GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,239
Erlang
31
GitHub Actions
21
Go
2,007
Maven
5,000+
npm
3,716
NuGet
662
pip
3,388
Pub
11
RubyGems
885
Rust
851
Swift
36
Unreviewed advisories
All unreviewed
5,000+
2,387 advisories
Filter by severity
Eclipse Jetty's PushSessionCacheFilter can cause remote DoS attacks
Low
CVE-2024-6762
was published
for
org.eclipse.jetty:jetty-servlets
(Maven)
Oct 14, 2024
In Splunk Enterprise versions below 9.3.1, 9.2.3, and 9.1.6 and Splunk Cloud Platform versions...
Moderate
Unreviewed
CVE-2024-45736
was published
Oct 14, 2024
Eclipse Jetty has a denial of service vulnerability on DosFilter
Moderate
CVE-2024-9823
was published
for
org.eclipse.jetty.ee10:jetty-ee10-servlets
(Maven)
Oct 14, 2024
A vulnerability in parisneo/lollms-webui version 9.8 allows for a Denial of Service (DOS) attack...
High
Unreviewed
CVE-2024-6959
was published
Oct 13, 2024
An Uncontrolled Resource Consumption vulnerability in the http daemon (httpd) of Juniper Networks...
High
Unreviewed
CVE-2024-47497
was published
Oct 11, 2024
Uncontrolled resource consumption in some Intel(R) Thunderbolt(TM) DCH drivers for Windows before...
Moderate
Unreviewed
CVE-2023-25769
was published
Oct 10, 2024
In Progress® Telerik® Report Server versions prior to 2024 Q3 (10.2.24.806), an HTTP DoS attack...
High
Unreviewed
CVE-2024-7294
was published
Oct 9, 2024
Microsoft Simple Certificate Enrollment Protocol Denial of Service Vulnerability
High
Unreviewed
CVE-2024-43541
was published
Oct 8, 2024
Microsoft Simple Certificate Enrollment Protocol Denial of Service Vulnerability
High
Unreviewed
CVE-2024-43544
was published
Oct 8, 2024
Windows Online Certificate Status Protocol (OCSP) Server Denial of Service Vulnerability
High
Unreviewed
CVE-2024-43545
was published
Oct 8, 2024
Windows Hyper-V Denial of Service Vulnerability
High
Unreviewed
CVE-2024-43575
was published
Oct 8, 2024
Internet Small Computer Systems Interface (iSCSI) Denial of Service Vulnerability
High
Unreviewed
CVE-2024-43515
was published
Oct 8, 2024
BranchCache Denial of Service Vulnerability
High
Unreviewed
CVE-2024-43506
was published
Oct 8, 2024
BranchCache Denial of Service Vulnerability
High
Unreviewed
CVE-2024-38149
was published
Oct 8, 2024
Due to a memory leak, a denial-of-service vulnerability exists in the Rockwell Automation...
High
Unreviewed
CVE-2024-8626
was published
Oct 8, 2024
Django vulnerable to denial-of-service attack via the urlize() and urlizetrunc() template filters
Moderate
CVE-2024-45230
was published
for
Django
(pip)
Oct 8, 2024
CUPS cups-browsed before 2.5b1 will send an HTTP POST request to an arbitrary destination and...
High
Unreviewed
CVE-2024-47850
was published
Oct 4, 2024
Apache Commons IO: Possible denial of service attack on untrusted input to XmlStreamReader
High
CVE-2024-47554
was published
for
commons-io:commons-io
(Maven)
Oct 3, 2024
A vulnerability in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series...
Moderate
Unreviewed
CVE-2024-20502
was published
Oct 2, 2024
A vulnerability in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series...
Moderate
Unreviewed
CVE-2024-20500
was published
Oct 2, 2024
A vulnerability has been found in ThingsBoard up to 3.7.0 and classified as problematic. Affected...
Moderate
Unreviewed
CVE-2024-9358
was published
Oct 1, 2024
The swctrl service is used to detect and remotely manage PLANET Technology devices. Certain...
Moderate
Unreviewed
CVE-2024-8454
was published
Sep 30, 2024
Dell SmartFabric OS10 Software, versions 10.5.6.x, 10.5.5.x, 10.5.4.x,10.5.3.x, contains an...
High
Unreviewed
CVE-2024-37125
was published
Sep 26, 2024
Mattermost fails to strip `embeds` from `metadata` when broadcasting `posted` events
Moderate
CVE-2024-47003
was published
for
github.com/mattermost/mattermost/server/v8
(Go)
Sep 26, 2024
Certain PCI devices in a system might be assigned Reserved Memory
Regions (specified via Reserved...
High
Unreviewed
CVE-2024-31145
was published
Sep 25, 2024
ProTip!
Advisories are also available from the
GraphQL API