GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,645
Maven
5,000+
npm
4,271
NuGet
760
pip
4,065
Pub
12
RubyGems
957
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
4,105 advisories
Filter by severity
A vulnerability in a CLI command related to the virtualization manager (VMAN) in Cisco NX-OS...
High
Unreviewed
CVE-2019-12717
was published
May 24, 2022
A vulnerability in a CLI command related to the virtualization manager (VMAN) in Cisco IOS XR...
High
Unreviewed
CVE-2019-12709
was published
May 24, 2022
A vulnerability in a Virtualization Manager (VMAN) related CLI command of Cisco IOS XE Software...
High
Unreviewed
CVE-2019-12661
was published
May 24, 2022
Multiple vulnerabilities in the web-based user interface (Web UI) of Cisco IOS XE Software could...
High
Unreviewed
CVE-2019-12651
was published
May 24, 2022
Multiple vulnerabilities in the web-based user interface (Web UI) of Cisco IOS XE Software could...
High
Unreviewed
CVE-2019-12650
was published
May 24, 2022
In radare2 before 3.9.0, a command injection vulnerability exists in bin_symbols() in libr/core...
Moderate
Unreviewed
CVE-2019-16718
was published
May 24, 2022
A command injection vulnerability is present in the web management interface of ArubaOS that...
High
Unreviewed
CVE-2019-5315
was published
May 24, 2022
Improper Neutralization of Special Elements used in an OS Command in Jenkins Git Client Plugin
High
CVE-2019-10392
was published
for
org.jenkins-ci.plugins:git-client
(Maven)
May 24, 2022
D-Link DIR-806 devices allow remote attackers to execute arbitrary shell commands via a trailing...
Critical
Unreviewed
CVE-2019-10891
was published
May 24, 2022
Nagios XI before 5.6.6 allows remote command execution as root. The exploit requires access to...
High
Unreviewed
CVE-2019-15949
was published
May 24, 2022
An OS Command Injection vulnerability in Snare Central before 7.4.5 allows remote authenticated...
High
Unreviewed
CVE-2019-11364
was published
May 24, 2022
components/Modals/HelpModal.jsx in BloodHound 2.2.0 allows remote attackers to execute arbitrary...
High
Unreviewed
CVE-2019-15701
was published
May 24, 2022
cgi-cpn/xcoding/prontus_videocut.cgi in AltaVoz Prontus (aka ProntusCMS) through 12.0.3.0 has ...
Critical
Unreviewed
CVE-2019-15503
was published
May 24, 2022
In Docker before 18.09.4, an attacker who is capable of supplying or manipulating the build path...
High
Unreviewed
CVE-2019-13139
was published
May 24, 2022
A vulnerability in the web-based management interface of Cisco Integrated Management Controller ...
High
Unreviewed
CVE-2019-1896
was published
May 24, 2022
A vulnerability in the Redfish protocol of Cisco Integrated Management Controller (IMC) could...
High
Unreviewed
CVE-2019-1885
was published
May 24, 2022
A vulnerability in the web-based management interface of Cisco Integrated Management Controller ...
High
Unreviewed
CVE-2019-1865
was published
May 24, 2022
A vulnerability in the command-line interface of Cisco Integrated Management Controller (IMC)...
High
Unreviewed
CVE-2019-1883
was published
May 24, 2022
A vulnerability in the web-based management interface of Cisco Integrated Management Controller ...
High
Unreviewed
CVE-2019-1864
was published
May 24, 2022
A vulnerability in the web-based management interface of Cisco Integrated Management Controller ...
High
Unreviewed
CVE-2019-1850
was published
May 24, 2022
IBM DataPower Gateway 2018.4.1.0 through 2018.4.1.6, 7.6.0.0 through 7.6.0.15 and IBM MQ...
High
Unreviewed
CVE-2019-4294
was published
May 24, 2022
An issue was discovered in Webmin through 1.920. The parameter old in password_change.cgi...
Critical
Unreviewed
CVE-2019-15107
was published
May 24, 2022
EyesOfNetwork 5.1 allows Remote Command Execution via shell metacharacters in the module/tool_all...
High
Unreviewed
CVE-2019-14923
was published
May 24, 2022
do_ed_script in pch.c in GNU patch through 2.7.6 does not block strings beginning with a !...
High
Unreviewed
CVE-2018-20969
was published
May 24, 2022
All versions up to V1.1.10P3T18 of ZTE ZXHN F670 product are impacted by command injection...
High
Unreviewed
CVE-2019-3417
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API