GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,652
Erlang
34
GitHub Actions
26
Go
2,257
Maven
5,000+
npm
3,909
NuGet
704
pip
3,680
Pub
12
RubyGems
915
Rust
943
Swift
38
Unreviewed advisories
All unreviewed
5,000+
239 advisories
Filter by severity
TensorFlow vulnerable to segfault in `BlockLSTMGradV2`
Moderate
CVE-2022-35964
was published
for
tensorflow
(pip)
Sep 16, 2022
TensorFlow vulnerable to segfault in `Requantize`
Moderate
CVE-2022-36017
was published
for
tensorflow
(pip)
Sep 16, 2022
TensorFlow segfault TFLite converter on per-channel quantized transposed convolutions
Moderate
CVE-2022-36027
was published
for
tensorflow
(pip)
Sep 16, 2022
OAuthLib vulnerable to DoS when attacker provides malicious IPV6 URI
Moderate
CVE-2022-36087
was published
for
oauthlib
(pip)
Sep 16, 2022
mangadex-downloader vulnerable to unauthorized file reading
Moderate
CVE-2022-36082
was published
for
mangadex-downloader
(pip)
Sep 16, 2022
ansible-runner vulnerable to shell command injection
High
CVE-2021-4041
was published
for
ansible-runner
(pip)
Aug 25, 2022
django-sendfile2 before 0.7.0 contains reflected file download vulnerability
High
GHSA-pcjh-6r5h-r92r
was published
for
django-sendfile2
(pip)
Aug 11, 2022
Incomplete validation in signal ops leads to crashes in TensorFlow
Moderate
CVE-2022-29213
was published
for
tensorflow
(pip)
May 24, 2022
Core dump when loading TFLite models with quantization in TensorFlow
Moderate
CVE-2022-29212
was published
for
tensorflow
(pip)
May 24, 2022
Segfault if `tf.histogram_fixed_width` is called with NaN values in TensorFlow
Moderate
CVE-2022-29211
was published
for
tensorflow
(pip)
May 24, 2022
Undefined behavior when users supply invalid resource handles
Moderate
CVE-2022-29207
was published
for
tensorflow
(pip)
May 24, 2022
Missing validation results in undefined behavior in `SparseTensorDenseAdd
Moderate
CVE-2022-29206
was published
for
tensorflow
(pip)
May 24, 2022
Missing validation causes denial of service via `Conv3DBackpropFilterV2`
Moderate
CVE-2022-29204
was published
for
tensorflow
(pip)
May 24, 2022
Denial of service in `tf.ragged.constant` due to lack of validation
Moderate
CVE-2022-29202
was published
for
tensorflow
(pip)
May 24, 2022
Missing validation results in undefined behavior in `QuantizedConv2D`
Moderate
CVE-2022-29201
was published
for
tensorflow
(pip)
May 24, 2022
Missing validation causes denial of service via `LSTMBlockCell`
Moderate
CVE-2022-29200
was published
for
tensorflow
(pip)
May 24, 2022
Missing validation causes denial of service via `LoadAndRemapMatrix`
Moderate
CVE-2022-29199
was published
for
tensorflow
(pip)
May 24, 2022
Missing validation causes denial of service via `SparseTensorToCSRSparseMatrix`
Moderate
CVE-2022-29198
was published
for
tensorflow
(pip)
May 24, 2022
Missing validation causes denial of service via `UnsortedSegmentJoin`
Moderate
CVE-2022-29197
was published
for
tensorflow
(pip)
May 24, 2022
Missing validation causes denial of service via `Conv3DBackpropFilterV2`
Moderate
CVE-2022-29196
was published
for
tensorflow
(pip)
May 24, 2022
Missing validation causes denial of service via `StagePeek`
Moderate
CVE-2022-29195
was published
for
tensorflow
(pip)
May 24, 2022
Missing validation causes denial of service via `DeleteSessionTensor`
Moderate
CVE-2022-29194
was published
for
tensorflow
(pip)
May 24, 2022
Missing validation crashes `QuantizeAndDequantizeV4Grad`
Moderate
CVE-2022-29192
was published
for
tensorflow
(pip)
May 24, 2022
Missing validation causes denial of service via `GetSessionTensor`
Moderate
CVE-2022-29191
was published
for
tensorflow
(pip)
May 24, 2022
git-big-picture Code Execution
Critical
CVE-2021-3028
was published
for
git-big-picture
(pip)
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API