GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,335
Erlang
31
GitHub Actions
22
Go
2,096
Maven
5,000+
npm
3,762
NuGet
678
pip
3,448
Pub
12
RubyGems
892
Rust
882
Swift
37
Unreviewed advisories
All unreviewed
5,000+
427 advisories
Filter by severity
Improper handling of alternate encoding occurs when Elastic Defend on Windows systems attempts to...
Moderate
Unreviewed
CVE-2024-37284
was published
Jan 21, 2025
Yauaa vulnerable to ArrayIndexOutOfBoundsException triggered by a crafted Sec-Ch-Ua-Full-Version-List
High
CVE-2022-23496
was published
for
nl.basjes.parse.useragent:yauaa
(Maven)
Dec 8, 2022
Specifically crafted SCMI messages sent to an SCP running SCP-Firmware release versions up to and...
High
Unreviewed
CVE-2024-11864
was published
Jan 14, 2025
Specifically crafted SCMI messages sent to an SCP running SCP-Firmware release versions up to and...
Moderate
Unreviewed
CVE-2024-11863
was published
Jan 14, 2025
An Improper Handling of Exceptional Conditions vulnerability in the command-line processing of...
Moderate
Unreviewed
CVE-2025-21596
was published
Jan 9, 2025
An Improper Handling of Exceptional Conditions vulnerability in the routing protocol daemon (rpd)...
High
Unreviewed
CVE-2025-21602
was published
Jan 9, 2025
A security issue exists in Vertex Gemini API for customers using VPC-SC. By utilizing a custom...
Moderate
Unreviewed
CVE-2024-12236
was published
Dec 10, 2024
Cilium's Layer 7 policy enforcement may not occur in policies with wildcarded port ranges
Moderate
CVE-2024-52529
was published
for
github.com/cilium/cilium
(Go)
Nov 25, 2024
there is a possible way to bypass due to a logic error in the code. This could lead to local...
High
Unreviewed
CVE-2024-29748
was published
Apr 5, 2024
In the Linux kernel, the following vulnerability has been resolved:
remoteproc: k3-r5: Fix error...
Moderate
Unreviewed
CVE-2024-50176
was published
Nov 8, 2024
A potential memory vulnerability due to insufficient input validation in PDFXEditCore.x64.dll in...
High
Unreviewed
CVE-2023-24308
was published
Mar 28, 2023
The transport_message_handler function in SCP-Firmware release versions 2.11.0-2.15.0 does not...
High
Unreviewed
CVE-2024-9413
was published
Nov 13, 2024
In the Linux kernel, the following vulnerability has been resolved:
media: dvbdev: prevent the...
Moderate
Unreviewed
CVE-2024-53063
was published
Nov 19, 2024
Quarkus Improper Handling of Insufficient Permissions or Privileges and Improper Handling of Exceptional Conditions vulnerability
High
CVE-2023-6267
was published
for
io.quarkus.resteasy.reactive:resteasy-reactive
(Maven)
Jan 25, 2024
A potential security vulnerability has been identified in the HPE NonStop DISK UTIL (T9208)...
Moderate
Unreviewed
CVE-2024-51766
was published
Nov 22, 2024
In the Linux kernel, the following vulnerability has been resolved:
nilfs2: propagate directory...
Moderate
Unreviewed
CVE-2024-50202
was published
Nov 8, 2024
Segfault in `tf.raw_ops.SparseCountSparseOutput`
Low
CVE-2021-29619
was published
for
tensorflow
(pip)
May 21, 2021
Crash in `tf.transpose` with complex inputs
Low
CVE-2021-29618
was published
for
tensorflow
(pip)
May 21, 2021
Crash in `tf.strings.substr` due to `CHECK`-fail
Low
CVE-2021-29617
was published
for
tensorflow
(pip)
May 21, 2021
Bad documentation of error handling in ParseWithClaims can lead to potentially dangerous situations
Low
CVE-2024-51744
was published
for
github.com/golang-jwt/jwt/v4
(Go)
Nov 4, 2024
loona-hpack Panic Vulnerability
Moderate
CVE-2024-51502
was published
for
loona-hpack
(Rust)
Nov 4, 2024
In the Linux kernel, the following vulnerability has been resolved:
net/mlx5: Fix error path in...
Moderate
Unreviewed
CVE-2024-50001
was published
Oct 21, 2024
In the Linux kernel, the following vulnerability has been resolved:
static_call: Handle module...
Moderate
Unreviewed
CVE-2024-50002
was published
Oct 21, 2024
rdiffweb Missing Custom Error Page
Moderate
CVE-2022-3175
was published
for
rdiffweb
(pip)
Sep 14, 2022
In mintplex-labs/anything-llm, a vulnerability exists in the thread update process that allows...
High
Unreviewed
CVE-2024-3150
was published
Jun 6, 2024
ProTip!
Advisories are also available from the
GraphQL API