GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,645
Maven
5,000+
npm
4,271
NuGet
760
pip
4,065
Pub
12
RubyGems
957
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
4,104 advisories
Filter by severity
Aterm WG2600HS firmware Ver1.5.1 and earlier allows an attacker to execute arbitrary OS commands...
Critical
Unreviewed
CVE-2021-20711
was published
May 24, 2022
Multiple vulnerabilities exist in RaspAP 2.3 to 2.6.5 in the "interface", "ssid" and ...
High
Unreviewed
CVE-2021-33358
was published
May 24, 2022
An unvalidated REST API in the AppFormix Agent of Juniper Networks AppFormix allows an...
High
Unreviewed
CVE-2021-0265
was published
May 24, 2022
Dell PowerScale OneFS 8.1.0 - 9.1.0 contains a privilege escalation in SmartLock compliance mode...
High
Unreviewed
CVE-2021-21526
was published
May 24, 2022
An issue was discovered in D-Link DIR-816 A2 1.10 B05 devices. An HTTP request parameter is used...
Critical
Unreviewed
CVE-2021-27113
was published
May 24, 2022
Command Injection in TOTOLINK X5000R router with firmware v9.1.0u.6118_B20201102, and TOTOLINK...
Critical
Unreviewed
CVE-2021-27708
was published
May 24, 2022
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected...
High
Unreviewed
CVE-2021-27252
was published
May 24, 2022
A vulnerability has been discovered in BigTree CMS 4.4.10 and earlier which allows an...
High
Unreviewed
CVE-2020-26670
was published
May 24, 2022
UCOPIA Wi-Fi appliances 6.0.5 allow authenticated remote attackers to escape the restricted...
High
Unreviewed
CVE-2020-25036
was published
May 24, 2022
IBM Security Guardium 11.2 could allow a remote authenticated attacker to execute arbitrary...
High
Unreviewed
CVE-2021-20557
was published
May 24, 2022
WebSVN before 2.6.1 allows remote attackers to execute arbitrary commands via shell...
Critical
Unreviewed
CVE-2021-32305
was published
May 24, 2022
A command injection vulnerability has been reported to affect certain versions of Malware Remover...
Moderate
Unreviewed
CVE-2020-36198
was published
May 24, 2022
A command injection vulnerability in the cookieDomain and relayDomain parameters of Okta Access...
High
Unreviewed
CVE-2021-28113
was published
May 24, 2022
HNAP1/control/SetMasterWLanSettings.php in D-Link D-Link Router DIR-846 DIR-846 A1_100.26 allows...
Critical
Unreviewed
CVE-2020-27600
was published
May 24, 2022
Dell PowerScale OneFS 8.1.0-9.1.0 contain an improper neutralization of special elements used in...
High
Unreviewed
CVE-2021-21527
was published
May 24, 2022
Dell EMC PowerScale OneFS 8.1.0-9.1.0 contain an improper neutralization of special elements used...
High
Unreviewed
CVE-2021-21550
was published
May 24, 2022
This vulnerability allows remote attackers to execute arbitrary code on affected installations of...
High
Unreviewed
CVE-2021-27273
was published
May 24, 2022
A remote execution of arbitrary commands vulnerability was discovered in some Aruba Instant...
Critical
Unreviewed
CVE-2020-24636
was published
May 24, 2022
A command injection vulnerability in install package validation subsystem of Juniper Networks...
Moderate
Unreviewed
CVE-2021-0219
was published
May 24, 2022
The /admin/admapi.php script of Invigo Automatic Device Management (ADM) through 5.0 allows...
High
Unreviewed
CVE-2020-10583
was published
May 24, 2022
A vulnerability in the ROM Monitor (ROMMON) of Cisco IOS XE Software for Cisco Catalyst IE3200,...
High
Unreviewed
CVE-2021-1452
was published
May 24, 2022
A remote code execution issue was discovered in MariaDB 10.2 before 10.2.37, 10.3 before 10.3.28,...
High
Unreviewed
CVE-2021-27928
was published
May 24, 2022
In SmartBear Collaborator Server through 13.3.13302, use of the Google Web Toolkit (GWT) API...
High
Unreviewed
CVE-2020-26118
was published
May 24, 2022
A vulnerability in SonicWall SMA100 appliance allow an authenticated management-user to perform...
High
Unreviewed
CVE-2020-5146
was published
May 24, 2022
In Fibaro Home Center 2 and Lite devices with firmware version 4.540 and older an authenticated...
High
Unreviewed
CVE-2021-20991
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API