GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,237
Erlang
31
GitHub Actions
21
Go
2,003
Maven
5,000+
npm
3,714
NuGet
661
pip
3,387
Pub
11
RubyGems
885
Rust
851
Swift
36
Unreviewed advisories
All unreviewed
5,000+
390 advisories
Filter by severity
`CHECK`-failures in binary ops in Tensorflow
Moderate
CVE-2022-23583
was published
for
tensorflow
(pip)
Feb 10, 2022
Type confusion leading to segfault in Tensorflow
High
CVE-2022-21731
was published
for
tensorflow
(pip)
Feb 10, 2022
A vulnerability has been identified in Simcenter Femap V2020.2 (All versions), Simcenter Femap...
High
Unreviewed
CVE-2021-46152
was published
Feb 10, 2022
OCI Manifest Type Confusion Issue
Low
GHSA-qq97-vm5h-rrhg
was published
for
github.com/docker/distribution
(Go)
Feb 8, 2022
This vulnerability allows local attackers to escalate privileges on affected installations of...
High
Unreviewed
CVE-2021-34866
was published
Jan 26, 2022
Access of Resource Using Incompatible Type in Hermes
Critical
CVE-2021-24044
was published
for
hermes-engine
(npm)
Jan 16, 2022
Lua 5.4.4 and 5.4.2 are affected by SEGV by type confusion in funcnamefromcode function in ldebug...
Moderate
Unreviewed
CVE-2021-44647
was published
Jan 12, 2022
There is a Vulnerability of accessing resources using an incompatible type (type confusion) in...
Moderate
Unreviewed
CVE-2021-40037
was published
Jan 11, 2022
The HwNearbyMain module has a Data Processing Errors vulnerability.Successful exploitation of...
High
Unreviewed
CVE-2021-39987
was published
Jan 4, 2022
Type confusion in V8 in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to...
High
Unreviewed
CVE-2021-38007
was published
Dec 24, 2021
Type confusion in V8 in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to...
High
Unreviewed
CVE-2021-38012
was published
Dec 24, 2021
Type confusion in loader in Google Chrome prior to 96.0.4664.93 allowed a remote attacker to...
High
Unreviewed
CVE-2021-4056
was published
Dec 24, 2021
Type confusion in V8 in Google Chrome prior to 96.0.4664.93 allowed a remote attacker to...
High
Unreviewed
CVE-2021-4061
was published
Dec 24, 2021
Type confusion in V8 in Google Chrome prior to 96.0.4664.93 allowed a remote attacker to...
High
Unreviewed
CVE-2021-4078
was published
Dec 24, 2021
A type confusion vulnerability could be triggered when resolving the "typeof" unary operator in...
Critical
Unreviewed
CVE-2021-24045
was published
Dec 14, 2021
Type confusion in V8 in Google Chrome prior to 95.0.4638.69 allowed a remote attacker to...
High
Unreviewed
CVE-2021-38001
was published
Nov 24, 2021
Clarify Content-Type handling
Low
CVE-2021-41190
was published
for
github.com/opencontainers/distribution-spec
(Go)
Nov 18, 2021
Ambiguous OCI manifest parsing
Low
GHSA-5j5w-g665-5m35
was published
for
github.com/containerd/containerd
(Go)
Nov 18, 2021
Clarify `mediaType` handling
Low
GHSA-77vh-xpmg-72qh
was published
for
github.com/opencontainers/image-spec
(Go)
Nov 18, 2021
Cross-site Scripting in bootstrap-table
Low
CVE-2021-23472
was published
for
bootstrap-table
(npm)
Nov 8, 2021
Prototype Pollution in node-jsonpointer
Moderate
CVE-2021-23807
was published
for
jsonpointer
(npm)
Nov 8, 2021
Prototype Pollution in json-ptr
Moderate
CVE-2021-23509
was published
for
json-ptr
(npm)
Nov 8, 2021
Prototype Pollution in json-pointer
Moderate
CVE-2021-23820
was published
for
json-pointer
(npm)
Nov 8, 2021
ProTip!
Advisories are also available from the
GraphQL API