GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,750
Erlang
35
GitHub Actions
29
Go
2,323
Maven
5,000+
npm
3,956
NuGet
712
pip
3,739
Pub
12
RubyGems
921
Rust
973
Swift
38
Unreviewed advisories
All unreviewed
5,000+
34 advisories
Filter by severity
tanton_engine has unsound public API
Moderate
GHSA-m2xr-2vj4-wh94
was published
for
tanton_engine
(Rust)
May 6, 2025
Wasmtime out of bounds read/write with zero-memory-pages configuration
Moderate
CVE-2022-39392
was published
for
wasmtime
(Rust)
Nov 10, 2022
Panic in mp3-metadata due to the lack of bounds checking
Moderate
GHSA-927q-g9w9-pm54
was published
for
mp3-metadata
(Rust)
Apr 30, 2025
jsonschema2pojo has Improper Restriction of Operations within the Bounds of a Memory Buffer
Moderate
CVE-2025-3588
was published
for
org.jsonschema2pojo:jsonschema2pojo-core
(Maven)
Apr 14, 2025
Ouch Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability
Moderate
CVE-2024-13941
was published
for
ouch
(Rust)
Apr 1, 2025
Heap buffer overflow in CefSharp
Moderate
CVE-2020-15999
was published
for
CefSharp.Common
(NuGet)
Oct 27, 2020
Segfault and data corruption in tensorflow-lite
Moderate
CVE-2020-15207
was published
for
tensorflow
(pip)
Sep 25, 2020
Heap buffer overflow in Tensorflow
Moderate
CVE-2020-15195
was published
for
tensorflow
(pip)
Sep 25, 2020
Heap buffer overflow in Tensorflow
Moderate
CVE-2020-15196
was published
for
tensorflow
(pip)
Sep 25, 2020
Heap buffer overflow in Tensorflow
Moderate
CVE-2020-15198
was published
for
tensorflow
(pip)
Sep 25, 2020
Denial of service in tensorflow-lite
Moderate
CVE-2020-15213
was published
for
tensorflow
(pip)
Sep 25, 2020
Float cast overflow undefined behavior
Moderate
CVE-2020-15266
was published
for
tensorflow
(pip)
Nov 13, 2020
Improper Restriction of Operations within the Bounds of a Memory Buffer in python-cjson
Moderate
CVE-2010-1666
was published
for
python-cjson
(pip)
May 17, 2022
Pillow Buffer overflow in ImagingLibTiffDecode
Moderate
CVE-2016-0740
was published
for
pillow
(pip)
Jul 24, 2018
MindSpore vulnerable to memory corruption
Moderate
CVE-2023-2970
was published
for
mindspore
(pip)
May 30, 2023
Eclipse Vert.x memory leak
Moderate
CVE-2024-1023
was published
for
io.vertx:vertx-core
(Maven)
Mar 27, 2024
PartialBufferOutputStream2 flush issues
Moderate
CVE-2008-7227
was published
for
org.geoserver.web:gs-web-app
(Maven)
May 17, 2022
•
withdrawn
OpenStack Swift allows authenticated users to cause a denial of service
Moderate
CVE-2013-4155
was published
for
swift
(pip)
May 17, 2022
OpenStack Keystone Denial of Service vulnerability via a large HTTP request
Moderate
CVE-2013-0270
was published
for
keystone
(pip)
May 5, 2022
Pivotal Spring Framework DoS Attack with XML Input
Moderate
CVE-2015-3192
was published
for
org.springframework:spring-web
(Maven)
Oct 17, 2018
Apache Tomcat does not properly handle an invalid Transfer-Encoding header
Moderate
CVE-2010-2227
was published
for
org.apache.tomcat:tomcat
(Maven)
May 14, 2022
Authenticated Local Privilege Escalation vulnerability in Intel Optimization for Tensorflow
Moderate
CVE-2023-27506
was published
for
intel-tensorflow
(pip)
Aug 11, 2023
Lift Sensitive Information Disclosure
Moderate
CVE-2013-3300
was published
for
net.liftweb:lift-webkit
(Maven)
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API