GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,635
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
4,100 advisories
Filter by severity
Tenda M3 1.10 V1.0.0.12(4856) was discovered to contain a command injection vulnerability via the...
Critical
Unreviewed
CVE-2022-27081
was published
Mar 25, 2022
Tenda M3 1.10 V1.0.0.12(4856) was discovered to contain a command injection vulnerability via the...
Critical
Unreviewed
CVE-2022-27078
was published
Mar 25, 2022
Tenda M3 1.10 V1.0.0.12(4856) was discovered to contain a command injection vulnerability via the...
Critical
Unreviewed
CVE-2022-27077
was published
Mar 25, 2022
Tenda M3 1.10 V1.0.0.12(4856) was discovered to contain a command injection vulnerability via the...
Critical
Unreviewed
CVE-2022-26536
was published
Mar 25, 2022
Tenda M3 1.10 V1.0.0.12(4856) was discovered to contain a command injection vulnerability via the...
Critical
Unreviewed
CVE-2022-27076
was published
Mar 25, 2022
GNOME OCRFeeder before 0.8.4 allows OS command injection via shell metacharacters in a PDF or...
Critical
Unreviewed
CVE-2022-27811
was published
Mar 25, 2022
Tenda M3 1.10 V1.0.0.12(4856) was discovered to contain a command injection vulnerability via the...
Critical
Unreviewed
CVE-2022-27079
was published
Mar 25, 2022
Tenda M3 1.10 V1.0.0.12(4856) was discovered to contain a command injection vulnerability via the...
Critical
Unreviewed
CVE-2022-27082
was published
Mar 25, 2022
Tenda M3 1.10 V1.0.0.12(4856) was discovered to contain a command injection vulnerability via the...
Critical
Unreviewed
CVE-2022-27080
was published
Mar 25, 2022
Tenda M3 1.10 V1.0.0.12(4856) was discovered to contain a command injection vulnerability via the...
Critical
Unreviewed
CVE-2022-27083
was published
Mar 25, 2022
A vulnerability exists in the SaveConfigFile function of the RACompare Service, which may allow...
Critical
Unreviewed
CVE-2021-27476
was published
Mar 24, 2022
VMware Carbon Black App Control (8.5.x prior to 8.5.14, 8.6.x prior to 8.6.6, 8.7.x prior to 8.7...
Critical
Unreviewed
CVE-2022-22951
was published
Mar 24, 2022
Specially crafted string in OTRS system configuration can allow the execution of any system command.
High
Unreviewed
CVE-2021-36100
was published
Mar 22, 2022
** UNSUPPORTED WHEN ASSIGNED ** Improper neutralization of Special Elements leading to OS Command...
Critical
Unreviewed
CVE-2022-22273
was published
Mar 18, 2022
Arris TR3300 v1.0.13 was discovered to contain a command injection vulnerability in the upnp...
Critical
Unreviewed
CVE-2022-26997
was published
Mar 17, 2022
Arris TR3300 v1.0.13 was discovered to contain a command injection vulnerability in the pptp ...
Critical
Unreviewed
CVE-2022-26995
was published
Mar 17, 2022
Arris TR3300 v1.0.13 were discovered to contain a command injection vulnerability in the dhcp...
Critical
Unreviewed
CVE-2022-27001
was published
Mar 17, 2022
Arris TR3300 v1.0.13 was discovered to contain a command injection vulnerability in the pppoe...
Critical
Unreviewed
CVE-2022-26996
was published
Mar 17, 2022
Totolink routers s X5000R V9.1.0u.6118_B20201102 and A7000R V9.1.0u.6115_B20201022 were...
Critical
Unreviewed
CVE-2022-27003
was published
Mar 17, 2022
Arris TR3300 v1.0.13 were discovered to contain a command injection vulnerability in the ddns...
Critical
Unreviewed
CVE-2022-27002
was published
Mar 17, 2022
Totolink routers s X5000R V9.1.0u.6118_B20201102 and A7000R V9.1.0u.6115_B20201022 were...
Critical
Unreviewed
CVE-2022-27004
was published
Mar 17, 2022
Arris TR3300 v1.0.13 was discovered to contain a command injection vulnerability in the static ip...
Critical
Unreviewed
CVE-2022-26999
was published
Mar 17, 2022
Arris TR3300 v1.0.13 was discovered to contain a command injection vulnerability in the time and...
Critical
Unreviewed
CVE-2022-27000
was published
Mar 17, 2022
Arris TR3300 v1.0.13 was discovered to contain a command injection vulnerability in the wps...
Critical
Unreviewed
CVE-2022-26998
was published
Mar 17, 2022
ProTip!
Advisories are also available from the
GraphQL API