GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
2,991 advisories
Filter by severity
A vulnerability was identified in Wavlink WL-WN578W2 221110. This impacts the function sub_401340...
Moderate
Unreviewed
CVE-2025-10325
was published
Sep 12, 2025
A weakness has been identified in D-Link DIR-816L 206b01. Affected by this issue is the function...
Moderate
Unreviewed
CVE-2025-9727
was published
Oct 1, 2025
A vulnerability classified as critical was found in westboy CicadasCMS 2.0. This vulnerability...
Moderate
Unreviewed
CVE-2025-3816
was published
Apr 19, 2025
Notepad++ v8.8.3 has a DLL hijacking vulnerability, which can replace the original DLL file to...
Moderate
Unreviewed
CVE-2025-56383
was published
Sep 26, 2025
figma-developer-mcp vulnerable to command injection in get_figma_data tool
High
CVE-2025-53967
was published
for
figma-developer-mcp
(npm)
Sep 30, 2025
A vulnerability was found in TOTOLINK X5000R 9.1.0cu.2415_B20250515. This affects the function...
Moderate
Unreviewed
CVE-2025-9934
was published
Sep 4, 2025
A vulnerability was determined in TOTOLINK N600R 4.3.0cu.7866_B20220506. This vulnerability...
Moderate
Unreviewed
CVE-2025-9935
was published
Sep 4, 2025
VMware vCenter contains an SMTP header injection vulnerability. A malicious actor with non...
High
Unreviewed
CVE-2025-41250
was published
Sep 29, 2025
IBM Storage Scale 5.2.2.0 and 5.2.2.1, under certain configurations, could allow an authenticated...
High
Unreviewed
CVE-2025-1137
was published
May 10, 2025
A security flaw has been discovered in Ruijie NBR2100G-E up to 20250919. Affected by this issue...
Moderate
Unreviewed
CVE-2025-11141
was published
Sep 29, 2025
A vulnerability was found in mirweiye wenkucms up to 3.4. This impacts the function createPathOne...
Moderate
Unreviewed
CVE-2025-11138
was published
Sep 29, 2025
An issue in petstore v.1.0.7 allows a remote attacker to execute arbitrary code via accessing a...
Moderate
Unreviewed
CVE-2025-29157
was published
Sep 25, 2025
An issue was discovered in DIR-823 firmware 20250416. There is an RCE vulnerability in the...
Moderate
Unreviewed
CVE-2025-55848
was published
Sep 26, 2025
An issue in petstore v.1.0.7 allows a remote attacker to execute arbitrary code via the DELETE...
Moderate
Unreviewed
CVE-2025-29155
was published
Sep 25, 2025
Command Injection in adb-mcp MCP Server
Critical
CVE-2025-59834
was published
for
adb-mcp
(npm)
Sep 24, 2025
@sequa-ai/sequa-mcp has Command Injection vulnerability
Moderate
CVE-2025-10619
was published
for
@sequa-ai/sequa-mcp
(npm)
Sep 17, 2025
This vulnerability allows attackers to execute arbitrary commands on the underlying system....
Critical
Unreviewed
CVE-2025-59817
was published
Sep 25, 2025
This vulnerability allows malicious actors to execute arbitrary commands on the underlying system...
Critical
Unreviewed
CVE-2025-59815
was published
Sep 25, 2025
mcp-kubernetes-server has a Command Injection vulnerability
Moderate
CVE-2025-59376
was published
for
mcp-kubernetes-server
(pip)
Sep 15, 2025
An issue in PocketVJ CP PocketVJ-CP-v3 pvj 3.9.1 allows remote attackers to execute arbitrary...
Moderate
Unreviewed
CVE-2025-45326
was published
Sep 23, 2025
SQL Injection vulnerability in CSZ-CMS v.1.3.0 allows a remote attacker to execute arbitrary code...
Moderate
Unreviewed
CVE-2025-29083
was published
Sep 23, 2025
A command injection vulnerability has been reported to affect QHora. If exploited, the...
Moderate
Unreviewed
CVE-2024-53700
was published
Mar 7, 2025
A command injection vulnerability has been reported to affect several QNAP operating system...
Moderate
Unreviewed
CVE-2023-23356
was published
Dec 19, 2024
An OS command injection vulnerability has been reported to affect several product versions. If...
High
Unreviewed
CVE-2024-48861
was published
Nov 22, 2024
An OS command injection vulnerability has been reported to affect several product versions. If...
Critical
Unreviewed
CVE-2024-48860
was published
Nov 22, 2024
ProTip!
Advisories are also available from the
GraphQL API