GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,635
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,071 advisories
Filter by severity
TOTOLINK LR350 V9.3.5u.6369_B20220309 was discovered to contain a command injection vulnerability...
Critical
Unreviewed
CVE-2023-37145
was published
Jul 7, 2023
TOTOLINK LR350 V9.3.5u.6369_B20220309 was discovered to contain a command injection vulnerability...
Critical
Unreviewed
CVE-2023-37149
was published
Jul 7, 2023
Tenda AC10 v15.03.06.26 was discovered to contain a command injection vulnerability via the mac...
Critical
Unreviewed
CVE-2023-37144
was published
Jul 7, 2023
Improper Input Validation vulnerability in ABB Ltd. ASPECT®-Enterprise on ASPECT®-Enterprise,...
Critical
Unreviewed
CVE-2023-0636
was published
Jul 6, 2023
A remote command injection vulnerability exists in the Barracuda Email Security Gateway ...
Critical
Unreviewed
CVE-2023-2868
was published
Jul 6, 2023
A vulnerability has been identified in CP-8031 MASTER MODULE (All versions < CPCI85 V05), CP-8050...
Critical
Unreviewed
CVE-2023-28489
was published
Jul 6, 2023
There is a command injection vulnerability using environment variables in Bitbucket Server and...
Critical
Unreviewed
CVE-2022-43781
was published
Jul 6, 2023
Apache Kylin vulnerable to remote code execution
Critical
CVE-2022-24697
was published
for
org.apache.kylin:kylin-core-common
(Maven)
Jul 6, 2023
A backup file vulnerability found in UniFi applications (Version 7.3.83 and earlier) running on...
Critical
Unreviewed
CVE-2023-28365
was published
Jul 1, 2023
An unauthorized command injection vulnerability exists in the ActionLogin function of the webman...
Critical
Unreviewed
CVE-2023-34849
was published
Jun 29, 2023
Command Injection vulnerability in MagnusSolution magnusbilling 6.x and 7.x allows remote...
Critical
Unreviewed
CVE-2023-30258
was published
Jun 23, 2023
There is a command injection vulnerability in the adslr VW2100 router with firmware version M1DV1...
Critical
Unreviewed
CVE-2023-31746
was published
Jun 14, 2023
TP-Link TL-WPA8630P (US)_ V2_ Version 171011 was discovered to contain a command injection...
Critical
Unreviewed
CVE-2023-27836
was published
Jun 13, 2023
TP-Link TL-WPA8630P (US)_ V2_ Version 171011 was discovered to contain a command injection...
Critical
Unreviewed
CVE-2023-27837
was published
Jun 13, 2023
Previous versions of HP Device Manager (prior to HPDM 5.0.10) could potentially allow command...
Critical
Unreviewed
CVE-2023-26295
was published
Jun 13, 2023
D-Link DIR-600 Hardware Version B5, Firmware Version 2.18 was discovered to contain a command...
Critical
Unreviewed
CVE-2023-33625
was published
Jun 12, 2023
The Danfoss AK-EM100 web applications allow for OS command injection through the web application...
Critical
Unreviewed
CVE-2023-25911
was published
Jun 11, 2023
TOTOLink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection...
Critical
Unreviewed
CVE-2023-33556
was published
Jun 7, 2023
Aria Operations for Networks contains a command injection vulnerability. A malicious actor with...
Critical
Unreviewed
CVE-2023-20887
was published
Jun 7, 2023
An issue was discovered in Anyka Microelectronics AK3918EV300 MCU v18. A command injection...
Critical
Unreviewed
CVE-2023-30400
was published
Jun 7, 2023
TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain a command injection via the...
Critical
Unreviewed
CVE-2023-31569
was published
Jun 6, 2023
There is a command injection vulnerability in the Netgear R6250 router with Firmware Version 1.0...
Critical
Unreviewed
CVE-2023-33532
was published
Jun 6, 2023
Advanced Secure Gateway and Content Analysis, prior to 7.3.13.1 / 3.1.6.0, may be susceptible to...
Critical
Unreviewed
CVE-2023-23952
was published
Jun 1, 2023
TOTOLINK X5000R V9.1.0u.6118_B20201102 and V9.1.0u.6369_B20230113 contains a command insertion...
Critical
Unreviewed
CVE-2023-33487
was published
May 31, 2023
TOTOLINK X5000R V9.1.0u.6118_B20201102 and V9.1.0u.6369_B20230113 contain a command insertion...
Critical
Unreviewed
CVE-2023-33486
was published
May 31, 2023
ProTip!
Advisories are also available from the
GraphQL API