GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,335
Erlang
31
GitHub Actions
22
Go
2,096
Maven
5,000+
npm
3,762
NuGet
678
pip
3,448
Pub
12
RubyGems
892
Rust
882
Swift
37
Unreviewed advisories
All unreviewed
5,000+
285 advisories
Filter by severity
Apache Commons Compress: Denial of service caused by an infinite loop for a corrupted DUMP file
Moderate
CVE-2024-25710
was published
for
org.apache.commons:commons-compress
(Maven)
Feb 19, 2024
In the Linux kernel, the following vulnerability has been resolved:
exfat: fix the infinite loop...
Moderate
Unreviewed
CVE-2024-57940
was published
Jan 21, 2025
Infinite loop and Blind SSRF found inside the Webfinger mechanism in @fedify/fedify
Moderate
CVE-2025-23221
was published
for
@fedify/fedify
(npm)
Jan 21, 2025
In the Linux kernel, the following vulnerability has been resolved:
virtio_net: Do not send RSS...
Moderate
Unreviewed
CVE-2024-35981
was published
May 20, 2024
Predictable results in nanoid generation when given non-integer values
Moderate
CVE-2024-55565
was published
for
nanoid
(npm)
Dec 9, 2024
Infinite loop in github.com/gomarkdown/markdown
Moderate
CVE-2024-44337
was published
for
github.com/gomarkdown/markdown
(Go)
Oct 15, 2024
Bouncy Castle crafted signature and public key can be used to trigger an infinite loop
Moderate
CVE-2024-30172
was published
for
BouncyCastle
(Maven)
May 14, 2024
In the Linux kernel, the following vulnerability has been resolved:
filemap: Fix bounds checking...
Moderate
Unreviewed
CVE-2024-50272
was published
Nov 19, 2024
Designate does not enforce the DNS protocol limit concerning record set sizes
Moderate
CVE-2015-5694
was published
for
designate
(pip)
May 24, 2022
In the Linux kernel, the following vulnerability has been resolved:
wifi: iwlwifi: mvm: fix 6...
Moderate
Unreviewed
CVE-2024-53055
was published
Nov 19, 2024
7-Zip CopyCoder Infinite Loop Denial-of-Service Vulnerability. This vulnerability allows remote...
Moderate
Unreviewed
CVE-2024-11612
was published
Nov 22, 2024
A vulnerability has been found in GPAC 2.5-DEV-rev228-g11067ea92-master and classified as...
Moderate
Unreviewed
CVE-2024-6061
was published
Jun 17, 2024
A vulnerability has been found in SourceCodester Student Record Management System 1.0 and...
Moderate
Unreviewed
CVE-2024-11097
was published
Nov 12, 2024
Golang protojson.Unmarshal function infinite loop when unmarshaling certain forms of invalid JSON
Moderate
CVE-2024-24786
was published
for
google.golang.org/protobuf
(Go)
Mar 6, 2024
In the Linux kernel, the following vulnerability has been resolved:
ASoC: Intel: soc-acpi-intel...
Moderate
Unreviewed
CVE-2024-50011
was published
Oct 21, 2024
The frame iterator could get stuck in a loop when encountering certain wasm frames leading to...
Moderate
Unreviewed
CVE-2024-6614
was published
Jul 9, 2024
In the Linux kernel, the following vulnerability has been resolved:
x86/sgx: Fix deadlock in SGX...
Moderate
Unreviewed
CVE-2024-49856
was published
Oct 21, 2024
Use of "infinity" as an input to datetime and date fields causes infinite loop in pydantic
Moderate
CVE-2021-29510
was published
for
pydantic
(pip)
May 13, 2021
Stack consumption vulnerability in the dissect_ber_choice function in the BER dissector in...
Moderate
Unreviewed
CVE-2011-1142
was published
May 17, 2022
Manipulated inline images can cause Infinite Loop in PyPDF2
Moderate
CVE-2022-24859
was published
for
PyPDF2
(pip)
Apr 22, 2022
Windows Standards-Based Storage Management Service Denial of Service Vulnerability
Moderate
Unreviewed
CVE-2024-43512
was published
Oct 8, 2024
An issue has been discovered in GitLab CE/EE affecting all versions starting from 16.2 before 16...
Moderate
Unreviewed
CVE-2023-5825
was published
Nov 6, 2023
Liferay Portal denial-of-service vulnerability
Moderate
CVE-2024-25144
was published
for
com.liferay.portal:release.dxp.bom
(Maven)
Feb 8, 2024
In the Linux kernel, the following vulnerability has been resolved:
libfs: fix infinite...
Moderate
Unreviewed
CVE-2024-46701
was published
Sep 13, 2024
ProTip!
Advisories are also available from the
GraphQL API