GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,205
Erlang
31
GitHub Actions
19
Go
1,988
Maven
5,000+
npm
3,704
NuGet
661
pip
3,332
Pub
11
RubyGems
884
Rust
845
Swift
36
Unreviewed advisories
All unreviewed
5,000+
237 advisories
Filter by severity
Regular expression denial of service in codemirror
Moderate
CVE-2020-7760
was published
for
codemirror
(npm)
May 10, 2021
Regular Expression Denial of Service in dat.gui
High
CVE-2020-7755
was published
for
dat.gui
(npm)
May 10, 2021
Regular Expression Denial of Service in trim
High
CVE-2020-7753
was published
for
trim
(npm)
May 10, 2021
Regular Expression Denial of Service in postcss
Moderate
CVE-2021-23368
was published
for
postcss
(npm)
May 10, 2021
Uncontrolled Resource Consumption in json-bigint
High
CVE-2020-8237
was published
for
json-bigint
(npm)
May 7, 2021
Regular Expression Denial of Service in ua-parser-js
High
CVE-2020-7733
was published
for
ua-parser-js
(npm)
May 7, 2021
Uncontrolled Resource Consumption in fastify-multipart
Moderate
CVE-2020-8136
was published
for
fastify-multipart
(npm)
May 6, 2021
Regular Expression Denial of Service (ReDoS) in ua-parser-js
High
CVE-2021-27292
was published
for
ua-parser-js
(npm)
May 6, 2021
Regular Expression Denial of Service in hosted-git-info
Moderate
CVE-2021-23362
was published
for
hosted-git-info
(npm)
May 6, 2021
Denial of service in chrono-node
High
CVE-2021-23371
was published
for
chrono-node
(npm)
May 6, 2021
Node-Redis potential exponential regex in monitor mode
High
CVE-2021-29469
was published
for
redis
(npm)
Apr 27, 2021
Denial of Service (DoS) via the unsetByPath function in jsjoints
High
CVE-2020-28479
was published
for
jointjs
(npm)
Apr 13, 2021
Prototype Pollution in asciitable.js
Critical
CVE-2020-7771
was published
for
asciitable.js
(npm)
Apr 13, 2021
Uncontrolled Resource Consumption in rdf-graph-array
Moderate
CVE-2019-10798
was published
for
rdf-graph-array
(npm)
Apr 13, 2021
Regular Expression Denial of Service (ReDoS) in es6-crawler-detect
Moderate
CVE-2020-28501
was published
for
es6-crawler-detect
(npm)
Apr 13, 2021
Denial of Service in get-ip-range
High
CVE-2021-27191
was published
for
get-ip-range
(npm)
Apr 13, 2021
Regular expression Denial of Service in multiple packages
Moderate
CVE-2021-21391
was published
for
@ckeditor/ckeditor5-engine
(npm)
Apr 6, 2021
Regular Expression Denial of Service (ReDoS)
High
CVE-2021-28092
was published
for
is-svg
(npm)
Mar 19, 2021
Regular Expression Denial of Service (ReDoS)
High
CVE-2021-27290
was published
for
ssri
(npm)
Mar 19, 2021
printf vulnerable to Regular Expression Denial of Service (ReDoS)
High
CVE-2021-23354
was published
for
printf
(npm)
Mar 19, 2021
Regular Expression Denial-of-Service in npm schema-inspector
High
CVE-2021-21267
was published
for
schema-inspector
(npm)
Mar 19, 2021
html-parse-stringify and html-parse-stringify2 vulnerable to Regular expression denial of service (ReDoS)
Moderate
CVE-2021-23346
was published
for
html-parse-stringify
(npm)
Mar 18, 2021
jspdf vulnerable to Regular Expression Denial of Service (ReDoS)
High
CVE-2021-23353
was published
for
jspdf
(npm)
Mar 12, 2021
ProTip!
Advisories are also available from the
GraphQL API