GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,231
Erlang
31
GitHub Actions
20
Go
1,991
Maven
5,000+
npm
3,709
NuGet
661
pip
3,341
Pub
11
RubyGems
884
Rust
846
Swift
36
Unreviewed advisories
All unreviewed
5,000+
13 advisories
Filter by severity
Incorrect behavior order in transition between executive monitor and SMI transfer monitor (STM)...
High
Unreviewed
CVE-2024-24853
was published
Aug 14, 2024
Authorization bypass in Quarkus
High
CVE-2023-6394
was published
for
io.quarkus:quarkus-smallrye-graphql-client
(Maven)
Dec 9, 2023
Potential DoS via the Tudoor mechanism in eventlet and dnspython
Moderate
CVE-2023-29483
was published
for
dnspython
(pip)
Apr 11, 2024
An Incorrect Behavior Order vulnerability in the Packet Forwarding Engine (PFE) of Juniper...
Moderate
Unreviewed
CVE-2024-30389
was published
Apr 12, 2024
An Incorrect Behavior Order in the routing engine (RE) of Juniper Networks Junos OS on EX4300...
Moderate
Unreviewed
CVE-2024-30410
was published
Apr 12, 2024
ibc-go: Potential Reentrancy using Timeout Callbacks in ibc-hooks
Critical
GHSA-j496-crgh-34mx
was published
for
github.com/cosmos/ibc-go
(Go)
Apr 5, 2024
The SolarWinds Platform was susceptible to the Incorrect Behavior Order Vulnerability. This...
High
Unreviewed
CVE-2023-33224
was published
Jul 26, 2023
Incorrect behavior order in the Command Centre Server could allow privileged users to gain...
Moderate
Unreviewed
CVE-2023-23576
was published
Dec 19, 2023
Padding Oracle Attack due to Observable Timing Discrepancy in jose-node-cjs-runtime
Moderate
CVE-2021-29446
was published
for
jose-node-cjs-runtime
(npm)
Apr 19, 2021
Padding Oracle Attack due to Observable Timing Discrepancy in jose-node-esm-runtime
Moderate
CVE-2021-29445
was published
for
jose-node-esm-runtime
(npm)
Apr 19, 2021
Padding Oracle Attack due to Observable Timing Discrepancy in jose
Moderate
CVE-2021-29443
was published
for
jose
(npm)
Apr 19, 2021
A potential Denial of Service issue in protobuf-java
High
CVE-2021-22569
was published
for
com.google.protobuf:protobuf-java
(RubyGems)
Jan 7, 2022
skylot jadx affected by Incorrect Behavior Order in vulnerable dependency
Moderate
GHSA-fjh6-p566-wr6q
was published
for
io.github.skylot:jadx-core
(Maven)
Jul 21, 2022
ProTip!
Advisories are also available from the
GraphQL API