GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,266
Erlang
31
GitHub Actions
21
Go
2,035
Maven
5,000+
npm
3,732
NuGet
662
pip
3,413
Pub
12
RubyGems
891
Rust
865
Swift
36
Unreviewed advisories
All unreviewed
5,000+
204 advisories
Filter by severity
Missing validation causes denial of service via `Conv3DBackpropFilterV2`
Moderate
CVE-2022-29204
was published
for
tensorflow
(pip)
May 24, 2022
A vulnerability has been identified in APOGEE MBC (PPC) (BACnet) (All versions), APOGEE MBC (PPC)...
Critical
Unreviewed
CVE-2021-31889
was published
May 24, 2022
Wazuh Manager in Wazuh through 4.1.5 is affected by a remote Integer Underflow vulnerability that...
Moderate
Unreviewed
CVE-2021-41821
was published
May 24, 2022
Integer underflow can occur when the RTCP length is lesser than than the actual blocks present in...
Critical
Unreviewed
CVE-2021-1919
was published
May 24, 2022
Integer underflow can occur due to improper handling of incoming RTCP packets in Snapdragon Auto,...
Critical
Unreviewed
CVE-2021-1920
was published
May 24, 2022
A code execution vulnerability exists in the DL_Dxf::handleLWPolylineData functionality of...
High
Unreviewed
CVE-2021-21897
was published
May 24, 2022
NVIDIA Linux kernel distributions contain a vulnerability in FuSa Capture (VI/ISP), where integer...
High
Unreviewed
CVE-2021-1108
was published
May 24, 2022
There is an Integer Underflow (Wrap or Wraparound) Vulnerability in Huawei Smartphone.Successful...
High
Unreviewed
CVE-2021-22379
was published
May 24, 2022
In Weidmueller Industrial WLAN devices in multiple versions an exploitable denial-of-service...
High
Unreviewed
CVE-2021-33536
was published
May 24, 2022
Windows NTFS Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2021-31956
was published
May 24, 2022
An integer overflow leading to a heap-buffer overflow was found in the DwaCompressor of OpenEXR...
Moderate
Unreviewed
CVE-2021-26260
was published
May 24, 2022
An integer overflow leading to a heap-buffer overflow was found in OpenEXR in versions before 3.0...
Moderate
Unreviewed
CVE-2021-26945
was published
May 24, 2022
Microsoft Office Information Disclosure Vulnerability
Moderate
Unreviewed
CVE-2021-31178
was published
May 24, 2022
An integer underflow was discovered in userdisk/vport_lldpd in Moxa Camera VPort 06EC-2V Series,...
High
Unreviewed
CVE-2021-25849
was published
May 24, 2022
Improper validation of the ChassisID TLV in userdisk/vport_lldpd in Moxa Camera VPort 06EC-2V...
High
Unreviewed
CVE-2021-25846
was published
May 24, 2022
A flaw was found in xorg-x11-server in versions before 1.20.11. An integer underflow can occur in...
High
Unreviewed
CVE-2021-3472
was published
May 24, 2022
The Fatek Automation WinProladder Versions 3.3 and prior are vulnerable to an integer underflow,...
High
Unreviewed
CVE-2021-27486
was published
May 24, 2022
An issue was discovered in Contiki through 3.0. When sending an ICMPv6 error message because of...
High
Unreviewed
CVE-2021-28362
was published
May 24, 2022
Loading a bgzip block can write out of bounds if size overflows.
Critical
CVE-2021-28027
was published
for
bam
(Rust)
May 24, 2022
An integer underflow has been found in the latest version of ZCFees. The variables 'currPeriodIdx...
High
Unreviewed
CVE-2020-24837
was published
May 24, 2022
An integer underflow was discovered in OpenLDAP before 2.4.57 leading to a slapd crash in the...
High
Unreviewed
CVE-2020-36228
was published
May 24, 2022
An integer underflow was discovered in OpenLDAP before 2.4.57 leading to slapd crashes in the...
High
Unreviewed
CVE-2020-36221
was published
May 24, 2022
Possible out of bound memory access in audio due to integer underflow while processing modified...
Critical
Unreviewed
CVE-2020-3691
was published
May 24, 2022
In Arm software implementing the Armv8-M processors (all versions), the stack selection mechanism...
High
Unreviewed
CVE-2020-16273
was published
May 24, 2022
u'Out of Bound issue in DSP services while processing received arguments due to improper...
High
Unreviewed
CVE-2020-11208
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API