GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,640
Maven
5,000+
npm
4,265
NuGet
760
pip
4,061
Pub
12
RubyGems
956
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
4,103 advisories
Filter by severity
Citrix SD-WAN Center 10.2.x before 10.2.1 and NetScaler SD-WAN Center 10.0.x before 10.0.7 allow...
Critical
Unreviewed
CVE-2019-10883
was published
May 24, 2022
The ImageMagick plugin that is installed by default in Pydio through 8.2.2 does not perform the...
High
Unreviewed
CVE-2019-10048
was published
May 24, 2022
NUUO Network Video Recorder Firmware 1.7.x through 3.3.x allows unauthenticated attackers to...
Critical
Unreviewed
CVE-2019-9653
was published
May 24, 2022
The network diagnostic function (ping) in the Yeahlink Ultra-elegant IP Phone SIP-T41P (firmware...
High
Unreviewed
CVE-2018-16217
was published
May 24, 2022
In OpenWrt LuCI through 0.10, the endpoints admin/status/realtime/bandwidth_status and admin...
Critical
Unreviewed
CVE-2019-12272
was published
May 24, 2022
A vulnerability in the implementation of a specific CLI command for Cisco NX-OS Software could...
High
Unreviewed
CVE-2019-1768
was published
May 24, 2022
A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker...
High
Unreviewed
CVE-2019-1770
was published
May 24, 2022
A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker...
High
Unreviewed
CVE-2019-1774
was published
May 24, 2022
A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker...
High
Unreviewed
CVE-2019-1778
was published
May 24, 2022
A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker...
High
Unreviewed
CVE-2019-1776
was published
May 24, 2022
A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker...
High
Unreviewed
CVE-2019-1775
was published
May 24, 2022
A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker...
High
Unreviewed
CVE-2019-1769
was published
May 24, 2022
HARMAN AMX MVP5150 v2.87.13 devices allow remote OS Command Injection.
High
Unreviewed
CVE-2019-11224
was published
May 24, 2022
RSA Netwitness Platform versions prior to 11.2.1.1 and RSA Security Analytics versions prior to...
Critical
Unreviewed
CVE-2019-3725
was published
May 24, 2022
Dell EMC RecoverPoint versions prior to 5.1.3 and RecoverPoint for VMs versions prior to 5.2.0.2...
High
Unreviewed
CVE-2019-3727
was published
May 24, 2022
LG N1A1 NAS 3718.510 is affected by: Remote Command Execution. The impact is: execute arbitrary...
Critical
Unreviewed
CVE-2018-14839
was published
May 24, 2022
A Remote Code Execution issue in the DNS Query Web UI in Lifesize Icon LS_RM3_3.7.0 (2421) allows...
High
Unreviewed
CVE-2019-3702
was published
May 24, 2022
In the /HNAP1/SetClientInfoDemo message, the AudioMute and AudioEnable parameters are vulnerable,...
Critical
Unreviewed
CVE-2018-19988
was published
May 24, 2022
In the /HNAP1/SetQoSSettings message, the uplink parameter is vulnerable, and the vulnerability...
Critical
Unreviewed
CVE-2018-19989
was published
May 24, 2022
In the /HNAP1/SetWiFiVerifyAlpha message, the WPSPIN parameter is vulnerable, and the...
Critical
Unreviewed
CVE-2018-19990
was published
May 24, 2022
In the /HNAP1/SetRouterSettings message, the RemotePort parameter is vulnerable, and the...
Critical
Unreviewed
CVE-2018-19986
was published
May 24, 2022
D-Link DIR-822 Rev.B 202KRb06, DIR-822 Rev.C 3.10B06, DIR-860L Rev.B 2.03.B03, DIR-868L Rev.B 2...
Critical
Unreviewed
CVE-2018-19987
was published
May 24, 2022
A command injection vulnerability is present that permits an unauthenticated user with access to...
Critical
Unreviewed
CVE-2018-7084
was published
May 24, 2022
A command injection vulnerability is present in Aruba Instant that permits an authenticated...
High
Unreviewed
CVE-2018-7082
was published
May 24, 2022
An exploitable command injection vulnerability exists in the ACEManager iplogging.cgi...
High
Unreviewed
CVE-2018-4061
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API