GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
102
GitHub Actions
54
Go
4,428
Maven
5,000+
npm
5,000+
NuGet
1,088
pip
5,000+
Pub
13
RubyGems
1,129
Rust
1,506
Swift
62
Unreviewed advisories
All unreviewed
5,000+
22 advisories
Filter by severity
PyOpenSSL Use-After-Free vulnerability
High
CVE-2018-1000807
was published
for
pyopenssl
(pip)
Oct 10, 2018
Use after free and segfault in shape inference functions
Moderate
CVE-2021-37690
was published
for
tensorflow
(pip)
Aug 25, 2021
Use after free in boosted trees creation
High
CVE-2021-37652
was published
for
tensorflow
(pip)
Aug 25, 2021
Use after free passing `externref`s to Wasm in Wasmtime
Moderate
CVE-2021-39216
was published
for
wasmtime
(pip)
Sep 20, 2021
Use after free / memory leak in `CollectiveReduceV2`
High
CVE-2021-41220
was published
for
tensorflow
(pip)
Nov 10, 2021
Use after free in `DecodePng` kernel
High
CVE-2022-23584
was published
for
tensorflow
(pip)
Feb 9, 2022
Withdrawn: Use after free in SciPy
Critical
CVE-2023-29824
was published
for
scipy
(pip)
Jul 6, 2023
•
withdrawn
Use after free in PaddlePaddle
High
CVE-2023-38669
was published
for
paddlepaddle
(pip)
Jul 26, 2023
Use After Free in MicroPython
Moderate
CVE-2024-8947
was published
for
micropython-copy
(pip)
Sep 17, 2024
Reverb use after free vulnerability
Moderate
CVE-2024-8375
was published
for
dm-reverb
(pip)
Sep 19, 2024
pywasm3 contains a Use-After-Free in ForEachModule
High
CVE-2024-27530
was published
for
pywasm3
(pip)
Nov 9, 2024
pycares has a Use-After-Free Vulnerability
Moderate
GHSA-5qpg-rh4j-qp35
was published
for
pycares
(pip)
Jun 16, 2025
Pixar OpenUSD Sdf_PathNode Module Use-After-Free Vulnerability Leading to Potential Remote Code Execution
Critical
GHSA-58p5-r2f6-g2cj
was published
for
usd-core
(pip)
Sep 4, 2025
OpenUSD File Parsing Use-After-Free Remote Code Execution Vulnerability
Moderate
GHSA-grjp-54v3-c442
was published
for
usd-core
(pip)
Oct 29, 2025
Apache Arrow: Potential use-after-free when reading IPC file with pre-buffering
High
CVE-2026-25087
was published
for
pyarrow
(pip)
Feb 17, 2026
OpenEXR has use after free in PyObject_StealAttrString
Moderate
CVE-2025-64183
was published
for
OpenEXR
(pip)
Apr 6, 2026
MessagePack for Python: Out-of-bounds read / crash on Unpacker reuse after a caught error
High
GHSA-6v7p-g79w-8964
was published
for
msgpack
(pip)
Jun 19, 2026
Open Babel has Use-after-free in GAMESS GAMESSOutputFormat::ReadMolecule
Low
CVE-2025-10994
was published
for
openbabel
(pip)
Jun 30, 2026
ProTip!
Advisories are also available from the
GraphQL API