GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,189
Erlang
31
GitHub Actions
19
Go
1,985
Maven
5,000+
npm
3,701
NuGet
657
pip
3,326
Pub
11
RubyGems
882
Rust
836
Swift
35
Unreviewed advisories
All unreviewed
5,000+
53 advisories
Filter by severity
Out-of-bounds Write in OpenCV
Moderate
CVE-2017-14136
was published
for
opencv-contrib-python
(pip)
Oct 12, 2021
Apiman Manager API affected by Jackson denial of service vulnerability
Moderate
GHSA-q95j-488q-5q3p
was published
for
io.apiman:apiman-manager-api-impl
(Maven)
Jan 9, 2023
Jettison parser crash by stackoverflow
Moderate
CVE-2022-40149
was published
for
org.codehaus.jettison:jettison
(Maven)
Sep 17, 2022
JXPath Out-of-bounds Write vulnerability
Moderate
CVE-2022-40160
was published
for
commons-jxpath:commons-jxpath
(Maven)
Oct 6, 2022
•
withdrawn
LIEF vulnerable to heap based buffer overflow
Moderate
CVE-2022-38306
was published
for
lief
(pip)
Sep 14, 2022
org.apache.activemq:artemis-core-client Vulnerable to Out-of-Bounds Write
Moderate
CVE-2021-4040
was published
for
org.apache.activemq:artemis-core-client
(Maven)
Aug 25, 2022
UltraJSON vulnerable to Out-of-bounds Write
Moderate
CVE-2021-45958
was published
for
ujson
(pip)
Jan 21, 2022
JXPath Out-of-bounds Write vulnerability
Moderate
CVE-2022-40157
was published
for
commons-jxpath:commons-jxpath
(Maven)
Oct 6, 2022
•
withdrawn
JXPath Out-of-bounds Write vulnerability
Moderate
CVE-2022-40159
was published
for
commons-jxpath:commons-jxpath
(Maven)
Oct 6, 2022
•
withdrawn
JXPath Out-of-bounds Write vulnerability
Moderate
CVE-2022-40161
was published
for
commons-jxpath:commons-jxpath
(Maven)
Oct 6, 2022
•
withdrawn
JXPath Out-of-bounds Write vulnerability
Moderate
CVE-2022-40158
was published
for
commons-jxpath:commons-jxpath
(Maven)
Oct 6, 2022
•
withdrawn
Reflected Cross-site Scripting (XSS) in ACS Commons
Moderate
CVE-2021-21043
was published
for
com.adobe.acs:acs-aem-commons
(Maven)
May 13, 2021
Incomplete validation in `SparseAdd`
Moderate
CVE-2021-29609
was published
for
tensorflow
(pip)
May 21, 2021
Out-of-bounds Write in OpenCV.
Moderate
CVE-2018-5268
was published
for
opencv-contrib-python
(pip)
Oct 12, 2021
XWiki Platform subject to Uncontrolled Resource Consumption
Moderate
CVE-2023-26470
was published
for
org.xwiki.platform:xwiki-platform-oldcore
(Maven)
Mar 3, 2023
Wasmtime out of bounds read/write with zero-memory-pages configuration
Moderate
CVE-2022-39392
was published
for
wasmtime
(Rust)
Nov 10, 2022
Out-of-bounds Write in iText
Moderate
CVE-2022-24197
was published
for
com.itextpdf:itext7-core
(Maven)
Feb 2, 2022
Out-of-bounds read/write and invalid free with `externref`s and GC safepoints in Wasmtime
Moderate
CVE-2021-39218
was published
for
wasmtime
(Rust)
Sep 20, 2021
Heap buffer overflow due to incorrect hash function in TensorFlow
Moderate
CVE-2022-29210
was published
for
tensorflow
(pip)
May 24, 2022
Jettison parser crash by stackoverflow
Moderate
GHSA-xqcq-j8w9-3pxv
was published
for
com.tencyle.fixes:org.codehaus.jettison--jettison
(Maven)
Aug 1, 2023
ProTip!
Advisories are also available from the
GraphQL API