GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
2,992 advisories
Filter by severity
Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to...
High
Unreviewed
CVE-2021-33554
was published
May 24, 2022
Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to...
High
Unreviewed
CVE-2021-33553
was published
May 24, 2022
Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to...
High
Unreviewed
CVE-2021-33544
was published
May 24, 2022
Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to...
High
Unreviewed
CVE-2021-33552
was published
May 24, 2022
Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to...
High
Unreviewed
CVE-2021-33550
was published
May 24, 2022
Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to...
High
Unreviewed
CVE-2021-33551
was published
May 24, 2022
Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to...
High
Unreviewed
CVE-2021-33548
was published
May 24, 2022
The Alcatel Lucent I-240W-Q GPON ONT using firmware version 3FE54567BOZJ19 is vulnerable to...
High
Unreviewed
CVE-2019-3919
was published
May 13, 2022
A shell injection flaw was found in pglogical in versions before 2.3.4 and before 3.6.26. An...
High
Unreviewed
CVE-2021-3515
was published
May 24, 2022
The Alcatel Lucent I-240W-Q GPON ONT using firmware version 3FE54567BOZJ19 is vulnerable to...
High
Unreviewed
CVE-2019-3920
was published
May 13, 2022
Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have a command injection...
High
Unreviewed
CVE-2019-7989
was published
May 24, 2022
A command injection vulnerability exists in /goform/exeCommand in Tenda W6 V1.0.0.9(4122), which...
Critical
Unreviewed
CVE-2022-35555
was published
Aug 13, 2022
Adobe Acrobat and Reader versions , 2019.012.20035 and earlier, 2019.012.20035 and earlier, 2017...
Critical
Unreviewed
CVE-2019-8060
was published
May 24, 2022
WAVLINK WL-WN575A3 RPT75A3.V4300.201217 was discovered to contain a command injection...
Critical
Unreviewed
CVE-2022-37149
was published
Aug 31, 2022
Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have a command injection...
Critical
Unreviewed
CVE-2019-7968
was published
May 24, 2022
An issue was discovered on D-Link DCS-1130 devices. The device provides a user with the...
Critical
Unreviewed
CVE-2017-8404
was published
May 24, 2022
An issue was discovered on D-Link DCS-1100 and DCS-1130 devices. The device runs a custom daemon...
High
Unreviewed
CVE-2017-8413
was published
May 24, 2022
The webserver in Delta DX-3021 versions prior to 1.24 is vulnerable to command injection through...
Critical
Unreviewed
CVE-2022-4616
was published
Jan 13, 2023
An issue was discovered on D-Link DIR-818LW devices from 2.05.B03 to 2.06B01 BETA. There is a...
High
Unreviewed
CVE-2019-12786
was published
May 24, 2022
An issue was discovered on Wireless IP Camera (P2P) WIFICAM cameras. There is Command Injection...
Critical
Unreviewed
CVE-2017-18377
was published
May 24, 2022
In all versions of BIG-IP, when running in Appliance mode, an authenticated user assigned the...
High
Unreviewed
CVE-2022-41800
was published
Dec 7, 2022
An issue was discovered on D-Link DCS-1130 devices. The device provides a user with the...
High
Unreviewed
CVE-2017-8411
was published
May 24, 2022
Vulnerability in rconfig “date” enables an attacker with user level access to the CLI to inject...
High
Unreviewed
CVE-2022-24388
was published
May 18, 2022
StarWind SAN and NAS before 0.2 build 1685 allows remote code execution via a virtual disk...
Critical
Unreviewed
CVE-2022-24552
was published
Feb 12, 2022
Thecus 4800Eco was discovered to contain a command injection vulnerability via the username...
Critical
Unreviewed
CVE-2021-34111
was published
May 21, 2022
ProTip!
Advisories are also available from the
GraphQL API