GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,237
Erlang
31
GitHub Actions
20
Go
2,000
Maven
5,000+
npm
3,711
NuGet
661
pip
3,383
Pub
11
RubyGems
885
Rust
849
Swift
36
Unreviewed advisories
All unreviewed
5,000+
343 advisories
Filter by severity
Vyper's raw_call `value=` kwargs not disabled for static and delegate calls
Moderate
CVE-2024-24567
was published
for
vyper
(pip)
Jan 30, 2024
glx_pbuffer.c in Mesa 23.0.4 was discovered to contain a segmentation violation when calling...
Moderate
Unreviewed
CVE-2023-45922
was published
Mar 27, 2024
CHECK-fail in `QuantizeAndDequantizeV4Grad`
Low
CVE-2021-29544
was published
for
tensorflow
(pip)
May 21, 2021
Jenkins Remoting library arbitrary file read vulnerability
High
CVE-2024-43044
was published
for
org.jenkins-ci.main:jenkins-core
(Maven)
Aug 7, 2024
socket.io has an unhandled 'error' event
Moderate
CVE-2024-38355
was published
for
socket.io
(npm)
Jun 19, 2024
Insufficient validation when decoding a Socket.IO packet
Moderate
CVE-2023-32695
was published
for
socket.io-parser
(npm)
May 23, 2023
Crash when type cannot be specialized in Tensorflow
High
CVE-2022-23572
was published
for
tensorflow
(pip)
Feb 9, 2022
Assertion failure based denial of service in Tensorflow
High
CVE-2022-21737
was published
for
tensorflow
(pip)
Feb 9, 2022
Segfault in `simplifyBroadcast` in Tensorflow
High
CVE-2022-23593
was published
for
tensorflow
(pip)
Feb 9, 2022
Type confusion leading to segfault in Tensorflow
High
CVE-2022-21731
was published
for
tensorflow
(pip)
Feb 10, 2022
Incomplete validation in `SparseSparseMinimum`
Moderate
CVE-2021-29607
was published
for
tensorflow
(pip)
Mar 18, 2022
The incorrect object was checked for NULL in the built-in profiler, potentially leading to...
Moderate
Unreviewed
CVE-2024-1556
was published
Feb 20, 2024
Moodle has insufficient capability checks
Low
CVE-2024-43435
was published
for
moodle/moodle
(Composer)
Nov 11, 2024
vmir e8117 was discovered to contain a segmentation violation via the export_function function at...
Moderate
Unreviewed
CVE-2024-35427
was published
Nov 9, 2024
vmir e8117 was discovered to contain a segmentation violation via the wasm_parse_block function...
Moderate
Unreviewed
CVE-2024-35421
was published
Nov 9, 2024
vmir e8117 was discovered to contain a segmentation violation via the function_prepare_parse...
Unknown
Unreviewed
CVE-2024-35425
was published
Nov 9, 2024
vmir e8117 was discovered to contain a segmentation violation via the import_function function at...
Moderate
Unreviewed
CVE-2024-35424
was published
Nov 9, 2024
A Local Privilege Escalation vulnerability exists in the affected product. The vulnerability...
High
Unreviewed
CVE-2024-10945
was published
Nov 12, 2024
Knud from Fraktal.fi has found a flaw in some Axis Network Door Controllers and Axis Network...
Moderate
Unreviewed
CVE-2023-21405
was published
Jul 25, 2023
In ShortcutInfo of ShortcutInfo.java, there is a possible way for an app to retain notification...
Low
Unreviewed
CVE-2023-21246
was published
Jul 13, 2023
A null pointer dereference flaw was found in Libtiff via `tif_dirinfo.c`. This issue may allow an...
Moderate
Unreviewed
CVE-2024-7006
was published
Aug 12, 2024
In ngmm, there is a possible undefined behavior due to incorrect error handling. This could lead...
Moderate
Unreviewed
CVE-2023-52534
was published
Apr 8, 2024
loona-hpack Panic Vulnerability
Moderate
CVE-2024-51502
was published
for
loona-hpack
(Rust)
Nov 4, 2024
Tor Arti's STUB circuits incorrectly have a length of 2
High
CVE-2024-35312
was published
for
arti
(Rust)
May 18, 2024
ProTip!
Advisories are also available from the
GraphQL API