GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,638
Maven
5,000+
npm
4,264
NuGet
760
pip
4,060
Pub
12
RubyGems
956
Rust
1,056
Swift
45
Unreviewed advisories
All unreviewed
5,000+
2,996 advisories
Filter by severity
Blink routers BL-WR9000 V2.4.9 , BL-AC2100_AZ3 V1.0.4, BL-X10_AC8 v1.0.5 , BL-LTE300 v1.2.3, BL...
Critical
Unreviewed
CVE-2025-45985
was published
Jun 13, 2025
Blink routers BL-WR9000 V2.4.9 , BL-AC2100_AZ3 V1.0.4, BL-X10_AC8 v1.0.5 , BL-LTE300 v1.2.3, BL...
Critical
Unreviewed
CVE-2025-45987
was published
Jun 13, 2025
Blink routers BL-WR9000 V2.4.9, BL-AC1900 V1.0.2, BL-AC2100_AZ3 V1.0.4, BL-X10_AC8 V1.0.5, BL...
Critical
Unreviewed
CVE-2025-45984
was published
Jun 13, 2025
Blink routers BL-WR9000 V2.4.9 , BL-AC2100_AZ3 V1.0.4, BL-X10_AC8 v1.0.5 , BL-LTE300 v1.2.3, BL...
Critical
Unreviewed
CVE-2025-45986
was published
Jun 13, 2025
Salt's on demand pillar functionality vulnerable to arbitrary command injections
Moderate
CVE-2025-22237
was published
for
salt
(pip)
Jun 13, 2025
Improper neutralization of special elements used in a command ('command injection') in Visual...
High
Unreviewed
CVE-2025-47959
was published
Jun 13, 2025
A command injection vulnerability in Palo Alto Networks PAN-OS® enables an authenticated...
High
Unreviewed
CVE-2025-4231
was published
Jun 13, 2025
Ai command injection in M365 Copilot allows an unauthorized attacker to disclose information over...
Critical
Unreviewed
CVE-2025-32711
was published
Jun 11, 2025
'.../...//' in Microsoft Office Outlook allows an authorized attacker to execute code locally.
High
Unreviewed
CVE-2025-47176
was published
Jun 10, 2025
Improper Neutralization of Special Elements in the backup name field may allow OS command...
High
Unreviewed
CVE-2025-4653
was published
Jun 10, 2025
Improper Neutralization of Special Elements in the chromium_path variable may allow OS command...
High
Unreviewed
CVE-2025-4678
was published
Jun 10, 2025
A vulnerability, which was classified as critical, has been found in Zend.To up to 6.10-6 Beta....
Moderate
Unreviewed
CVE-2025-5952
was published
Jun 10, 2025
A command injection vulnerability has been reported to affect several QNAP operating system...
High
Unreviewed
CVE-2025-22481
was published
Jun 6, 2025
A vulnerability has been found in Tenda CP3 11.10.00.2311090948 and classified as critical....
Moderate
Unreviewed
CVE-2025-5763
was published
Jun 6, 2025
A vulnerability classified as critical has been found in FLIR AX8 up to 1.46.16. This affects the...
Moderate
Unreviewed
CVE-2025-5695
was published
Jun 5, 2025
A vulnerability, which was classified as critical, was found in D-Link DIR-816 1.10CNB05....
Moderate
Unreviewed
CVE-2025-5620
was published
Jun 5, 2025
A vulnerability has been found in D-Link DIR-816 1.10CNB05 and classified as critical. Affected...
Moderate
Unreviewed
CVE-2025-5621
was published
Jun 5, 2025
A vulnerability was found in Tenda AC18 15.03.05.05. It has been declared as critical. This...
Moderate
Unreviewed
CVE-2025-5606
was published
Jun 4, 2025
A vulnerability in the CLI of multiple Cisco Unified Communications products could allow an...
Moderate
Unreviewed
CVE-2025-20278
was published
Jun 4, 2025
A vulnerability was found in D-Link DCS-932L 2.18.01. It has been rated as critical. Affected by...
Moderate
Unreviewed
CVE-2025-5573
was published
Jun 4, 2025
A vulnerability was found in D-Link DCS-932L 2.18.01. It has been classified as critical....
Moderate
Unreviewed
CVE-2025-5571
was published
Jun 4, 2025
A vulnerability was found in Jrohy trojan up to 2.15.3. It has been declared as critical. This...
Moderate
Unreviewed
CVE-2025-5525
was published
Jun 3, 2025
In engineermode service, there is a possible command injection due to improper input validation....
Moderate
Unreviewed
CVE-2025-31710
was published
Jun 3, 2025
An issue in Clinical Collaboration Platform 12.2.1.5 allows a remote attacker to obtain sensitive...
Moderate
Unreviewed
CVE-2025-27954
was published
Jun 2, 2025
An issue in Clinical Collaboration Platform 12.2.1.5 allows a remote attacker to obtain sensitive...
Moderate
Unreviewed
CVE-2025-27953
was published
Jun 2, 2025
ProTip!
Advisories are also available from the
GraphQL API