GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,633
Erlang
34
GitHub Actions
25
Go
2,239
Maven
5,000+
npm
3,900
NuGet
701
pip
3,667
Pub
12
RubyGems
914
Rust
943
Swift
38
Unreviewed advisories
All unreviewed
5,000+
1,098 advisories
Filter by severity
Allocation of Resources Without Limits or Throttling vulnerability in Drupal Stage File Proxy...
Moderate
Unreviewed
CVE-2025-3734
was published
Apr 16, 2025
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). ...
Moderate
Unreviewed
CVE-2025-30688
was published
Apr 15, 2025
vLLM vulnerable to Denial of Service by abusing xgrammar cache
Moderate
GHSA-hf3c-wxg2-49q9
was published
for
vllm
(pip)
Apr 15, 2025
golang.org/x/crypto Vulnerable to Denial of Service (DoS) via Slow or Incomplete Key Exchange
High
CVE-2025-22869
was published
for
golang.org/x/crypto
(Go)
Apr 12, 2025
SurrealDB no JavaScript script function default timeout could facilitate DoS
Low
GHSA-3824-qmfq-2qv7
was published
for
surrealdb
(Rust)
Apr 11, 2025
A denial-of-service (DoS) vulnerability in Palo Alto Networks Prisma® SD-WAN ION devices enables...
Moderate
Unreviewed
CVE-2025-0122
was published
Apr 11, 2025
IBM QRadar WinCollect Agent 10.0 through 10.1.13 could allow a remote attacker to cause a denial...
Moderate
Unreviewed
CVE-2024-51461
was published
Apr 11, 2025
A Denial of Service (DoS) issue has been discovered in GitLab CE/EE affecting all up to 17.8.7,...
Moderate
Unreviewed
CVE-2025-1677
was published
Apr 10, 2025
Helm Allows A Specially Crafted Chart Archive To Cause Out Of Memory Termination
Moderate
CVE-2025-32386
was published
for
helm.sh/helm/v3
(Go)
Apr 10, 2025
Dell PowerScale OneFS, versions 9.5.0.0 through 9.10.0.0, contains an uncontrolled resource...
Moderate
Unreviewed
CVE-2025-26480
was published
Apr 10, 2025
Allocation of Resources Without Limits or Throttling, Incorrect Authorization vulnerability in...
Moderate
Unreviewed
CVE-2025-3475
was published
Apr 9, 2025
xgrammar Vulnerable to Denial of Service (DoS) by abusing unbounded cache in memory
Moderate
CVE-2025-32381
was published
for
xgrammar
(pip)
Apr 9, 2025
bep/imagemeta allows a potentially large memory allocation in PNG and WebP parsing
Moderate
CVE-2025-32025
was published
for
github.com/bep/imagemeta
(Go)
Apr 9, 2025
bep/imagemeta allows excessively large EXIF data structures
Moderate
CVE-2025-32024
was published
for
github.com/bep/imagemeta
(Go)
Apr 9, 2025
Allocation of resources without limits or throttling in ASP.NET Core allows an unauthorized...
High
Unreviewed
CVE-2025-26682
was published
Apr 8, 2025
Apollo Compiler Named Fragment Processing Vulnerability
High
CVE-2025-31496
was published
for
apollo-compiler
(Rust)
Apr 7, 2025
Apollo Gateway Query Planner Vulnerable to Excessive Resource Consumption via Optimization Bypass
High
CVE-2025-32031
was published
for
@apollo/gateway
(npm)
Apr 7, 2025
Apollo Gateway Query Planner Vulnerable to Excessive Resource Consumption via Named Fragment Expansion
High
CVE-2025-32030
was published
for
@apollo/gateway
(npm)
Apr 7, 2025
Apollo Router Query Validation Vulnerable to Excessive Resource Consumption via Named Fragment Processing
High
CVE-2025-32380
was published
for
apollo-router
(Rust)
Apr 7, 2025
Apollo Router Query Planner Vulnerable to Excessive Resource Consumption via Named Fragment Expansion
High
CVE-2025-32034
was published
for
apollo-router
(Rust)
Apr 7, 2025
Apollo Router Query Planner Vulnerable to Excessive Resource Consumption via Optimization Bypass
High
CVE-2025-32032
was published
for
apollo-router
(Rust)
Apr 7, 2025
Allocation of resources without limits or throttling issue exists in HMI ViewJet C-more series...
Moderate
Unreviewed
CVE-2025-24317
was published
Apr 4, 2025
A flaw was found in libsoup. The SoupWebsocketConnection may accept a large WebSocket message,...
High
Unreviewed
CVE-2025-32049
was published
Apr 3, 2025
Django Potential Denial of Service (DoS) on Windows
Moderate
CVE-2025-27556
was published
for
Django
(pip)
Apr 2, 2025
image-size Denial of Service via Infinite Loop during Image Processing
High
GHSA-m5qc-5hw7-8vg7
was published
for
image-size
(npm)
Apr 2, 2025
ProTip!
Advisories are also available from the
GraphQL API