GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
2,278 advisories
Filter by severity
Quest DR Series Disk Backup software version before 4.0.3.1 allows command injection (issue 3 of...
High
Unreviewed
CVE-2018-11145
was published
May 13, 2022
Quest DR Series Disk Backup software version before 4.0.3.1 allows command injection (issue 6 of...
High
Unreviewed
CVE-2018-11148
was published
May 13, 2022
Quest DR Series Disk Backup software version before 4.0.3.1 allows command injection (issue 7 of...
High
Unreviewed
CVE-2018-11149
was published
May 13, 2022
Quest DR Series Disk Backup software version before 4.0.3.1 allows command injection (issue 8 of...
High
Unreviewed
CVE-2018-11150
was published
May 13, 2022
Quest DR Series Disk Backup software version before 4.0.3.1 allows command injection (issue 2 of...
High
Unreviewed
CVE-2018-11144
was published
May 13, 2022
Quest DR Series Disk Backup software version before 4.0.3.1 allows command injection (issue 5 of...
High
Unreviewed
CVE-2018-11147
was published
May 13, 2022
The '/common/ajax_email_connection_test.php' script in the Quest KACE System Management Appliance...
High
Unreviewed
CVE-2018-11139
was published
May 13, 2022
DHCP packages in Red Hat Enterprise Linux 6 and 7, Fedora 28, and earlier are vulnerable to a...
High
Unreviewed
CVE-2018-1111
was published
May 13, 2022
On D-Link DIR-550A and DIR-604M devices through v2.10KR, a malicious user can forge an HTTP...
High
Unreviewed
CVE-2018-10967
was published
May 13, 2022
An issue was discovered on Dongguan Diqee Diqee360 devices. The affected vacuum cleaner suffers...
High
Unreviewed
CVE-2018-10987
was published
May 13, 2022
An issue was discovered on D-Link DWR-116 through 1.06, DWR-512 through 2.02, DWR-712 through 2...
High
Unreviewed
CVE-2018-10823
was published
May 13, 2022
D-Link DIR-615 2.5.17 devices allow Remote Code Execution via shell metacharacters in the Host...
High
Unreviewed
CVE-2018-10431
was published
May 13, 2022
A command injection remote command execution vulnerability in Trend Micro Email Encryption...
High
Unreviewed
CVE-2018-10354
was published
May 13, 2022
Command injection vulnerability in change password of QNAP Q'center Virtual Appliance version 1.7...
High
Unreviewed
CVE-2018-0707
was published
May 13, 2022
Command injection vulnerability in date of QNAP Q'center Virtual Appliance version 1.7.1063 and...
High
Unreviewed
CVE-2018-0709
was published
May 13, 2022
Command injection vulnerability in networking of QNAP Q'center Virtual Appliance version 1.7.1063...
High
Unreviewed
CVE-2018-0708
was published
May 13, 2022
Command injection vulnerability in SSH of QNAP Q'center Virtual Appliance version 1.7.1063 and...
High
Unreviewed
CVE-2018-0710
was published
May 13, 2022
IPFire 2.19 has a Remote Command Injection vulnerability in ids.cgi via the OINKCODE parameter,...
High
Unreviewed
CVE-2017-9757
was published
May 13, 2022
A command injection was identified on Barco ClickShare Base Unit devices with CSM-1 firmware...
High
Unreviewed
CVE-2017-9377
was published
May 13, 2022
Tuleap before 9.7 allows command injection via the PhpWiki 1.3.10 SyntaxHighlighter plugin. This...
High
Unreviewed
CVE-2017-7981
was published
May 13, 2022
In Horde_Crypt before 2.7.6, as used in Horde Groupware Webmail Edition 5.x through 5.2.17, OS...
High
Unreviewed
CVE-2017-7414
was published
May 13, 2022
In Horde_Crypt before 2.7.6, as used in Horde Groupware Webmail Edition through 5.2.17, OS...
High
Unreviewed
CVE-2017-7413
was published
May 13, 2022
An OS Command Injection vulnerability in Fortinet FortiWLC 6.1-2 through 6.1-5, 7.0-7 through 7.0...
High
Unreviewed
CVE-2017-7341
was published
May 13, 2022
AlienVault USM and OSSIM before 5.3.7 and NfSen before 1.3.8 allow local users to execute...
High
Unreviewed
CVE-2017-6970
was published
May 13, 2022
A vulnerability in the CLI of the Cisco Unified Computing System (UCS) Manager, Cisco Firepower...
High
Unreviewed
CVE-2017-6600
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API