GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,656
Maven
5,000+
npm
4,284
NuGet
760
pip
4,069
Pub
12
RubyGems
957
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
17 advisories
Filter by severity
Type confusion during tensor casts lead to dereferencing null pointers
Low
CVE-2021-29513
was published
for
tensorflow
(pip)
May 21, 2021
Reference binding to null pointer in `MatrixDiag*` ops
Low
CVE-2021-29515
was published
for
tensorflow
(pip)
May 21, 2021
Null pointer dereference via invalid Ragged Tensors
Low
CVE-2021-29516
was published
for
tensorflow
(pip)
May 21, 2021
Session operations in eager mode lead to null pointer dereferences
Low
CVE-2021-29518
was published
for
tensorflow
(pip)
May 21, 2021
Invalid validation in `SparseMatrixSparseCholesky`
Low
CVE-2021-29530
was published
for
tensorflow
(pip)
May 21, 2021
Null pointer dereference in `StringNGrams`
Low
CVE-2021-29541
was published
for
tensorflow
(pip)
May 21, 2021
Null pointer dereference in `EditDistance`
Low
CVE-2021-29564
was published
for
tensorflow
(pip)
May 21, 2021
Null pointer dereference in `SparseFillEmptyRows`
Low
CVE-2021-29565
was published
for
tensorflow
(pip)
May 21, 2021
Reference binding to null in `ParameterizedTruncatedNormal`
Low
CVE-2021-29568
was published
for
tensorflow
(pip)
May 21, 2021
Reference binding to nullptr in `SdcaOptimizer`
Low
CVE-2021-29572
was published
for
tensorflow
(pip)
May 21, 2021
Undefined behavior in `MaxPool3DGradGrad`
Low
CVE-2021-29574
was published
for
tensorflow
(pip)
May 21, 2021
Heap buffer overflow and undefined behavior in `FusedBatchNorm`
Low
CVE-2021-29583
was published
for
tensorflow
(pip)
May 21, 2021
Null dereference in Grappler's `TrySimplify`
Low
CVE-2021-29616
was published
for
tensorflow
(pip)
May 21, 2021
Chrono has potential segfault issue in SPIFFE authenticator
Low
GHSA-45w3-v3g4-54pm
was published
for
parsec-service
(Rust)
Feb 11, 2022
Withdrawn Advisory: microlight.js has a null pointer dereference vulnerability
Low
CVE-2025-45525
was published
for
microlight
(npm)
Jun 17, 2025
•
withdrawn
MaterialX Null Pointer Dereference in getShaderNodes due to Unchecked nodeGraph->getOutput return
Low
CVE-2025-53010
was published
for
MaterialX
(pip)
Jul 31, 2025
MaterialX Null Pointer Dereference in MaterialXCore Shader Generation due to Unchecked implGraphOutput
Low
CVE-2025-53011
was published
for
MaterialX
(pip)
Jul 31, 2025
ProTip!
Advisories are also available from the
GraphQL API