GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,224
Erlang
31
GitHub Actions
19
Go
1,990
Maven
5,000+
npm
3,706
NuGet
661
pip
3,336
Pub
11
RubyGems
884
Rust
845
Swift
36
Unreviewed advisories
All unreviewed
5,000+
202 advisories
Filter by severity
Segfault while copying constant resource tensor
Moderate
CVE-2021-41204
was published
for
tensorflow
(pip)
Nov 10, 2021
Unitialized access in `EinsumHelper::ParseEquation`
High
CVE-2021-41201
was published
for
tensorflow
(pip)
Nov 10, 2021
Reference binding to nullptr in shape inference
High
CVE-2021-37676
was published
for
tensorflow
(pip)
Aug 25, 2021
Reference binding to nullptr in map operations
High
CVE-2021-37671
was published
for
tensorflow
(pip)
Aug 25, 2021
Reference binding to nullptr in unicode encoding
High
CVE-2021-37667
was published
for
tensorflow
(pip)
Aug 25, 2021
Reference binding to nullptr in `RaggedTensorToVariant`
High
CVE-2021-37666
was published
for
tensorflow
(pip)
Aug 25, 2021
Reference binding to nullptr in boosted trees
Moderate
CVE-2021-37662
was published
for
tensorflow
(pip)
Aug 25, 2021
Reference binding to nullptr in `MatrixSetDiagV*` ops
Moderate
CVE-2021-37658
was published
for
tensorflow
(pip)
Aug 25, 2021
Reference binding to nullptr in `MatrixDiagV*` ops
Moderate
CVE-2021-37657
was published
for
tensorflow
(pip)
Aug 25, 2021
Reference binding to nullptr in `RaggedTensorToSparse`
Moderate
CVE-2021-37656
was published
for
tensorflow
(pip)
Aug 25, 2021
In the Linux kernel, the following vulnerability has been resolved:
wifi: ath9k_htc: Use...
Moderate
Unreviewed
CVE-2024-49938
was published
Oct 21, 2024
An issue was discovered in psi/zcolor.c in Artifex Ghostscript before 10.04.0. An unchecked...
High
Unreviewed
CVE-2024-46951
was published
Nov 10, 2024
Incomplete validation in boosted trees code
Critical
CVE-2021-41208
was published
for
tensorflow
(pip)
Nov 10, 2021
Reference binding to `nullptr` in `tf.ragged.cross`
High
CVE-2021-41214
was published
for
tensorflow
(pip)
Nov 10, 2021
Undefined behavior via `nullptr` reference binding in sparse matrix multiplication
High
CVE-2021-41219
was published
for
tensorflow
(pip)
Nov 10, 2021
In the Linux kernel, the following vulnerability has been resolved:
btrfs: fix uninitialized...
High
Unreviewed
CVE-2024-50088
was published
Oct 29, 2024
Reference binding to null in `ParameterizedTruncatedNormal`
Low
CVE-2021-29568
was published
for
tensorflow
(pip)
May 21, 2021
In the Linux kernel, the following vulnerability has been resolved:
mac80211: track only QoS...
Moderate
Unreviewed
CVE-2021-47602
was published
Jun 19, 2024
In the Linux kernel, the following vulnerability has been resolved:
btrfs: fix uninitialized...
Moderate
Unreviewed
CVE-2024-50087
was published
Oct 29, 2024
Animate versions 23.0.7, 24.0.4 and earlier are affected by an Access of Uninitialized Pointer...
High
Unreviewed
CVE-2024-47411
was published
Oct 9, 2024
In the Linux kernel, the following vulnerability has been resolved:
um: line: always fill ...
High
Unreviewed
CVE-2024-46844
was published
Sep 27, 2024
Asyncpg Arbitrary Code Execution Via Access to an Uninitialized Pointer
Critical
CVE-2020-17446
was published
for
asyncpg
(pip)
Apr 20, 2021
SPRT dissector crash in Wireshark 4.2.0 to 4.0.5 and 4.0.0 to 4.0.15 allows denial of service via...
Moderate
Unreviewed
CVE-2024-8645
was published
Sep 10, 2024
Microsoft Office 2013 SP1 and 2013 RT SP1 allows remote attackers to execute arbitrary code via a...
High
Unreviewed
CVE-2015-1770
was published
May 14, 2022
Multiple uninitialized pointer vulnerabilities when parsing a specially crafted file in Esri...
High
Unreviewed
CVE-2021-29098
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API