GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,359
Erlang
33
GitHub Actions
22
Go
2,127
Maven
5,000+
npm
3,788
NuGet
683
pip
3,470
Pub
12
RubyGems
894
Rust
894
Swift
38
Unreviewed advisories
All unreviewed
5,000+
2,245 advisories
Filter by severity
In doProlog in xmlparse.c in Expat (aka libexpat) before 2.4.3, an integer overflow exists for...
High
Unreviewed
CVE-2021-46143
was published
Feb 10, 2022
build_model in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow.
Critical
Unreviewed
CVE-2022-22823
was published
Feb 10, 2022
storeAtts in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow.
High
Unreviewed
CVE-2022-22827
was published
Feb 10, 2022
nextScaffoldPart in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow.
High
Unreviewed
CVE-2022-22826
was published
Feb 10, 2022
lookup in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow.
High
Unreviewed
CVE-2022-22825
was published
Feb 10, 2022
addBinding in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow.
Critical
Unreviewed
CVE-2022-22822
was published
Feb 10, 2022
defineAttribute in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow.
Critical
Unreviewed
CVE-2022-22824
was published
Feb 10, 2022
Expat (aka libexpat) before 2.4.4 has a signed integer overflow in XML_GetBuffer, for...
Critical
Unreviewed
CVE-2022-23852
was published
Feb 10, 2022
Expat (aka libexpat) before 2.4.4 has an integer overflow in the doProlog function.
Critical
Unreviewed
CVE-2022-23990
was published
Feb 10, 2022
Integer overflow in TFLite array creation
High
CVE-2022-23558
was published
for
tensorflow
(pip)
Feb 9, 2022
Integer overflow leading to crash in Tensorflow
High
CVE-2022-21738
was published
for
tensorflow
(pip)
Feb 9, 2022
Integer Overflow or Wraparound in TensorFlow
Moderate
GHSA-wcv5-vrvr-3rx2
was published
for
tensorflow
(pip)
Feb 9, 2022
IIPImage High Resolution Streaming Image Server prior to commit...
High
Unreviewed
CVE-2021-46389
was published
Feb 8, 2022
MariaDB before 10.6.5 has a sql_lex.cc integer overflow, leading to an application crash.
High
Unreviewed
CVE-2021-46667
was published
Feb 2, 2022
A denial of service vulnerability exists in the netserver recv_command functionality of reolink...
High
Unreviewed
CVE-2022-21801
was published
Jan 29, 2022
Integer overflow in solana_rbpf
High
CVE-2021-46102
was published
for
solana_rbpf
(Rust)
Jan 28, 2022
In MediaTek LinkIt SDK before 4.6.1, there is a possible memory corruption due to an integer...
Critical
Unreviewed
CVE-2021-30636
was published
Jan 25, 2022
An issue was discovered in lib_mem.c in Micrium uC/OS uC/LIB 1.38.x and 1.39.00. The following...
Critical
Unreviewed
CVE-2021-26706
was published
Jan 25, 2022
There is an integer overflow in the ION driver "/dev/ion" of Allwinner R818 SoC Android Q SDK V1...
High
Unreviewed
CVE-2021-38787
was published
Jan 20, 2022
ProTip!
Advisories are also available from the
GraphQL API