GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,409
Erlang
33
GitHub Actions
22
Go
2,144
Maven
5,000+
npm
3,808
NuGet
687
pip
3,481
Pub
12
RubyGems
897
Rust
898
Swift
38
Unreviewed advisories
All unreviewed
5,000+
169 advisories
Filter by severity
Withdrawn Advisory: Out-of-bounds Read can lead to client side denial of service
High
CVE-2022-34037
was published
for
github.com/caddyserver/caddy
(Go)
Jul 23, 2022
•
withdrawn
Out-of-bounds Read in fast-string-search
Moderate
CVE-2022-25872
was published
for
fast-string-search
(npm)
Jun 18, 2022
Ill-formed headers may lead to unexpected behavior in Istio
Moderate
CVE-2022-31045
was published
for
istio.io/istio
(Go)
Jun 10, 2022
Denial of Service in jsonparser
High
CVE-2020-35381
was published
for
github.com/buger/jsonparser
(Go)
May 25, 2022
Asterix Heap-based Buffer Overflow
High
CVE-2021-44144
was published
for
asterix_decoder
(pip)
May 24, 2022
Read buffer overruns processing ASN.1 strings
High
CVE-2021-3712
was published
for
openssl-src
(Rust)
May 24, 2022
Out-of-bounds Read in Facebook Hermes
High
CVE-2020-1915
was published
for
hermes-engine
(npm)
May 24, 2022
Out-of-bounds Read and Out-of-bounds Write in Facebook Hermes
High
CVE-2020-1912
was published
for
hermes-engine
(npm)
May 24, 2022
Capstone SEGV caused by a read memory access
Moderate
CVE-2016-7151
was published
for
capstone
(pip)
May 24, 2022
Open Chinese Convert subject to Denial of Service via Out-of-bounds Read
Moderate
CVE-2018-16982
was published
for
opencc
(npm)
May 14, 2022
Mercurial Out-of-bounds Read vulnerability
High
CVE-2018-17983
was published
for
mercurial
(pip)
May 14, 2022
Aubio is vulnerable to out of bound read when samplerate > 50kHz
High
CVE-2018-14523
was published
for
aubio
(pip)
May 13, 2022
ChakraCore RCE Vulnerability
High
CVE-2018-8139
was published
for
Microsoft.ChakraCore
(NuGet)
May 13, 2022
Out of bounds read in json-smart
High
CVE-2021-31684
was published
for
net.minidev:json-smart
(Maven)
Feb 10, 2022
Read and Write outside of bounds in TensorFlow
High
CVE-2022-23560
was published
for
tensorflow
(pip)
Feb 9, 2022
Out of bounds read and write in Tensorflow
High
CVE-2022-23574
was published
for
tensorflow
(pip)
Feb 9, 2022
Out-of-bounds Read in iText
Moderate
CVE-2022-24198
was published
for
com.itextpdf:itext7-core
(Maven)
Feb 2, 2022
Out-of-bounds Read in Onionshare
High
CVE-2022-21688
was published
for
onionshare-cli
(pip)
Jan 21, 2022
ProTip!
Advisories are also available from the
GraphQL API