GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,750
Maven
5,000+
npm
4,353
NuGet
765
pip
4,114
Pub
12
RubyGems
960
Rust
1,069
Swift
45
Unreviewed advisories
All unreviewed
5,000+
153 advisories
Filter by severity
AVEVA PI Data Archive products
are vulnerable to an uncaught exception that, if exploited, could...
High
Unreviewed
CVE-2025-36539
was published
Jun 12, 2025
AVEVA PI Data Archive products are vulnerable to an uncaught exception that, if
exploited, could...
High
Unreviewed
CVE-2025-44019
was published
Jun 12, 2025
Deserialization vulnerability in the IPC module
Impact: Successful exploitation of this...
Moderate
Unreviewed
CVE-2025-48907
was published
Jun 6, 2025
Multer vulnerable to Denial of Service via unhandled exception
High
CVE-2025-48997
was published
for
multer
(npm)
Jun 5, 2025
quic-go Has Panic in Path Probe Loss Recovery Handling
High
CVE-2025-29785
was published
for
github.com/quic-go/quic-go
(Go)
Jun 3, 2025
vLLM allows clients to crash the openai server with invalid regex
Moderate
CVE-2025-48943
was published
for
vllm
(pip)
May 28, 2025
vLLM DOS: Remotely kill vllm over http with invalid JSON schema
Moderate
CVE-2025-48942
was published
for
vllm
(pip)
May 28, 2025
Multer vulnerable to Denial of Service from maliciously crafted requests
High
CVE-2025-47944
was published
for
multer
(npm)
May 19, 2025
The C++ method SignTraits::DeriveBits() may incorrectly call ThrowException() based on user...
High
Unreviewed
CVE-2025-23166
was published
May 19, 2025
Uncaught exception in the core management mechanism for some Intel(R) Processors may allow an...
Moderate
Unreviewed
CVE-2025-20054
was published
May 13, 2025
IBM Db2 for Linux, UNIX and Windows 12.1.0 and 12.1.1 is vulnerable to a denial of service as the...
Moderate
Unreviewed
CVE-2024-52903
was published
May 2, 2025
A flaw was found in the mod_auth_openidc module for Apache httpd. This flaw allows a remote,...
Moderate
Unreviewed
CVE-2025-3891
was published
Apr 29, 2025
tRPC 11 WebSocket DoS Vulnerability
High
CVE-2025-43855
was published
for
@trpc/server
(npm)
Apr 24, 2025
The vulnerability allows any authenticated user to cause the PeerTube server to stop functioning...
Moderate
Unreviewed
CVE-2025-32944
was published
Apr 15, 2025
Internet Starter, one of SoftCOM iKSORIS system modules, is vulnerable to client-side Denial of...
Moderate
Unreviewed
CVE-2024-49705
was published
Apr 14, 2025
SurrealDB has uncaught exception in Net module that leads to database crash
High
GHSA-rq86-9m6r-cm3g
was published
for
surrealdb
(Rust)
Apr 10, 2025
Exception capture failure vulnerability in the SVG parsing module of the ArkUI framework
Impact:...
High
Unreviewed
CVE-2024-58111
was published
Apr 7, 2025
Exception capture failure vulnerability in the SVG parsing module of the ArkUI framework
Impact:...
High
Unreviewed
CVE-2024-58112
was published
Apr 7, 2025
In wlan AP driver, there is a possible information disclosure due to an uncaught exception. This...
High
Unreviewed
CVE-2025-20663
was published
Apr 7, 2025
In wlan AP driver, there is a possible information disclosure due to an uncaught exception. This...
High
Unreviewed
CVE-2025-20664
was published
Apr 7, 2025
Specifically crafted MongoDB wire protocol messages can cause mongos to crash during command...
High
Unreviewed
CVE-2025-3083
was published
Apr 1, 2025
mintplex-labs/anything-llm version git 6dc3642 contains an unauthenticated Denial of Service (DoS...
High
Unreviewed
CVE-2024-8249
was published
Mar 20, 2025
PyTorch Lightning denial of service vulnerability
High
CVE-2024-8020
was published
for
pytorch-lightning
(pip)
Mar 20, 2025
An unhandled exception in the danny-avila/librechat repository, version git 600d217, can cause...
Moderate
Unreviewed
CVE-2024-11173
was published
Mar 20, 2025
A vulnerability in danny-avila/librechat version git a1647d7 allows an unauthenticated attacker...
High
Unreviewed
CVE-2024-11172
was published
Mar 20, 2025
ProTip!
Advisories are also available from the
GraphQL API