GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,344
Erlang
31
GitHub Actions
22
Go
2,112
Maven
5,000+
npm
3,767
NuGet
680
pip
3,453
Pub
12
RubyGems
892
Rust
888
Swift
38
Unreviewed advisories
All unreviewed
5,000+
156 advisories
Filter by severity
In network HW, there is a possible system hang due to an uncaught exception. This could lead to...
High
Unreviewed
CVE-2025-20637
was published
Feb 3, 2025
CVE-2024-40619 IMPACT
A denial-of-service vulnerability exists in the affected products. The...
High
Unreviewed
CVE-2024-40619
was published
Aug 14, 2024
IBM Security Verify Directory 10.0 through 10.0.3 is vulnerable to a denial of service when...
High
Unreviewed
CVE-2024-45650
was published
Jan 31, 2025
In __efi_rt_asm_wrapper of efi-rt-wrapper.S, there is a possible bypass of shadow stack...
High
Unreviewed
CVE-2023-21102
was published
May 16, 2023
A Denial of Service vulnerability in the DNS Security feature of Palo Alto Networks PAN-OS...
High
Unreviewed
CVE-2024-3393
was published
Dec 27, 2024
In the Linux kernel, the following vulnerability has been resolved:
net/sched: act_ct: fix wild...
High
Unreviewed
CVE-2021-47014
was published
Feb 28, 2024
While parsing certain malformed PLY files, PCL version 1.14.1 crashes due to an uncaught std:...
High
Unreviewed
CVE-2024-53432
was published
Dec 4, 2024
Mattermost versions 10.0.x <= 10.0.1, 10.1.x <= 10.1.1, 9.11.x <= 9.11.3, 9.5.x <= 9.5.11 fail to...
High
Unreviewed
CVE-2024-11599
was published
Nov 28, 2024
Jenkins Remoting library arbitrary file read vulnerability
High
CVE-2024-43044
was published
for
org.jenkins-ci.main:jenkins-core
(Maven)
Aug 7, 2024
Crash when type cannot be specialized in Tensorflow
High
CVE-2022-23572
was published
for
tensorflow
(pip)
Feb 9, 2022
Assertion failure based denial of service in Tensorflow
High
CVE-2022-21737
was published
for
tensorflow
(pip)
Feb 9, 2022
Segfault in `simplifyBroadcast` in Tensorflow
High
CVE-2022-23593
was published
for
tensorflow
(pip)
Feb 9, 2022
Type confusion leading to segfault in Tensorflow
High
CVE-2022-21731
was published
for
tensorflow
(pip)
Feb 10, 2022
A Local Privilege Escalation vulnerability exists in the affected product. The vulnerability...
High
Unreviewed
CVE-2024-10945
was published
Nov 12, 2024
Tor Arti's STUB circuits incorrectly have a length of 2
High
CVE-2024-35312
was published
for
arti
(Rust)
May 18, 2024
Vulnerability of uncaught exceptions in the NFC module. Successful exploitation of this...
High
Unreviewed
CVE-2023-46765
was published
Nov 8, 2023
Integer truncation in Shard API usage
High
CVE-2020-15202
was published
for
tensorflow
(pip)
Sep 25, 2020
In the Linux kernel, the following vulnerability has been resolved:
x86/tdx: Fix "in-kernel MMIO...
High
Unreviewed
CVE-2024-47727
was published
Oct 21, 2024
AVEVA PI Server versions 2023 and 2018 SP3 P05 and prior contain a vulnerability that could...
High
Unreviewed
CVE-2023-34348
was published
Jan 18, 2024
Issue summary: Generating excessively long X9.42 DH keys or checking
excessively long X9.42 DH...
High
Unreviewed
CVE-2023-5678
was published
Nov 6, 2023
An Improper Check for Unusual or Exceptional Conditions vulnerability in the flow processing...
High
Unreviewed
CVE-2024-47503
was published
Oct 11, 2024
An Improper Check for Unusual or Exceptional Conditions vulnerability in the routing protocol...
High
Unreviewed
CVE-2024-47499
was published
Oct 11, 2024
A denial-of-service vulnerability exists in the Rockwell Automation PowerFlex® 600T. If the...
High
Unreviewed
CVE-2024-9124
was published
Oct 8, 2024
Malformed S2 Nonce Get command classes can be sent to crash the gateway. A hard reset is...
High
Unreviewed
CVE-2024-3052
was published
Apr 27, 2024
json2xml Uncaught Exception vulnerability
High
CVE-2022-25024
was published
for
json2xml
(pip)
Aug 23, 2023
ProTip!
Advisories are also available from the
GraphQL API