GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,698
Maven
5,000+
npm
4,327
NuGet
761
pip
4,099
Pub
12
RubyGems
958
Rust
1,064
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
219 advisories
Filter by severity
Infinite Loop Denial of Service via Failed File Deletion in DB Electronica Telecomunicazioni S.p...
High
Unreviewed
CVE-2025-66252
was published
Nov 26, 2025
There is a defect in the CPython “tarfile” module affecting the “TarFile” extraction and entry...
High
Unreviewed
CVE-2025-8194
was published
Jul 28, 2025
EDK2's Network Package is susceptible to an infinite loop vulnerability when parsing unknown...
High
Unreviewed
CVE-2023-45232
was published
Jan 16, 2024
TinyXML through 2.6.2 has an infinite loop in TiXmlParsingData::Stamp in tinyxmlparser.cpp via...
High
Unreviewed
CVE-2021-42260
was published
May 24, 2022
EDK2's Network Package is susceptible to an infinite lop vulnerability when parsing a PadN option...
High
Unreviewed
CVE-2023-45233
was published
Jan 16, 2024
There is a HIGH severity vulnerability affecting the CPython "zipfile"
module.
When...
High
Unreviewed
CVE-2024-8088
was published
Aug 22, 2024
GNOME libsoup before 3.6.1 has an infinite loop, and memory consumption. during the reading of...
High
Unreviewed
CVE-2024-52532
was published
Nov 11, 2024
BT SDP dissector infinite loop in Wireshark 4.0.0 to 4.0.7 and 3.6.0 to 3.6.15 allows denial of...
High
Unreviewed
CVE-2023-4511
was published
Aug 24, 2023
GDSDB infinite loop in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via...
High
Unreviewed
CVE-2023-2879
was published
May 26, 2023
Infinite loop in the BitTorrent DHT dissector in Wireshark 3.6.0 and 3.4.0 to 3.4.10 allows...
High
Unreviewed
CVE-2021-4184
was published
Dec 31, 2021
Infinite loop in RTMPT protocol dissector in Wireshark 3.6.0 to 3.6.1 and 3.4.0 to 3.4.11 allows...
High
Unreviewed
CVE-2022-0586
was published
Feb 15, 2022
Crash in the RFC 7468 dissector in Wireshark 3.6.0 and 3.4.0 to 3.4.10 allows denial of service...
High
Unreviewed
CVE-2021-4182
was published
Dec 31, 2021
Infinite loop in the RTMPT dissector in Wireshark 3.6.0 and 3.4.0 to 3.4.10 allows denial of...
High
Unreviewed
CVE-2021-4185
was published
Dec 31, 2021
DOCSIS dissector crash in Wireshark 4.2.0 allows denial of service via packet injection or...
High
Unreviewed
CVE-2024-0211
was published
Jan 3, 2024
A vulnerability in the management and VPN web servers for Cisco Adaptive Security Appliance (ASA)...
High
Unreviewed
CVE-2024-20353
was published
Apr 24, 2024
A vulnerability in the Simple Network Management Protocol (SNMP) subsystem of Cisco IOS XE...
High
Unreviewed
CVE-2025-20312
was published
Sep 24, 2025
This vulnerability allows any attacker to cause the PeerTube server to stop responding to...
High
Unreviewed
CVE-2025-32947
was published
Apr 15, 2025
An issue was discovered in the demo/LINUXTCP implementation of cwalter-at freemodbus v.2018-09-12...
High
Unreviewed
CVE-2025-51986
was published
Aug 14, 2025
A vulnerability in the function that performs IPv4 and IPv6 Network Address Translation (NAT) DNS...
High
Unreviewed
CVE-2025-20136
was published
Aug 14, 2025
A vulnerability in the management and VPN web servers of Cisco Secure Firewall ASA Software and...
High
Unreviewed
CVE-2025-20243
was published
Aug 14, 2025
A vulnerability in the packet inspection functionality of the Snort 3 Detection Engine of Cisco...
High
Unreviewed
CVE-2025-20217
was published
Aug 14, 2025
A vulnerability in the IKEv2 feature of Cisco IOS Software, IOS XE Software, Secure Firewall ASA...
High
Unreviewed
CVE-2025-20253
was published
Aug 14, 2025
Due to a mistake in libcurl's WebSocket code, a malicious server can send a
particularly crafted...
High
Unreviewed
CVE-2025-5399
was published
Jun 7, 2025
On Tenda AC1200 (Model AC6) 15.03.06.51_multi devices, a large HTTP POST request sent to the...
High
Unreviewed
CVE-2020-28095
was published
May 24, 2022
An infinite loop issue discovered in Mathtex 1.05 and before allows a remote attackers to consume...
High
Unreviewed
CVE-2023-51890
was published
Jan 24, 2024
ProTip!
Advisories are also available from the
GraphQL API