GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,984
Erlang
39
GitHub Actions
38
Go
2,626
Maven
5,000+
npm
4,258
NuGet
760
pip
4,051
Pub
12
RubyGems
954
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
2,989 advisories
Filter by severity
Ai command injection in M365 Copilot allows an unauthorized attacker to disclose information over...
Critical
Unreviewed
CVE-2025-32711
was published
Jun 11, 2025
'.../...//' in Microsoft Office Outlook allows an authorized attacker to execute code locally.
High
Unreviewed
CVE-2025-47176
was published
Jun 10, 2025
Improper Neutralization of Special Elements in the chromium_path variable may allow OS command...
High
Unreviewed
CVE-2025-4678
was published
Jun 10, 2025
Improper Neutralization of Special Elements in the backup name field may allow OS command...
High
Unreviewed
CVE-2025-4653
was published
Jun 10, 2025
A vulnerability, which was classified as critical, has been found in Zend.To up to 6.10-6 Beta....
Moderate
Unreviewed
CVE-2025-5952
was published
Jun 10, 2025
A command injection vulnerability has been reported to affect several QNAP operating system...
High
Unreviewed
CVE-2025-22481
was published
Jun 6, 2025
A vulnerability has been found in Tenda CP3 11.10.00.2311090948 and classified as critical....
Moderate
Unreviewed
CVE-2025-5763
was published
Jun 6, 2025
A vulnerability classified as critical has been found in FLIR AX8 up to 1.46.16. This affects the...
Moderate
Unreviewed
CVE-2025-5695
was published
Jun 5, 2025
A vulnerability, which was classified as critical, was found in D-Link DIR-816 1.10CNB05....
Moderate
Unreviewed
CVE-2025-5620
was published
Jun 5, 2025
A vulnerability has been found in D-Link DIR-816 1.10CNB05 and classified as critical. Affected...
Moderate
Unreviewed
CVE-2025-5621
was published
Jun 5, 2025
A vulnerability was found in Tenda AC18 15.03.05.05. It has been declared as critical. This...
Moderate
Unreviewed
CVE-2025-5606
was published
Jun 4, 2025
A vulnerability in the CLI of multiple Cisco Unified Communications products could allow an...
Moderate
Unreviewed
CVE-2025-20278
was published
Jun 4, 2025
A vulnerability was found in D-Link DCS-932L 2.18.01. It has been classified as critical....
Moderate
Unreviewed
CVE-2025-5571
was published
Jun 4, 2025
A vulnerability was found in D-Link DCS-932L 2.18.01. It has been rated as critical. Affected by...
Moderate
Unreviewed
CVE-2025-5573
was published
Jun 4, 2025
A vulnerability was found in Jrohy trojan up to 2.15.3. It has been declared as critical. This...
Moderate
Unreviewed
CVE-2025-5525
was published
Jun 3, 2025
In engineermode service, there is a possible command injection due to improper input validation....
Moderate
Unreviewed
CVE-2025-31710
was published
Jun 3, 2025
An issue in Clinical Collaboration Platform 12.2.1.5 allows a remote attacker to obtain sensitive...
Moderate
Unreviewed
CVE-2025-27953
was published
Jun 2, 2025
An issue in Clinical Collaboration Platform 12.2.1.5 allows a remote attacker to obtain sensitive...
Moderate
Unreviewed
CVE-2025-27954
was published
Jun 2, 2025
A command injection remote code execution vulnerability exists in HPE StoreOnce Software.
High
Unreviewed
CVE-2025-37096
was published
Jun 2, 2025
A vulnerability was found in Linksys RE6500, RE6250, RE6300, RE6350, RE7000 and RE9000 1.0.013...
Moderate
Unreviewed
CVE-2025-5447
was published
Jun 2, 2025
A command injection remote code execution vulnerability exists in HPE StoreOnce Software.
High
Unreviewed
CVE-2025-37089
was published
Jun 2, 2025
A command injection remote code execution vulnerability exists in HPE StoreOnce Software.
High
Unreviewed
CVE-2025-37091
was published
Jun 2, 2025
A command injection remote code execution vulnerability exists in HPE StoreOnce Software.
High
Unreviewed
CVE-2025-37092
was published
Jun 2, 2025
A vulnerability was found in Linksys RE6500, RE6250, RE6300, RE6350, RE7000 and RE9000 1.0.013...
Moderate
Unreviewed
CVE-2025-5445
was published
Jun 2, 2025
A vulnerability was found in Linksys RE6500, RE6250, RE6300, RE6350, RE7000 and RE9000 1.0.013...
Moderate
Unreviewed
CVE-2025-5446
was published
Jun 2, 2025
ProTip!
Advisories are also available from the
GraphQL API