GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
44
GitHub Actions
43
Go
3,181
Maven
5,000+
npm
5,000+
NuGet
863
pip
4,474
Pub
12
RubyGems
991
Rust
1,185
Swift
51
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
92 advisories
Filter by severity
An issue has been discovered in GitLab CE/EE affecting all versions starting from 10.3 before 15...
High
Unreviewed
CVE-2023-3424
was published
Jul 13, 2023
Mailform Pro CGI 4.3.1.2 and earlier allows a remote unauthenticated attacker to cause a denial...
High
Unreviewed
CVE-2023-32610
was published
Jun 29, 2023
An issue has been discovered in GitLab affecting all versions starting from 15.10 before 16.1,...
Moderate
Unreviewed
CVE-2023-2232
was published
Jun 28, 2023
An issue has been discovered in GitLab CE/EE affecting all versions starting from 12.0 before 15...
High
Unreviewed
CVE-2023-2199
was published
Jun 7, 2023
An issue has been discovered in GitLab CE/EE affecting all versions starting from 8.7 before 15...
High
Unreviewed
CVE-2023-2198
was published
Jun 7, 2023
An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.4 before 15...
High
Unreviewed
CVE-2023-2132
was published
Jun 6, 2023
A Regular Expression Denial of Service (ReDoS) issue was discovered in Puppet Server 7.9.2...
Moderate
Unreviewed
CVE-2023-1894
was published
May 5, 2023
Void Tools Everything lower than v1.4.1.1022 was discovered to contain a Regular Expression...
Moderate
Unreviewed
CVE-2023-27704
was published
Apr 12, 2023
Octobox is software for managing GitHub notifications. Prior to pull request (PR) 2807, a user of...
High
Unreviewed
CVE-2021-32848
was published
Feb 20, 2023
A vulnerability was found in Kong lua-multipart 0.5.8-1. It has been declared as problematic....
High
Unreviewed
CVE-2020-36661
was published
Feb 12, 2023
An issue has been discovered in GitLab CE/EE affecting all versions starting from 6.6 before 15.5...
Moderate
Unreviewed
CVE-2022-3514
was published
Jan 12, 2023
An issue has been discovered in GitLab CE/EE affecting all versions starting from 10.8 before 15...
Moderate
Unreviewed
CVE-2022-4131
was published
Jan 12, 2023
A potential DoS vulnerability was discovered in Gitlab CE/EE versions starting from 10.7 before...
Moderate
Unreviewed
CVE-2022-2908
was published
Oct 17, 2022
Dell Wyse ThinOS 2205 contains a Regular Expression Denial of Service Vulnerability in UI. An...
Moderate
Unreviewed
CVE-2022-34402
was published
Oct 11, 2022
Dell Hybrid Client prior to version 1.8 contains a Regular Expression Denial of Service...
Low
Unreviewed
CVE-2022-34428
was published
Oct 1, 2022
Apache OFBiz up to version 18.12.05 is vulnerable to Regular Expression Denial of Service (ReDoS)...
High
Unreviewed
CVE-2022-29158
was published
Sep 3, 2022
The Markdown parser in Zulip server before 2.0.5 used a regular expression vulnerable to...
Moderate
Unreviewed
CVE-2019-16215
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API