GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,820
Erlang
36
GitHub Actions
32
Go
2,410
Maven
5,000+
npm
4,050
NuGet
723
pip
3,844
Pub
12
RubyGems
933
Rust
1,003
Swift
38
Unreviewed advisories
All unreviewed
5,000+
55 advisories
Filter by severity
Deserialization vulnerability in the IPC module
Impact: Successful exploitation of this...
Moderate
Unreviewed
CVE-2025-48907
was published
Jun 6, 2025
vLLM allows clients to crash the openai server with invalid regex
Moderate
CVE-2025-48943
was published
for
vllm
(pip)
May 28, 2025
vLLM DOS: Remotely kill vllm over http with invalid JSON schema
Moderate
CVE-2025-48942
was published
for
vllm
(pip)
May 28, 2025
Uncaught exception in the core management mechanism for some Intel(R) Processors may allow an...
Moderate
Unreviewed
CVE-2025-20054
was published
May 13, 2025
A flaw was found in the mod_auth_openidc module for Apache httpd. This flaw allows a remote,...
Moderate
Unreviewed
CVE-2025-3891
was published
Apr 29, 2025
The vulnerability allows any authenticated user to cause the PeerTube server to stop functioning...
Moderate
Unreviewed
CVE-2025-32944
was published
Apr 15, 2025
Internet Starter, one of SoftCOM iKSORIS system modules, is vulnerable to client-side Denial of...
Moderate
Unreviewed
CVE-2024-49705
was published
Apr 14, 2025
An unhandled exception in the danny-avila/librechat repository, version git 600d217, can cause...
Moderate
Unreviewed
CVE-2024-11173
was published
Mar 20, 2025
With a specially crafted Python script, an attacker could send
continuous startMeasurement...
Moderate
Unreviewed
CVE-2025-24836
was published
Feb 14, 2025
Uncaught exception in OpenBMC Firmware for the Intel(R) Server M50FCP Family and Intel(R) Server...
Moderate
Unreviewed
CVE-2025-20097
was published
Feb 13, 2025
Specifically crafted payloads sent to the RFID reader could cause DoS of RFID reader. After the...
Moderate
Unreviewed
CVE-2024-13417
was published
Feb 6, 2025
IBM EntireX 11.1 could allow a local user to cause a denial of service due to an unhandled error...
Moderate
Unreviewed
CVE-2025-0158
was published
Feb 6, 2025
Denial of service in DNS-over-QUIC in Technitium DNS Server <= v13.2.2 allows remote attackers to...
Moderate
Unreviewed
CVE-2024-56946
was published
Feb 3, 2025
Go Ethereum vulnerable to DoS via malicious p2p message
Moderate
CVE-2025-24883
was published
for
github.com/ethereum/go-ethereum
(Go)
Jan 30, 2025
Unexpected server crash in database driver in M-Files Server before 25.1.14445.5 allows a highly...
Moderate
Unreviewed
CVE-2025-0648
was published
Jan 23, 2025
SurrealDB has an Uncaught Exception Sorting Tables by Random Order
Moderate
GHSA-m52v-24p8-654f
was published
for
surrealdb
(Rust)
Nov 22, 2024
SurrealDB has an Uncaught Exception Handling Nonexistent Role
Moderate
GHSA-jc55-246c-r88f
was published
for
surrealdb
(Rust)
Nov 22, 2024
SurrealDB has an Uncaught Exception in Function Generating Random Time
Moderate
GHSA-h4f5-h82v-5w4r
was published
for
surrealdb
(Rust)
Nov 22, 2024
Uncaught exception for some Intel(R) CST software before version 8.7.10803 may allow an...
Moderate
Unreviewed
CVE-2024-29076
was published
Nov 13, 2024
Vulnerability of message types not being verified in the advanced messaging modul
Impact:...
Moderate
Unreviewed
CVE-2024-51518
was published
Nov 5, 2024
Uncaught exception for some Intel(R) PROSet/Wireless and Intel(R) Killer(TM) Wi-Fi software...
Moderate
Unreviewed
CVE-2023-26586
was published
Oct 29, 2024
Uncaught exception in Intel(R) RAID Web Console software all versions may allow an authenticated...
Moderate
Unreviewed
CVE-2024-33848
was published
Sep 16, 2024
@strapi/plugin-upload has a Denial-of-Service via Improper Exception Handling
Moderate
CVE-2024-31217
was published
for
@strapi/plugin-upload
(npm)
Jun 12, 2024
IBM App Connect Enterprise 11.0.0.1 through 11.0.0.25 and 12.0.1.0 through 12.0.12.0 integration...
Moderate
Unreviewed
CVE-2024-31904
was published
May 22, 2024
Denial of service (DoS) vulnerability in the AMS module
Impact: Successful exploitation of this...
Moderate
Unreviewed
CVE-2024-32995
was published
May 14, 2024
ProTip!
Advisories are also available from the
GraphQL API