GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,638
Maven
5,000+
npm
4,264
NuGet
760
pip
4,060
Pub
12
RubyGems
956
Rust
1,056
Swift
45
Unreviewed advisories
All unreviewed
5,000+
2,996 advisories
Filter by severity
A vulnerability in Cisco IOx application hosting environment of Cisco IOS XE Software could allow...
High
Unreviewed
CVE-2021-1384
was published
May 24, 2022
A vulnerability in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local...
High
Unreviewed
CVE-2021-1382
was published
May 24, 2022
Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This...
Critical
Unreviewed
CVE-2021-29076
was published
May 24, 2022
Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This...
Critical
Unreviewed
CVE-2021-29079
was published
May 24, 2022
Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This...
Critical
Unreviewed
CVE-2021-29078
was published
May 24, 2022
Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This...
Critical
Unreviewed
CVE-2021-29077
was published
May 24, 2022
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects...
High
Unreviewed
CVE-2021-29070
was published
May 24, 2022
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects...
Critical
Unreviewed
CVE-2021-29071
was published
May 24, 2022
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects...
High
Unreviewed
CVE-2021-29072
was published
May 24, 2022
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects...
High
Unreviewed
CVE-2021-29069
was published
May 24, 2022
applications/luci-app-ddns/luasrc/model/cbi/ddns/detail.lua in the DDNS package for OpenWrt 19.07...
High
Unreviewed
CVE-2021-28961
was published
May 24, 2022
** DISPUTED ** MikroTik RouterOS 6.47.9 allows remote authenticated ftp users to create or...
High
Unreviewed
CVE-2021-27221
was published
May 24, 2022
prog.cgi on D-Link DIR-3060 devices before 1.11b04 HF2 allows remote authenticated users to...
High
Unreviewed
CVE-2021-28144
was published
May 24, 2022
/jsonrpc on D-Link DIR-841 3.03 and 3.04 devices allows authenticated command injection via ping,...
High
Unreviewed
CVE-2021-28143
was published
May 24, 2022
Maxum Rumpus 8.2.13 and 8.2.14 is affected by a command injection vulnerability. The web...
High
Unreviewed
CVE-2020-27575
was published
May 24, 2022
A remote authenticated arbitrary command execution vulnerability was discovered in Aruba AirWave...
Moderate
Unreviewed
CVE-2021-26970
was published
May 24, 2022
A remote authenticated arbitrary command execution vulnerability was discovered in Aruba AirWave...
High
Unreviewed
CVE-2021-26962
was published
May 24, 2022
A remote code execution vulnerability was identified in GitHub Enterprise Server that could be...
High
Unreviewed
CVE-2020-10519
was published
May 24, 2022
rakibtg Docker Dashboard before 2021-02-28 allows command injection in backend/utilities/terminal...
Critical
Unreviewed
CVE-2021-27886
was published
May 24, 2022
SaltStack Salt command injection in the Salt-API when using the Salt-SSH client
Critical
CVE-2021-3148
was published
for
salt
(pip)
May 24, 2022
SaltStack Salt command injection via a crafted process name
High
CVE-2020-28243
was published
for
salt
(pip)
May 24, 2022
A remote authenticated command injection vulnerability was discovered in Aruba ClearPass Policy...
High
Unreviewed
CVE-2021-26683
was published
May 24, 2022
A remote authenticated command injection vulnerability was discovered in Aruba ClearPass Policy...
High
Unreviewed
CVE-2021-26684
was published
May 24, 2022
A remote authenticated command injection vulnerability was discovered in Aruba ClearPass Policy...
High
Unreviewed
CVE-2021-26679
was published
May 24, 2022
A remote authenticated command Injection vulnerability was discovered in Aruba ClearPass Policy...
High
Unreviewed
CVE-2021-26681
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API