GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,189
Erlang
31
GitHub Actions
19
Go
1,985
Maven
5,000+
npm
3,701
NuGet
657
pip
3,326
Pub
11
RubyGems
882
Rust
836
Swift
35
Unreviewed advisories
All unreviewed
5,000+
48 advisories
Filter by severity
Ox gem stack overflow in sax_parse
Moderate
CVE-2017-16229
was published
for
ox
(RubyGems)
Mar 5, 2018
Out-of-bounds Read in concat-with-sourcemaps
Moderate
GHSA-2xv3-h762-ccxv
was published
for
concat-with-sourcemaps
(npm)
May 29, 2019
Out-of-bounds Read in npmconf
Moderate
GHSA-57cf-349j-352g
was published
for
npmconf
(npm)
Jun 12, 2019
Out-of-bounds Read in stringstream
Moderate
CVE-2018-21270
was published
for
stringstream
(npm)
Jun 20, 2019
Out-of-bounds Read in base64url
Moderate
GHSA-rvg8-pwq2-xj7q
was published
for
base64url
(npm)
Sep 1, 2020
Heap buffer overflow in Tensorflow
Moderate
CVE-2020-15196
was published
for
tensorflow
(pip)
Sep 25, 2020
Out of bounds access in tensorflow-lite
Moderate
CVE-2020-15211
was published
for
tensorflow
(pip)
Sep 25, 2020
Heap out of bounds access in MakeEdge in TensorFlow
Moderate
CVE-2020-26271
was published
for
tensorflow
(pip)
Dec 10, 2020
Incomplete validation in `tf.raw_ops.CTCLoss`
Moderate
CVE-2021-29613
was published
for
tensorflow
(pip)
May 21, 2021
Denial of service in geth
Moderate
CVE-2020-26242
was published
for
github.com/ethereum/go-ethereum
(Go)
Jun 29, 2021
Heap OOB in TFLite's `Gather*` implementations
Moderate
CVE-2021-37687
was published
for
tensorflow
(pip)
Aug 25, 2021
Heap OOB in `SdcaOptimizerV2`
Moderate
CVE-2021-37672
was published
for
tensorflow
(pip)
Aug 25, 2021
Heap OOB in `UpperBound` and `LowerBound`
Moderate
CVE-2021-37670
was published
for
tensorflow
(pip)
Aug 25, 2021
Out of bounds read in lazy-init
Moderate
CVE-2021-25901
was published
for
lazy-init
(Rust)
Aug 25, 2021
Out-of-bounds read/write and invalid free with `externref`s and GC safepoints in Wasmtime
Moderate
CVE-2021-39218
was published
for
wasmtime
(Rust)
Sep 20, 2021
Out-of-bounds Read in OpenCV
Moderate
CVE-2019-16249
was published
for
opencv-contrib-python
(pip)
Oct 12, 2021
Out-of-bounds Read in OpenCV
Moderate
CVE-2019-19624
was published
for
opencv-contrib-python
(pip)
Oct 12, 2021
Arbitrary memory read in `ImmutableConst`
Moderate
CVE-2021-41227
was published
for
tensorflow
(pip)
Nov 10, 2021
Out-of-Bounds read in stringstream
Moderate
GHSA-qpw2-xchm-655q
was published
for
stringstream
(npm)
Jan 6, 2022
•
withdrawn
ProTip!
Advisories are also available from the
GraphQL API