GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
186 advisories
Filter by severity
Capstone SEGV caused by a read memory access
Moderate
CVE-2016-7151
was published
for
capstone
(pip)
May 24, 2022
Open Chinese Convert subject to Denial of Service via Out-of-bounds Read
Moderate
CVE-2018-16982
was published
for
opencc
(npm)
May 14, 2022
Mercurial Out-of-bounds Read vulnerability
High
CVE-2018-17983
was published
for
mercurial
(pip)
May 14, 2022
Aubio is vulnerable to out of bound read when samplerate > 50kHz
High
CVE-2018-14523
was published
for
aubio
(pip)
May 13, 2022
ChakraCore RCE Vulnerability
High
CVE-2018-8139
was published
for
Microsoft.ChakraCore
(NuGet)
May 13, 2022
Out of bounds read in json-smart
High
CVE-2021-31684
was published
for
net.minidev:json-smart
(Maven)
Feb 10, 2022
Read and Write outside of bounds in TensorFlow
High
CVE-2022-23560
was published
for
tensorflow
(pip)
Feb 9, 2022
Out of bounds read and write in Tensorflow
High
CVE-2022-23574
was published
for
tensorflow
(pip)
Feb 9, 2022
Out-of-bounds Read in iText
Moderate
CVE-2022-24198
was published
for
com.itextpdf:itext7-core
(Maven)
Feb 2, 2022
Out-of-bounds Read in Onionshare
High
CVE-2022-21688
was published
for
onionshare-cli
(pip)
Jan 21, 2022
Out-of-Bounds read in stringstream
Moderate
GHSA-qpw2-xchm-655q
was published
for
stringstream
(npm)
Jan 6, 2022
•
withdrawn
Heap OOB read in all `tf.raw_ops.QuantizeAndDequantizeV*` ops
Moderate
CVE-2021-41205
was published
for
tensorflow
(pip)
Nov 10, 2021
Heap OOB read in `tf.raw_ops.SparseCountSparseOutput`
High
CVE-2021-41210
was published
for
tensorflow
(pip)
Nov 10, 2021
Heap OOB in shape inference for `QuantizeV2`
High
CVE-2021-41211
was published
for
tensorflow
(pip)
Nov 10, 2021
Heap OOB read in `tf.ragged.cross`
High
CVE-2021-41212
was published
for
tensorflow
(pip)
Nov 10, 2021
Undefined behavior via `nullptr` reference binding in sparse matrix multiplication
High
CVE-2021-41219
was published
for
tensorflow
(pip)
Nov 10, 2021
Heap OOB in `FusedBatchNorm` kernels
Moderate
CVE-2021-41223
was published
for
tensorflow
(pip)
Nov 10, 2021
`SparseFillEmptyRows` heap OOB
Moderate
CVE-2021-41224
was published
for
tensorflow
(pip)
Nov 10, 2021
ProTip!
Advisories are also available from the
GraphQL API