GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,359
Erlang
33
GitHub Actions
22
Go
2,126
Maven
5,000+
npm
3,787
NuGet
683
pip
3,470
Pub
12
RubyGems
894
Rust
892
Swift
38
Unreviewed advisories
All unreviewed
5,000+
1,131 advisories
Filter by severity
An issue has been discovered in GitLab EE affecting all versions starting from 16.11 prior to 17...
High
Unreviewed
CVE-2024-8640
was published
Sep 12, 2024
RELY-PCIe v22.2.1 to v23.1.0 was discovered to contain a code injection vulnerability via the...
High
Unreviewed
CVE-2024-44570
was published
Sep 11, 2024
RELY-PCIe v22.2.1 to v23.1.0 was discovered to contain a command injection vulnerability via the...
High
Unreviewed
CVE-2024-44574
was published
Sep 11, 2024
RELY-PCIe v22.2.1 to v23.1.0 was discovered to contain a command injection vulnerability via the...
High
Unreviewed
CVE-2024-44572
was published
Sep 11, 2024
RELY-PCIe v22.2.1 to v23.1.0 was discovered to contain a command injection vulnerability via the...
High
Unreviewed
CVE-2024-44577
was published
Sep 11, 2024
Microsoft SharePoint Server Remote Code Execution Vulnerability
High
Unreviewed
CVE-2024-38227
was published
Sep 10, 2024
Microsoft SharePoint Server Remote Code Execution Vulnerability
High
Unreviewed
CVE-2024-38228
was published
Sep 10, 2024
Command Injection vulnerability in goform/SetIPTVCfg interface of Tenda AC15 V15.03.05.20 allows...
High
Unreviewed
CVE-2023-36103
was published
Sep 10, 2024
An improper neutralization of special elements used in a command ('Command Injection')...
High
Unreviewed
CVE-2024-33508
was published
Sep 10, 2024
Dell ThinOS versions 2402 and 2405, contains an Improper Neutralization of Special Elements used...
High
Unreviewed
CVE-2024-42427
was published
Sep 10, 2024
D-Link DI-7003GV2 v24.04.18D1, DI-7100G+V2 v24.04.18D1, DI-7100GV2 v24.04.18D1, DI-7200GV2 v24.04...
High
Unreviewed
CVE-2024-44334
was published
Sep 9, 2024
D-Link DI-7003G v19.12.24A1, DI-7003GV2 v24.04.18D1, DI-7100G+V2 v24.04.18D1, DI-7100GV2 v24.04...
High
Unreviewed
CVE-2024-44335
was published
Sep 9, 2024
Bypass incomplete fix of CVE-2024-27980, that arises from improper handling of batch files with...
High
Unreviewed
CVE-2024-36138
was published
Sep 7, 2024
DrayTek Vigor3900 v1.5.1.6 was discovered to contain an authenticated command injection...
High
Unreviewed
CVE-2024-44844
was published
Sep 6, 2024
DrayTek Vigor3900 v1.5.1.6 was discovered to contain an authenticated command injection...
High
Unreviewed
CVE-2024-44845
was published
Sep 6, 2024
An OS command injection vulnerability has been reported to affect several QNAP operating system...
High
Unreviewed
CVE-2024-38641
was published
Sep 6, 2024
An OS command injection vulnerability has been reported to affect Video Station. If exploited,...
High
Unreviewed
CVE-2023-47563
was published
Sep 6, 2024
Dell SmartFabric OS10 Software, version(s) 10.5.5.4 through 10.5.5.10 and 10.5.6.x , contain(s)...
High
Unreviewed
CVE-2024-38486
was published
Sep 6, 2024
WAYOS FBM-291W v19.09.11 is vulnerable to Command Execution via msp_info_htm.
High
Unreviewed
CVE-2024-44383
was published
Sep 4, 2024
D-Link DI-8400 16.07.26A1 is vulnerable to Command Injection via upgrade_filter_asp.
High
Unreviewed
CVE-2024-44400
was published
Sep 4, 2024
Vulnerability in admin_ip.php in Seacms v13.1, when action=set, allows attackers to control IP...
High
Unreviewed
CVE-2024-44916
was published
Aug 30, 2024
D-Link DI_8004W 16.07.26A1 contains a command execution vulnerability in the jhttpd...
High
Unreviewed
CVE-2024-44382
was published
Aug 23, 2024
D-Link DI_8004W 16.07.26A1 contains a command execution vulnerability in jhttpd msp_info_htm...
High
Unreviewed
CVE-2024-44381
was published
Aug 23, 2024
DedeCMS V5.7.115 has a command execution vulnerability via file_manage_view.php?fmdo=newfile...
High
Unreviewed
CVE-2024-42636
was published
Aug 23, 2024
DrayTek Vigor 3900 before v1.5.1.5_Beta, DrayTek Vigor 2960 before v1.5.1.5_Beta and DrayTek...
High
Unreviewed
CVE-2024-43027
was published
Aug 21, 2024
ProTip!
Advisories are also available from the
GraphQL API