GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,237
Erlang
31
GitHub Actions
20
Go
1,998
Maven
5,000+
npm
3,710
NuGet
661
pip
3,364
Pub
11
RubyGems
885
Rust
846
Swift
36
Unreviewed advisories
All unreviewed
5,000+
9,009 advisories
Filter by severity
Cross-site Scripting Vulnerability on Data Import
Moderate
CVE-2024-23633
was published
for
label-studio
(pip)
Jan 24, 2024
PaddlePaddle floating point exception in paddle.argmin and paddle.argmax
Moderate
CVE-2023-52313
was published
for
PaddlePaddle
(pip)
Jan 3, 2024
Tryton allows users to read the hashed password
Moderate
CVE-2016-1241
was published
for
trytond
(pip)
May 17, 2022
PaddlePaddle floating point exception in paddle.amin
Moderate
CVE-2023-52308
was published
for
PaddlePaddle
(pip)
Jan 3, 2024
PaddlePaddle floating point exception in paddle.lerp
Moderate
CVE-2023-52306
was published
for
PaddlePaddle
(pip)
Jan 3, 2024
PaddlePaddle floating point exception in paddle.nanmedian
Moderate
CVE-2023-38674
was published
for
PaddlePaddle
(pip)
Jan 3, 2024
PaddlePaddle floating point exception in paddle.linalg.matrix_rank
Moderate
CVE-2023-38675
was published
for
PaddlePaddle
(pip)
Jan 3, 2024
PaddlePaddle segfault in paddle.dot
Moderate
CVE-2023-38676
was published
for
PaddlePaddle
(pip)
Jan 3, 2024
PaddlePaddle segfault in paddle.mode
Moderate
CVE-2023-38678
was published
for
PaddlePaddle
(pip)
Jan 3, 2024
PaddlePaddle null pointer dereference in paddle.nextafter
Moderate
CVE-2023-52302
was published
for
PaddlePaddle
(pip)
Jan 3, 2024
Tryton allow authenticated users with certain permissions to read arbitrary files via the name parameter
Moderate
CVE-2016-1242
was published
for
trytond
(pip)
May 17, 2022
PaddlePaddle floating point exception in paddle.topk
Moderate
CVE-2023-52305
was published
for
PaddlePaddle
(pip)
Jan 3, 2024
PaddlePaddle segfault in paddle.put_along_axis
Moderate
CVE-2023-52303
was published
for
paddlepaddle
(pip)
Jan 3, 2024
PaddlePaddle floating point exception in paddle.linalg.eig
Moderate
CVE-2023-38677
was published
for
paddlepaddle
(pip)
Jan 3, 2024
Improper Input Validation in mindsdb
Moderate
CVE-2023-49796
was published
for
mindsdb
(pip)
Dec 12, 2023
Server-Side Request Forgery in mindsdb
Moderate
CVE-2023-49795
was published
for
mindsdb
(pip)
Dec 12, 2023
Clear Text Credentials Exposed via Onboarding Task
Moderate
CVE-2023-48700
was published
for
nautobot-device-onboarding
(pip)
Nov 21, 2023
Cross-Site Request Forgery in modoboa
Moderate
CVE-2023-0438
was published
for
modoboa
(pip)
Jan 23, 2023
Cross-Site Request Forgery in modoboa
Moderate
CVE-2023-0406
was published
for
modoboa
(pip)
Jan 19, 2023
Modoboa is vulnerable to Cross-Site Request Forgery
Moderate
CVE-2023-0398
was published
for
modoboa
(pip)
Jan 19, 2023
Unverified Password Change in OctoPrint
Moderate
CVE-2022-2930
was published
for
OctoPrint
(pip)
Aug 23, 2022
OpenZeppelin Contracts for Cairo account cannot process transactions on Goerli
Moderate
CVE-2022-31153
was published
for
openzeppelin-cairo-contracts
(pip)
Jul 15, 2022
MoinMoin Denial of Service vulnerability via password_checker function
Moderate
CVE-2008-6549
was published
for
moin
(pip)
May 17, 2022
OpenStack Nova Directory traversal vulnerability
Moderate
CVE-2012-3360
was published
for
nova
(pip)
May 17, 2022
OpenStack Nova Arbitrary file injection/corruption through directory traversal issues
Moderate
CVE-2012-3361
was published
for
nova
(pip)
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API