GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,300
Erlang
31
GitHub Actions
21
Go
2,069
Maven
5,000+
npm
3,744
NuGet
668
pip
3,429
Pub
12
RubyGems
892
Rust
880
Swift
36
Unreviewed advisories
All unreviewed
5,000+
60 advisories
Filter by severity
Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-49093
was published
Dec 12, 2024
Incorrect code generation could have led to unexpected numeric conversions and potential...
High
Unreviewed
CVE-2024-1552
was published
Feb 20, 2024
The Wallet for WooCommerce plugin for WordPress is vulnerable to incorrect conversion between...
Moderate
Unreviewed
CVE-2024-7747
was published
Nov 28, 2024
Overflow/crash in `tf.range`
Moderate
CVE-2021-41202
was published
for
tensorflow
(pip)
Nov 10, 2021
Heap OOB in nested `tf.map_fn` with `RaggedTensor`s
High
CVE-2021-37679
was published
for
tensorflow
(pip)
Aug 25, 2021
Crash in NMS ops caused by integer conversion to unsigned
Moderate
CVE-2021-37669
was published
for
tensorflow
(pip)
Aug 25, 2021
Crash caused by integer conversion to unsigned
Moderate
CVE-2021-37661
was published
for
tensorflow
(pip)
Aug 25, 2021
Bad alloc in `StringNGrams` caused by integer conversion
Moderate
CVE-2021-37646
was published
for
tensorflow
(pip)
Aug 25, 2021
Integer overflow due to conversion to unsigned
Moderate
CVE-2021-37645
was published
for
tensorflow
(pip)
Aug 25, 2021
Segfault in tf.raw_ops.ImmutableConst
Low
CVE-2021-29539
was published
for
tensorflow
(pip)
May 21, 2021
Heap buffer overflow in `UnsortedSegmentSum` in TensorFlow
Low
CVE-2019-16778
was published
for
tensorflow
(pip)
Dec 16, 2019
Potential DoS with NumberFilter conversion to integer values.
High
CVE-2020-15225
was published
for
django-filter
(pip)
Sep 28, 2020
DHCP Server Service Remote Code Execution Vulnerability
High
Unreviewed
CVE-2024-38044
was published
Jul 9, 2024
Apache Xalan Java XSLT library integer truncation issue when processing malicious XSLT stylesheets
High
CVE-2022-34169
was published
for
xalan:xalan
(Maven)
Jul 20, 2022
A vulnerability has been identified in SIPLUS TIM 1531 IRC (6AG1543-1MX00-7XE0) (All versions <...
Moderate
Unreviewed
CVE-2022-40225
was published
Jun 11, 2024
vyper's range(start, start + N) reverts for negative numbers
Moderate
CVE-2024-32481
was published
for
vyper
(pip)
Apr 25, 2024
Microsoft ODBC Driver Remote Code Execution Vulnerability
High
Unreviewed
CVE-2024-26162
was published
Mar 12, 2024
Windows Kernel Local Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2020-17087
was published
May 24, 2022
Dell BIOS contains a Signed to Unsigned Conversion Error vulnerability. A local authenticated...
Moderate
Unreviewed
CVE-2023-28063
was published
Feb 6, 2024
Oxenstored 32->31 bit integer truncation issues Integers in Ocaml are 63 or 31 bits of signed...
Moderate
Unreviewed
CVE-2022-42324
was published
Nov 1, 2022
Sign extension error in the ReadDIBImage function in ImageMagick before 6.3.5-9 allows context...
Moderate
Unreviewed
CVE-2007-4988
was published
May 1, 2022
The Embedded OpenType (EOT) Font Engine (T2EMBED.DLL) in Microsoft Windows 2000 SP4, XP SP2 and...
High
Unreviewed
CVE-2009-0231
was published
May 2, 2022
Integer overflow in the rtl_allocateMemory function in sal/rtl/source/alloc_global.c in the...
High
Unreviewed
CVE-2008-3282
was published
May 1, 2022
Integer signedness error in the Networking component in Apple Mac OS X 10.4 through 10.4.10...
High
Unreviewed
CVE-2007-4268
was published
May 1, 2022
Windows MSHTML Platform Remote Code Execution Vulnerability
High
Unreviewed
CVE-2021-33742
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API