GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,238
Erlang
31
GitHub Actions
21
Go
2,005
Maven
5,000+
npm
3,716
NuGet
662
pip
3,388
Pub
11
RubyGems
885
Rust
851
Swift
36
Unreviewed advisories
All unreviewed
5,000+
561 advisories
Filter by severity
An issue was discovered in GetByte function in miniupnp ngiflib version 0.4, allows local...
Moderate
Unreviewed
CVE-2020-24221
was published
Aug 11, 2023
A flaw was found in the USB Host Controller Driver framework in the Linux kernel. The...
Moderate
Unreviewed
CVE-2023-4010
was published
Jul 31, 2023
A flaw was found in FRRouting when parsing certain babeld unicast hello messages that are...
High
Unreviewed
CVE-2023-3748
was published
Jul 24, 2023
An infinite loop vulnerability was found in Samba's mdssvc RPC service for Spotlight. When...
High
Unreviewed
CVE-2023-34966
was published
Jul 20, 2023
ngiflib commit 5e7292 was discovered to contain an infinite loop via the function DecodeGifImg at...
Moderate
Unreviewed
CVE-2023-37748
was published
Jul 19, 2023
In elfutils 0.183, an infinite loop was found in the function handle_symtab in readelf.c .Which...
Moderate
Unreviewed
CVE-2021-33294
was published
Jul 18, 2023
An issue was discovered in Qt before 5.15.15, 6.x before 6.2.10, and 6.3.x through 6.5.x before 6...
High
Unreviewed
CVE-2023-38197
was published
Jul 13, 2023
PyPDF2 vulnerable to possible Infinite Loop when reading malformed objects
Moderate
CVE-2023-36807
was published
for
PyPDF2
(pip)
Jun 30, 2023
pypdf and PyPDF2 possible Infinite Loop when a comment isn't followed by a character
Moderate
CVE-2023-36464
was published
for
PyPDF2
(pip)
Jun 30, 2023
OpenFGA vulnerable to denial of service due to circular relationship
Moderate
CVE-2023-35933
was published
for
github.com/openfga/openfga
(Go)
Jun 28, 2023
A vulnerability in the Administrative XML Web Service (AXL) API of Cisco Unified Communications...
Moderate
Unreviewed
CVE-2023-20116
was published
Jun 28, 2023
A loop with unreachable exit condition ('infinite loop') in Fortinet FortiOS version 7.2.0...
Moderate
Unreviewed
CVE-2023-33305
was published
Jun 13, 2023
SwiftNIO Extras vulnerable to improper detection of complete HTTP body decompression
High
CVE-2022-3252
was published
for
github.com/apple/swift-nio-extras
(Swift)
Jun 7, 2023
XRA dissector infinite loop in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of...
Moderate
Unreviewed
CVE-2023-2952
was published
May 31, 2023
GDSDB infinite loop in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via...
High
Unreviewed
CVE-2023-2879
was published
May 26, 2023
An issue in the component hang.wasm of WebAssembly 1.0 causes an infinite loop.
Moderate
Unreviewed
CVE-2023-30300
was published
May 3, 2023
A vulnerability, which was classified as problematic, was found in InternalError503 Forget It up...
Low
Unreviewed
CVE-2015-10103
was published
Apr 17, 2023
This vulnerability allows remote attackers to create a denial-of-service condition on affected...
High
Unreviewed
CVE-2022-37013
was published
Mar 29, 2023
In multiple locations, there is a possible way to trigger a persistent reboot loop due to...
Moderate
Unreviewed
CVE-2023-20996
was published
Mar 24, 2023
In multiple locations, there is a possible way to trigger a persistent reboot loop due to...
Moderate
Unreviewed
CVE-2023-20997
was published
Mar 24, 2023
In multiple locations, there is a possible way to trigger a persistent reboot loop due to...
Moderate
Unreviewed
CVE-2023-20998
was published
Mar 24, 2023
In multiple locations, there is a possible way to trigger a persistent reboot loop due to...
Moderate
Unreviewed
CVE-2023-20999
was published
Mar 24, 2023
phpseclib Infinite Loop vulnerability
Moderate
CVE-2023-27560
was published
for
phpseclib/phpseclib
(Composer)
Mar 3, 2023
Improper calculations in ECC implementation can trigger a Denial-of-Service (DoS)
High
CVE-2023-25653
was published
for
node-jose
(npm)
Feb 16, 2023
Denial of service in modem due to missing null check while processing IP packets with padding
High
Unreviewed
CVE-2022-25734
was published
Feb 12, 2023
ProTip!
Advisories are also available from the
GraphQL API