVE-2024-8508
was published
Oct 3, 2024
Issue summary: Checking excessively long DSA keys or parameters may be very
slow.
Impact summary...
Moderate
Unreviewed
CVE-2024-4603
was published
May 16, 2024
Issue summary: Checking excessively long invalid RSA public keys may take
a long time.
Impact...
Moderate
Unreviewed
CVE-2023-6237
was published
Apr 25, 2024
KaTeX's maxExpand bypassed by Unicode sub/superscripts
Moderate
CVE-2024-28244
was published
for
katex
(npm)
Mar 25, 2024
KaTeX's maxExpand bypassed by `\edef`
Moderate
CVE-2024-28243
was published
for
katex
(npm)
Mar 25, 2024
Issue summary: Generating excessively long X9.42 DH keys or checking
excessively long X9.42 DH...
High
Unreviewed
CVE-2023-5678
was published
Nov 6, 2023
Issue summary: Checking excessively long DH keys or parameters may be very slow.
Impact summary:...
Moderate
Unreviewed
CVE-2023-3817
was published
Jul 31, 2023
Issue summary: Checking excessively long DH keys or parameters may be very slow.
Impact summary:...
Moderate
Unreviewed
CVE-2023-3446
was published
Jul 19, 2023
ProTip!
Advisories are also available from the
GraphQL API