GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Language support
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,077
Erlang
29
GitHub Actions
19
Go
1,902
Maven
5,000+
npm
3,631
NuGet
638
pip
3,246
Pub
10
RubyGems
863
Rust
818
Swift
35
Unreviewed advisories
All unreviewed
5,000+
15 advisories
Filter by severity
Apache Hadoop heap overflow before v2.10.2, v3.2.3, v3.3.2
Critical
CVE-2021-37404
was published
for
org.apache.hadoop:hadoop-common
(Maven)
Jun 14, 2022
Incorrect buffer size in crossbeam-channel
Moderate
CVE-2020-35904
was published
for
crossbeam-channel
(Rust)
Aug 25, 2021
Incorrect buffer size calculation in iced-x86
Critical
CVE-2021-38188
was published
for
iced-x86
(Rust)
Aug 25, 2021
Heap buffer overflow in `StringNGrams`
Low
CVE-2021-29542
was published
for
tensorflow
(pip)
May 21, 2021
Heap buffer overflow in `QuantizedMul`
Low
CVE-2021-29535
was published
for
tensorflow
(pip)
May 21, 2021
Heap buffer overflow caused by rounding
Low
CVE-2021-29529
was published
for
tensorflow
(pip)
May 21, 2021
Segfault in SparseCountSparseOutput
Low
CVE-2021-29521
was published
for
tensorflow
(pip)
May 21, 2021
Heap buffer overflow in `SparseTensorToCSRSparseMatrix`
Low
CVE-2021-29545
was published
for
tensorflow
(pip)
May 21, 2021
Heap buffer overflow in `QuantizedResizeBilinear`
Low
CVE-2021-29537
was published
for
tensorflow
(pip)
May 21, 2021
Heap OOB and null pointer dereference in `RaggedTensorToTensor`
Moderate
CVE-2021-29608
was published
for
tensorflow
(pip)
May 21, 2021
Overflow in `ImageProjectiveTransformV2`
Moderate
CVE-2022-41886
was published
for
tensorflow
(pip)
Nov 21, 2022
Overflow in `FusedResizeAndPadConv2D`
Moderate
CVE-2022-41885
was published
for
tensorflow
(pip)
Nov 21, 2022
Overflow in `tf.keras.losses.poisson`
Moderate
CVE-2022-41887
was published
for
tensorflow
(pip)
Nov 21, 2022
Overflow in `ResizeNearestNeighborGrad`
Moderate
CVE-2022-41907
was published
for
tensorflow
(pip)
Nov 21, 2022
Unexpected panics in num-bigint
Moderate
GHSA-v935-pqmr-g8v9
was published
for
num-bigint
(Rust)
Nov 3, 2021
ProTip!
Advisories are also available from the
GraphQL API