GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
2,991 advisories
Filter by severity
IBM Tivoli Endpoint Manager could allow a user under special circumstances to inject commands...
High
Unreviewed
CVE-2016-0396
was published
May 17, 2022
Command injection vulnerability in Junos Space before 15.2R2 allows attackers to execute...
High
Unreviewed
CVE-2016-4929
was published
May 17, 2022
google-cloudstorage-commands Command Injection vulnerability
Critical
CVE-2020-28436
was published
for
google-cloudstorage-commands
(npm)
Jul 26, 2022
The Sophos Web Appliance (version 4.2.1.3) is vulnerable to two Remote Command Injection...
High
Unreviewed
CVE-2016-9553
was published
May 17, 2022
setroubleshoot allows local users to bypass an intended container protection mechanism and...
High
Unreviewed
CVE-2016-4989
was published
May 17, 2022
WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 qos.cgi has no filtering on parameters:...
Critical
Unreviewed
CVE-2022-35533
was published
Aug 11, 2022
WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 login.cgi has no filtering on parameter key,...
Critical
Unreviewed
CVE-2022-35526
was published
Aug 11, 2022
WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 adm.cgi has no filtering on parameters:...
Critical
Unreviewed
CVE-2022-35524
was published
Aug 11, 2022
WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 wireless.cgi has no filtering on parameter...
Critical
Unreviewed
CVE-2022-35535
was published
Aug 11, 2022
WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 wireless.cgi has no filtering on parameter...
Critical
Unreviewed
CVE-2022-35534
was published
Aug 11, 2022
WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 firewall.cgi has no filtering on parameter...
Critical
Unreviewed
CVE-2022-35523
was published
Aug 11, 2022
Unquoted executable path vulnerability in Client Management and Gateway components in McAfee (now...
High
Unreviewed
CVE-2015-8988
was published
May 17, 2022
WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 firewall.cgi has no filtering on parameter...
Critical
Unreviewed
CVE-2022-35519
was published
Aug 11, 2022
In Sophos Web Appliance (SWA) before 4.3.1.2, a section of the machine's configuration utilities...
High
Unreviewed
CVE-2017-6183
was published
May 17, 2022
Snoopy allows remote attackers to execute arbitrary commands.
Critical
Unreviewed
CVE-2014-5008
was published
May 17, 2022
In EMC VNX2 versions prior to OE for File 8.1.9.211 and VNX1 versions prior to OE for File 7.1.80...
Critical
Unreviewed
CVE-2017-4984
was published
May 17, 2022
Eval injection vulnerability in xdg-utils 1.1.0 RC1, when no supported desktop environment is...
Moderate
Unreviewed
CVE-2014-9622
was published
May 17, 2022
Opmantek NMIS before 4.3.7c has command injection via man, finger, ping, trace, and nslookup in...
High
Unreviewed
CVE-2016-6534
was published
May 17, 2022
Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 allow Embedded_Ace_Set_Task.cgi command...
Critical
Unreviewed
CVE-2016-5065
was published
May 17, 2022
WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 wireless.cgi has no filtering on parameters:...
Critical
Unreviewed
CVE-2022-35537
was published
Aug 11, 2022
WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 qos.cgi has no filtering on parameters:...
Critical
Unreviewed
CVE-2022-35536
was published
Aug 11, 2022
WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 firewall.cgi has no filtering on parameters:...
Critical
Unreviewed
CVE-2022-35521
was published
Aug 11, 2022
An issue was discovered in Tesla Motors Model S automobile, all firmware versions before version...
Moderate
Unreviewed
CVE-2016-9337
was published
May 17, 2022
The Sophos Web Appliance Remote / Secure Web Gateway server (version 4.2.1.3) is vulnerable to a...
High
Unreviewed
CVE-2016-9554
was published
May 17, 2022
A malformed SMI (System Management Interface) command may allow an attacker to establish a...
High
Unreviewed
CVE-2021-26384
was published
Jul 15, 2022
ProTip!
Advisories are also available from the
GraphQL API