GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,237
Erlang
31
GitHub Actions
20
Go
2,000
Maven
5,000+
npm
3,711
NuGet
661
pip
3,383
Pub
11
RubyGems
885
Rust
849
Swift
36
Unreviewed advisories
All unreviewed
5,000+
157 advisories
Filter by severity
Vyper's raw_call `value=` kwargs not disabled for static and delegate calls
Moderate
CVE-2024-24567
was published
for
vyper
(pip)
Jan 30, 2024
glx_pbuffer.c in Mesa 23.0.4 was discovered to contain a segmentation violation when calling...
Moderate
Unreviewed
CVE-2023-45922
was published
Mar 27, 2024
socket.io has an unhandled 'error' event
Moderate
CVE-2024-38355
was published
for
socket.io
(npm)
Jun 19, 2024
Insufficient validation when decoding a Socket.IO packet
Moderate
CVE-2023-32695
was published
for
socket.io-parser
(npm)
May 23, 2023
Incomplete validation in `SparseSparseMinimum`
Moderate
CVE-2021-29607
was published
for
tensorflow
(pip)
Mar 18, 2022
The incorrect object was checked for NULL in the built-in profiler, potentially leading to...
Moderate
Unreviewed
CVE-2024-1556
was published
Feb 20, 2024
vmir e8117 was discovered to contain a segmentation violation via the export_function function at...
Moderate
Unreviewed
CVE-2024-35427
was published
Nov 9, 2024
vmir e8117 was discovered to contain a segmentation violation via the import_function function at...
Moderate
Unreviewed
CVE-2024-35424
was published
Nov 9, 2024
vmir e8117 was discovered to contain a segmentation violation via the wasm_parse_block function...
Moderate
Unreviewed
CVE-2024-35421
was published
Nov 9, 2024
Knud from Fraktal.fi has found a flaw in some Axis Network Door Controllers and Axis Network...
Moderate
Unreviewed
CVE-2023-21405
was published
Jul 25, 2023
A null pointer dereference flaw was found in Libtiff via `tif_dirinfo.c`. This issue may allow an...
Moderate
Unreviewed
CVE-2024-7006
was published
Aug 12, 2024
In ngmm, there is a possible undefined behavior due to incorrect error handling. This could lead...
Moderate
Unreviewed
CVE-2023-52534
was published
Apr 8, 2024
loona-hpack Panic Vulnerability
Moderate
CVE-2024-51502
was published
for
loona-hpack
(Rust)
Nov 4, 2024
An issue was discovered in libexpat before 2.6.4. There is a crash within the XML_ResumeParser...
Moderate
Unreviewed
CVE-2024-50602
was published
Oct 27, 2024
The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15. An...
Moderate
Unreviewed
CVE-2024-44174
was published
Oct 28, 2024
Improper Check for Unusual or Exceptional Conditions vulnerability in Webroot SecureAnywhere -...
Moderate
Unreviewed
CVE-2024-7826
was published
Oct 3, 2024
The issue was addressed with improved checks. This issue is fixed in iOS 18.1 and iPadOS 18.1. An...
Moderate
Unreviewed
CVE-2024-44235
was published
Oct 28, 2024
IBM WebSphere Application Server 8.5 is vulnerable to a denial of service, under certain...
Moderate
Unreviewed
CVE-2024-45085
was published
Oct 16, 2024
A problem with a detection mechanism in the Palo Alto Networks Cortex XDR agent on Windows...
Moderate
Unreviewed
CVE-2024-9469
was published
Oct 9, 2024
An Improper Check for Unusual or Exceptional Conditions vulnerability in the routing protocol...
Moderate
Unreviewed
CVE-2024-47507
was published
Oct 11, 2024
A denial of service vulnerability exists in all Silicon Labs Z-Wave controller and endpoint...
Moderate
Unreviewed
CVE-2023-5310
was published
Dec 15, 2023
Malformed S2 Nonce Get Command Class packets can be sent to crash PC Controller v5.54.0 and...
Moderate
Unreviewed
CVE-2023-6640
was published
Feb 21, 2024
Potential Captcha Validate Bypass in flask-session-captcha
Moderate
CVE-2022-24880
was published
for
flask-session-captcha
(pip)
Apr 26, 2022
Cipher.update_into can corrupt memory if passed an immutable python object as the outbuf
Moderate
CVE-2023-23931
was published
for
cryptography
(pip)
Feb 7, 2023
A vulnerability in the ClamD service module of Clam AntiVirus (ClamAV) versions 1.4.0, 1.3.2 and...
Moderate
Unreviewed
CVE-2024-20506
was published
Sep 5, 2024
ProTip!
Advisories are also available from the
GraphQL API