GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
40
GitHub Actions
38
Go
2,831
Maven
5,000+
npm
4,462
NuGet
775
pip
4,226
Pub
12
RubyGems
972
Rust
1,093
Swift
47
Unreviewed advisories
All unreviewed
5,000+
3,104 advisories
Filter by severity
A security flaw has been discovered in Open5GS up to 2.7.5. This issue affects some unknown...
Moderate
Unreviewed
CVE-2025-15532
was published
Jan 17, 2026
pyasn1 has a DoS vulnerability in decoder
High
CVE-2026-23490
was published
for
pyasn1
(pip)
Jan 16, 2026
An issue in nanomq v0.22.7 allows attackers to cause a Denial of Service (DoS) via a crafted...
High
Unreviewed
CVE-2024-48077
was published
Jan 15, 2026
SvelteKit is vulnerable to denial of service and possible SSRF when using prerendering
High
CVE-2025-67647
was published
for
@sveltejs/adapter-node
(npm)
Jan 15, 2026
A flaw was found in the libxml2 library. This uncontrolled resource consumption vulnerability...
Low
Unreviewed
CVE-2026-0992
was published
Jan 15, 2026
jsdiff has a Denial of Service vulnerability in parsePatch and applyPatch
Low
GHSA-73rr-hh4g-fpgx
was published
for
diff
(npm)
Jan 14, 2026
Paessler PRTG Network Monitor before 25.4.114 allows Denial-of-Service (DoS) by an authenticated...
Moderate
Unreviewed
CVE-2025-67835
was published
Jan 14, 2026
The vulnerability exists in BLUVOYIX due to design flaws in the email sending API. An...
Critical
Unreviewed
CVE-2026-22239
was published
Jan 14, 2026
go-ethereum is vulnerable to high CPU usage leading to DoS via malicious p2p message
High
CVE-2026-22868
was published
for
github.com/ethereum/go-ethereum
(Go)
Jan 13, 2026
Denial-of-service in the DOM: Service Workers component. This vulnerability affects Firefox < 147.
High
Unreviewed
CVE-2026-0889
was published
Jan 13, 2026
A vulnerability has been identified in SIMATIC ET 200AL IM 157-1 PN (6ES7157-1AB00-0AB0) (All...
High
Unreviewed
CVE-2025-40944
was published
Jan 13, 2026
pypdf has possible long runtimes for malformed startxref
Low
CVE-2026-22691
was published
for
pypdf
(pip)
Jan 9, 2026
pypdf has possible long runtimes for missing /Root object with large /Size values
Low
CVE-2026-22690
was published
for
pypdf
(pip)
Jan 9, 2026
An issue in Hero Motocorp Vida V1 Pro 2.0.7 allows a local attacker to cause a denial of service...
High
Unreviewed
CVE-2025-67133
was published
Jan 9, 2026
Plesk Obsidian versions 8.0.1 through 18.0.73 are vulnerable to a Denial of Service (DoS)...
High
Unreviewed
CVE-2025-65518
was published
Jan 8, 2026
An issue in Insiders Technologies GmbH e-invoice pro before release 1 Service Pack 2 allows a...
High
Unreviewed
CVE-2025-56424
was published
Jan 8, 2026
An attacker with access to the system's internal network can cause a denial of service on the...
Critical
Unreviewed
CVE-2026-22542
was published
Jan 7, 2026
The massive sending of ICMP requests causes a denial of service on one of the boards from the...
High
Unreviewed
CVE-2026-22541
was published
Jan 7, 2026
The massive sending of ARP requests causes a denial of service on one board of the charger that...
Critical
Unreviewed
CVE-2026-22540
was published
Jan 7, 2026
An issue was discovered in L2 in Samsung Mobile Processor, Wearable Processor, and Modem Exynos...
High
Unreviewed
CVE-2025-43706
was published
Jan 5, 2026
flagd: Multiple Go Runtime CVEs Impact Security and Availability
High
GHSA-4c5f-9mj4-m247
was published
for
github.com/open-feature/flagd/core
(Go)
Jan 5, 2026
MessagePack for Java Vulnerable to Remote DoS via Malicious EXT Payload Allocation
High
CVE-2026-21452
was published
for
org.msgpack:msgpack-core
(Maven)
Jan 5, 2026
Signal K Server Vulnerable to Denial of Service via Unrestricted Access Request Flooding
High
CVE-2025-68272
was published
for
signalk-server
(npm)
Jan 2, 2026
An issue was discovered in function d_unqualified_name in file cp-demangle.c in BinUtils 2.26...
Low
Unreviewed
CVE-2025-66861
was published
Dec 29, 2025
An issue was discovered in function d_discriminator in file cp-demangle.c in BinUtils 2.26 allows...
High
Unreviewed
CVE-2025-66863
was published
Dec 29, 2025
ProTip!
Advisories are also available from the
GraphQL API