GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,333
Erlang
31
GitHub Actions
22
Go
2,095
Maven
5,000+
npm
3,762
NuGet
678
pip
3,446
Pub
12
RubyGems
892
Rust
882
Swift
37
Unreviewed advisories
All unreviewed
5,000+
2,232 advisories
Filter by severity
Denial of Service in Bytom
High
CVE-2018-18206
was published
for
github.com/bytom/bytom
(Go)
Feb 15, 2022
Rat.SetString in math/big in Go before 1.16.14 and 1.17.x before 1.17.7 has an overflow that can...
High
Unreviewed
CVE-2022-23772
was published
Feb 12, 2022
Improper validation of data length received from DMA buffer can lead to memory corruption. in...
High
Unreviewed
CVE-2021-35069
was published
Feb 12, 2022
Possible integer overflow due to improper fragment datatype while calculating number of fragments...
High
Unreviewed
CVE-2021-35074
was published
Feb 12, 2022
In ccu driver, there is a possible memory corruption due to an integer overflow. This could lead...
Moderate
Unreviewed
CVE-2022-20039
was published
Feb 11, 2022
A CWE-190: Integer Overflow or Wraparound vulnerability exists that could cause heap-based buffer...
Critical
Unreviewed
CVE-2022-24310
was published
Feb 11, 2022
Duplicate advisory: swift-nio-http2 vulnerable to denial of service via mishandled HPACK variable length integer encoding
High
GHSA-wfvq-p7qf-vv64
was published
for
github.com/apple/swift-nio-http2
(Swift)
Feb 11, 2022
•
withdrawn
Stormshield Network Security (SNS) 3.x has an Integer Overflow in the high-availability component.
Moderate
Unreviewed
CVE-2021-3398
was published
Feb 11, 2022
Memory exhaustion in Tensorflow
Moderate
CVE-2022-21733
was published
for
tensorflow
(pip)
Feb 10, 2022
Overflow and uncaught divide by zero in Tensorflow
High
CVE-2022-21729
was published
for
tensorflow
(pip)
Feb 10, 2022
storeAtts in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow.
High
Unreviewed
CVE-2022-22827
was published
Feb 10, 2022
In doProlog in xmlparse.c in Expat (aka libexpat) before 2.4.3, an integer overflow exists for...
High
Unreviewed
CVE-2021-46143
was published
Feb 10, 2022
build_model in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow.
Critical
Unreviewed
CVE-2022-22823
was published
Feb 10, 2022
nextScaffoldPart in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow.
High
Unreviewed
CVE-2022-22826
was published
Feb 10, 2022
defineAttribute in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow.
Critical
Unreviewed
CVE-2022-22824
was published
Feb 10, 2022
lookup in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow.
High
Unreviewed
CVE-2022-22825
was published
Feb 10, 2022
addBinding in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow.
Critical
Unreviewed
CVE-2022-22822
was published
Feb 10, 2022
Expat (aka libexpat) before 2.4.4 has a signed integer overflow in XML_GetBuffer, for...
Critical
Unreviewed
CVE-2022-23852
was published
Feb 10, 2022
Expat (aka libexpat) before 2.4.4 has an integer overflow in the doProlog function.
Critical
Unreviewed
CVE-2022-23990
was published
Feb 10, 2022
Integer overflow in TFLite array creation
High
CVE-2022-23558
was published
for
tensorflow
(pip)
Feb 9, 2022
Integer overflow leading to crash in Tensorflow
High
CVE-2022-21738
was published
for
tensorflow
(pip)
Feb 9, 2022
ProTip!
Advisories are also available from the
GraphQL API