GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,691
Erlang
34
GitHub Actions
27
Go
2,276
Maven
5,000+
npm
3,931
NuGet
708
pip
3,699
Pub
12
RubyGems
919
Rust
957
Swift
38
Unreviewed advisories
All unreviewed
5,000+
58 advisories
Filter by severity
Phusion Passenger denial of service
Moderate
CVE-2025-26803
was published
for
passenger
(RubyGems)
Feb 24, 2025
Uninitialized Variable in fastecdsa
High
CVE-2024-21502
was published
for
fastecdsa
(pip)
Feb 24, 2024
Potential memory exposure in dns-packet
High
CVE-2021-23386
was published
for
dns-packet
(npm)
May 24, 2021
Helm's Missing YAML Content Leads To Panic
High
CVE-2024-26147
was published
for
helm.sh/helm/v3
(Go)
Feb 22, 2024
Uninitialized variable access in Tensorflow
High
CVE-2022-23573
was published
for
tensorflow
(pip)
Feb 9, 2022
A use of uninitialized value vulnerability in Tensorflow
Moderate
CVE-2021-41225
was published
for
tensorflow
(pip)
Nov 10, 2021
Use of unitialized value in TFLite
Moderate
CVE-2021-37682
was published
for
tensorflow
(pip)
Aug 25, 2021
Segfault in `CTCBeamSearchDecoder`
Low
CVE-2021-29581
was published
for
tensorflow
(pip)
May 21, 2021
Undefined behavior and `CHECK`-fail in `FractionalMaxPoolGrad`
Low
CVE-2021-29580
was published
for
tensorflow
(pip)
May 21, 2021
Heap out of bounds access in MakeEdge in TensorFlow
Moderate
CVE-2020-26271
was published
for
tensorflow
(pip)
Dec 10, 2020
Uninitialized memory access in TensorFlow
Moderate
CVE-2020-26266
was published
for
tensorflow
(pip)
Dec 10, 2020
crayon: ObjectPool creates uninitialized memory when freeing objects
High
GHSA-xfhw-6mc4-mgxf
was published
for
crayon
(Rust)
Apr 5, 2024
Use of Uninitialized Resource in smallvec
High
CVE-2018-25023
was published
for
smallvec
(Rust)
Jan 6, 2022
Uncontrolled Resource Consumption in @discordjs/opus
High
CVE-2022-25345
was published
for
@discordjs/opus
(npm)
Jun 18, 2022
Nokogiri affected by libxslt Use of Uninitialized Resource/Use After Free vulnerability
High
CVE-2019-18197
was published
for
nokogiri
(RubyGems)
May 24, 2022
Use of Uninitialized Resource in gfx-auxil
Critical
CVE-2021-45689
was published
for
gfx-auxil
(Rust)
Jan 6, 2022
Uninitialized memory access in toodee
High
CVE-2021-28029
was published
for
toodee
(Rust)
Sep 1, 2021
Use of Uninitialized Resource in tectonic_xdv
Critical
CVE-2021-45703
was published
for
tectonic_xdv
(Rust)
Jan 6, 2022
Drop of uninitialized memory in stack_dst
Critical
CVE-2021-28035
was published
for
stack_dst
(Rust)
Sep 1, 2021
Read on uninitialized buffer in postscript
High
CVE-2021-26953
was published
for
postscript
(Rust)
Aug 25, 2021
Window may read from uninitialized memory locations in rdiff
High
CVE-2021-45694
was published
for
rdiff
(Rust)
Jan 6, 2022
Use of Uninitialized Resource in ms3d
High
CVE-2021-26952
was published
for
ms3d
(Rust)
Aug 25, 2021
Drop of uninitialized memory in Ozone
Critical
CVE-2020-35878
was published
for
ozone
(Rust)
Aug 25, 2021
ProTip!
Advisories are also available from the
GraphQL API