GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,359
Erlang
33
GitHub Actions
22
Go
2,124
Maven
5,000+
npm
3,787
NuGet
683
pip
3,467
Pub
12
RubyGems
894
Rust
892
Swift
38
Unreviewed advisories
All unreviewed
5,000+
290 advisories
Filter by severity
In the Linux kernel, the following vulnerability has been resolved:
SUNRPC: Fix loop termination...
Moderate
Unreviewed
CVE-2024-36288
was published
Jun 21, 2024
In the Linux kernel, the following vulnerability has been resolved:
PCI: pciehp: Fix infinite...
Moderate
Unreviewed
CVE-2021-47617
was published
Jun 20, 2024
A vulnerability has been found in GPAC 2.5-DEV-rev228-g11067ea92-master and classified as...
Moderate
Unreviewed
CVE-2024-6061
was published
Jun 17, 2024
Deep Sea Electronics DSE855 Multipart Boundary Infinite Loop Denial-of-Service Vulnerability....
Moderate
Unreviewed
CVE-2024-5949
was published
Jun 13, 2024
A vulnerability has been identified in SIMATIC CP 1542SP-1 (6GK7542-6UX00-0XE0) (All versions <...
Moderate
Unreviewed
CVE-2023-50763
was published
Jun 11, 2024
In the Linux kernel, the following vulnerability has been resolved:
virtio_net: Do not send RSS...
Moderate
Unreviewed
CVE-2024-35981
was published
May 20, 2024
In the Linux kernel, the following vulnerability has been resolved:
batman-adv: Avoid infinite...
Moderate
Unreviewed
CVE-2024-35982
was published
May 20, 2024
MONGO and ZigBee TLV dissector infinite loops in Wireshark 4.2.0 to 4.2.4, 4.0.0 to 4.0.14, and 3...
Moderate
Unreviewed
CVE-2024-4854
was published
May 14, 2024
Bouncy Castle crafted signature and public key can be used to trigger an infinite loop
Moderate
CVE-2024-30172
was published
for
BouncyCastle
(Maven)
May 14, 2024
Vitess vulnerable to infinite memory consumption and vtgate crash
Moderate
CVE-2024-32886
was published
for
github.com/vitessio/vitess
(Go)
May 8, 2024
Open Networking Foundation SD-RAN ONOS onos-ric-sdk-go 0.8.12 allows infinite repetition of the...
Moderate
Unreviewed
CVE-2023-52726
was published
Apr 30, 2024
In the Linux kernel, the following vulnerability has been resolved:
fsdax: Fix infinite loop in...
Moderate
Unreviewed
CVE-2022-48635
was published
Apr 28, 2024
Due to a bug in packet data buffers management, the PPP printer in tcpdump can enter an infinite...
Moderate
Unreviewed
CVE-2024-2397
was published
Apr 12, 2024
Windows Hyper-V Denial of Service Vulnerability
Moderate
Unreviewed
CVE-2024-21408
was published
Mar 12, 2024
Golang protojson.Unmarshal function infinite loop when unmarshaling certain forms of invalid JSON
Moderate
CVE-2024-24786
was published
for
google.golang.org/protobuf
(Go)
Mar 6, 2024
In the Linux kernel, the following vulnerability has been resolved:
crypto: qcom-rng - fix...
Moderate
Unreviewed
CVE-2022-48630
was published
Mar 5, 2024
In the Linux kernel, the following vulnerability has been resolved:
x86/fpu: Stop relying on...
Moderate
Unreviewed
CVE-2024-26603
was published
Feb 26, 2024
Apache Commons Compress: Denial of service caused by an infinite loop for a corrupted DUMP file
Moderate
CVE-2024-25710
was published
for
org.apache.commons:commons-compress
(Maven)
Feb 19, 2024
Liferay Portal denial-of-service vulnerability
Moderate
CVE-2024-25144
was published
for
com.liferay.portal:release.dxp.bom
(Maven)
Feb 8, 2024
When calling bson_utf8_validate on some inputs a loop with an exit condition that cannot be...
Moderate
Unreviewed
CVE-2023-0437
was published
Jan 12, 2024
MP4Box GPAC version 2.3-DEV-rev636-gfbd7e13aa-master was discovered to contain an infinite loop...
Moderate
Unreviewed
CVE-2023-50120
was published
Jan 10, 2024
An issue discovered in BitmapAccess.cpp::FreeImage_AllocateBitmap in FreeImage 3.18.0 leads to an...
Moderate
Unreviewed
CVE-2023-47997
was published
Jan 10, 2024
IPAddress Infinite Loop vulnerability (Disputed)
Moderate
CVE-2023-50570
was published
for
com.github.seancfoley:ipaddress
(Maven)
Dec 29, 2023
•
withdrawn
An issue has been discovered in GitLab CE/EE affecting all versions starting from 16.2 before 16...
Moderate
Unreviewed
CVE-2023-5825
was published
Nov 6, 2023
Possible Infinite Loop when PdfWriter(clone_from) is used with a PDF
Moderate
CVE-2023-46250
was published
for
pypdf
(pip)
Oct 31, 2023
ProTip!
Advisories are also available from the
GraphQL API