GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,411
Erlang
33
GitHub Actions
22
Go
2,146
Maven
5,000+
npm
3,808
NuGet
687
pip
3,481
Pub
12
RubyGems
897
Rust
899
Swift
38
Unreviewed advisories
All unreviewed
5,000+
91 advisories
Filter by severity
Formwork improperly validates input of User role preventing site and panel availability
High
GHSA-c85w-x26q-ch87
was published
for
getformwork/formwork
(Composer)
Mar 1, 2025
Namada-apps allows Post-Genesis Validator Bypass
Critical
GHSA-2gw2-qgjg-xh6p
was published
for
namada-apps
(Rust)
Feb 20, 2025
Uncaught Panic in ORML Rewards Pallet
High
GHSA-5v93-9mqw-p9mh
was published
for
orml-rewards
(Rust)
Feb 14, 2025
With a specially crafted Python script, an attacker could send
continuous startMeasurement...
Moderate
Unreviewed
CVE-2025-24836
was published
Feb 14, 2025
Uncaught exception in OpenBMC Firmware for the Intel(R) Server M50FCP Family and Intel(R) Server...
Moderate
Unreviewed
CVE-2025-20097
was published
Feb 13, 2025
Specifically crafted payloads sent to the RFID reader could cause DoS of RFID reader. After the...
Moderate
Unreviewed
CVE-2024-13417
was published
Feb 6, 2025
IBM EntireX 11.1 could allow a local user to cause a denial of service due to an unhandled error...
Moderate
Unreviewed
CVE-2025-0158
was published
Feb 6, 2025
In network HW, there is a possible system hang due to an uncaught exception. This could lead to...
High
Unreviewed
CVE-2025-20637
was published
Feb 3, 2025
Go Ethereum vulnerable to DoS via malicious p2p message
Moderate
CVE-2025-24883
was published
for
github.com/ethereum/go-ethereum
(Go)
Jan 30, 2025
Unexpected server crash in database driver in M-Files Server before 25.1.14445.5 allows a highly...
Moderate
Unreviewed
CVE-2025-0648
was published
Jan 23, 2025
Null pointer dereference vulnerability in the image decoding module
Impact: Successful...
High
Unreviewed
CVE-2024-54106
was published
Dec 12, 2024
rPGP Panics on Malformed Untrusted Input
High
CVE-2024-53856
was published
for
pgp
(Rust)
Dec 5, 2024
In wlan driver, there is a possible client disconnection due to improper handling of exceptional...
High
Unreviewed
CVE-2024-20137
was published
Dec 2, 2024
SurrealDB has an Uncaught Exception Sorting Tables by Random Order
Moderate
GHSA-m52v-24p8-654f
was published
for
surrealdb
(Rust)
Nov 22, 2024
SurrealDB has an Uncaught Exception Handling Nonexistent Role
Moderate
GHSA-jc55-246c-r88f
was published
for
surrealdb
(Rust)
Nov 22, 2024
SurrealDB has an Uncaught Exception in Function Generating Random Time
Moderate
GHSA-h4f5-h82v-5w4r
was published
for
surrealdb
(Rust)
Nov 22, 2024
Uncaught exception for some Intel(R) CST software before version 8.7.10803 may allow an...
Moderate
Unreviewed
CVE-2024-29076
was published
Nov 13, 2024
Vulnerability of message types not being verified in the advanced messaging modul
Impact:...
Moderate
Unreviewed
CVE-2024-51518
was published
Nov 5, 2024
Uncaught exception for some Intel(R) PROSet/Wireless and Intel(R) Killer(TM) Wi-Fi software...
Moderate
Unreviewed
CVE-2023-26586
was published
Oct 29, 2024
SurrealDB has an Uncaught Exception Handling Parsing Errors on Empty Strings
High
GHSA-qjrv-v6qp-x99x
was published
for
surrealdb
(Rust)
Oct 8, 2024
Denial of Service in TYPO3 Bookmark Toolbar
Low
CVE-2024-34537
was published
for
typo3/cms-backend
(Composer)
Oct 8, 2024
Uncaught exception in Intel(R) RAID Web Console software all versions may allow an authenticated...
Moderate
Unreviewed
CVE-2024-33848
was published
Sep 16, 2024
Boa has an uncaught exception when transitioning the state of `AsyncGenerator` objects
High
CVE-2024-43367
was published
for
boa_engine
(Rust)
Aug 14, 2024
Vulnerability of uncaught exceptions in the Graphics module
Impact: Successful exploitation of...
Critical
Unreviewed
CVE-2024-42037
was published
Aug 8, 2024
panic on parsing crafted phonenumber inputs
Critical
CVE-2024-39697
was published
for
phonenumber
(Rust)
Jul 9, 2024
ProTip!
Advisories are also available from the
GraphQL API