GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,126
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,021
Swift
39
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
397 advisories
Filter by severity
The mikecao/flight PHP framework in versions prior to v1.2 is vulnerable to Denial of Service ...
High
Unreviewed
CVE-2014-125127
was published
Sep 3, 2025
An allocation of resources without limits or throttling vulnerability has been reported to affect...
High
Unreviewed
CVE-2025-30260
was published
Aug 29, 2025
An allocation of resources without limits or throttling vulnerability has been reported to affect...
High
Unreviewed
CVE-2025-30261
was published
Aug 29, 2025
An allocation of resources without limits or throttling vulnerability has been reported to affect...
High
Unreviewed
CVE-2025-29890
was published
Aug 29, 2025
An allocation of resources without limits or throttling vulnerability has been reported to affect...
High
Unreviewed
CVE-2025-29900
was published
Aug 29, 2025
An allocation of resources without limits or throttling vulnerability has been reported to affect...
High
Unreviewed
CVE-2025-29899
was published
Aug 29, 2025
An unauthenticated remote attacker can cause a Denial of Service by sending a large number of...
High
Unreviewed
CVE-2025-2813
was published
Jul 31, 2025
In Netgear RAX30 V1.0.10.94_3, the USERLIMIT_GLOBAL option is set to 0 in multiple bftpd-related...
High
Unreviewed
CVE-2025-44652
was published
Jul 21, 2025
A denial-of-service vulnerability due to improper prioritization of network traffic over...
High
Unreviewed
CVE-2025-2403
was published
Jun 24, 2025
IBM InfoSphere Information Server 11.7.0.0 through 11.7.1.6 could allow a remote attacker to...
High
Unreviewed
CVE-2025-3221
was published
Jun 23, 2025
IBM Cognos Analytics 11.2.0, 11.2.1, 11.2.2, 11.2.3, 11.2.4, 12.0.0, 12.0.1, 12.0.2, 12.0.3, and...
High
Unreviewed
CVE-2025-25032
was published
Jun 11, 2025
An allocation of resources without limits or throttling vulnerability has been reported to affect...
High
Unreviewed
CVE-2025-22484
was published
Jun 6, 2025
An allocation of resources without limits or throttling vulnerability has been reported to affect...
High
Unreviewed
CVE-2025-29872
was published
Jun 6, 2025
An unauthenticated remote attacker may use an uncontrolled resource consumption in the IEC 61131...
High
Unreviewed
CVE-2018-25112
was published
Jun 4, 2025
A Allocation of Resources Without Limits or Throttling vulnerability in sslh allows attackers to...
High
Unreviewed
CVE-2025-46807
was published
Jun 2, 2025
An issue has been discovered in GitLab CE/EE affecting all versions before 17.10.7, 17.11 before...
High
Unreviewed
CVE-2025-0993
was published
May 22, 2025
Allocation of Resources Without Limits or Throttling vulnerability in Drupal Events Log Track...
High
Unreviewed
CVE-2025-4416
was published
May 21, 2025
Uncontrolled resource consumption in Remote Desktop Gateway Service allows an unauthorized...
High
Unreviewed
CVE-2025-26677
was published
May 13, 2025
IBM 4769 Developers Toolkit 7.0.0 through 7.5.52 could allow a remote attacker to cause a denial...
High
Unreviewed
CVE-2025-3632
was published
May 12, 2025
When a BIG-IP HTTP/2 httprouter profile is configured on a virtual server, undisclosed responses...
High
Unreviewed
CVE-2025-36504
was published
May 8, 2025
Allocation of resources without limits or throttling in ASP.NET Core allows an unauthorized...
High
Unreviewed
CVE-2025-26682
was published
Apr 8, 2025
A flaw was found in libsoup. The SoupWebsocketConnection may accept a large WebSocket message,...
High
Unreviewed
CVE-2025-32049
was published
Apr 3, 2025
An Allocation of Resources Without Limits or Throttling vulnerability in the operating system...
High
Unreviewed
CVE-2024-45484
was published
Mar 25, 2025
A vulnerability in the Internet Key Exchange version 2 (IKEv2) function of Cisco IOS XR Software...
High
Unreviewed
CVE-2025-20209
was published
Mar 12, 2025
A vulnerability in the handling of specific packets that are punted from a line card to a route...
High
Unreviewed
CVE-2025-20141
was published
Mar 12, 2025
ProTip!
Advisories are also available from the
GraphQL API