GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,638
Maven
5,000+
npm
4,262
NuGet
760
pip
4,058
Pub
12
RubyGems
956
Rust
1,056
Swift
45
Unreviewed advisories
All unreviewed
5,000+
4,102 advisories
Filter by severity
Improper neutralization of special elements used in an OS command ('OS Command Injection')...
High
Unreviewed
CVE-2022-22684
was published
Jul 29, 2022
OS Command Injection in GitHub repository hestiacp/hestiacp prior to 1.6.5.
High
Unreviewed
CVE-2022-2550
was published
Jul 28, 2022
Cisco Wireless LAN Controller (WLC) devices with software 7.0(240.0) allow local users to execute...
High
Unreviewed
CVE-2015-4224
was published
May 17, 2022
Symantec Web Gateway (SWG) before 5.2.5 allows remote authenticated users to execute arbitrary OS...
High
Unreviewed
CVE-2016-5313
was published
May 17, 2022
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W,...
High
Unreviewed
CVE-2022-20876
was published
Jul 22, 2022
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W,...
High
Unreviewed
CVE-2022-20888
was published
Jul 22, 2022
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W,...
High
Unreviewed
CVE-2022-20882
was published
Jul 22, 2022
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W,...
High
Unreviewed
CVE-2022-20883
was published
Jul 22, 2022
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W,...
High
Unreviewed
CVE-2022-20875
was published
Jul 22, 2022
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W,...
High
Unreviewed
CVE-2022-20885
was published
Jul 22, 2022
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W,...
High
Unreviewed
CVE-2022-20887
was published
Jul 22, 2022
Verizon 5G Home LVSKIHP InDoorUnit (IDU) 3.4.66.162 does not properly sanitize user-controlled...
Critical
Unreviewed
CVE-2022-28373
was published
Jul 15, 2022
A CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command...
High
Unreviewed
CVE-2022-34753
was published
Jul 14, 2022
Dell EMC PowerStore, contains an OS command injection Vulnerability. A locally authenticated...
Moderate
Unreviewed
CVE-2022-22555
was published
Jul 22, 2022
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W,...
High
Unreviewed
CVE-2022-20879
was published
Jul 22, 2022
A vulnerability has been found in WAVLINK WN535K2 and WN535K3 and classified as critical. This...
Critical
Unreviewed
CVE-2022-2487
was published
Jul 21, 2022
A vulnerability in the ConfD CLI of Cisco Elastic Services Controllers could allow an...
High
Unreviewed
CVE-2017-6682
was published
May 17, 2022
Security guide for website operators allows remote attackers to execute arbitrary OS commands via...
High
Unreviewed
CVE-2017-2128
was published
May 17, 2022
WNC01WH firmware 1.0.0.9 and earlier allows authenticated attackers to execute arbitrary OS...
Moderate
Unreviewed
CVE-2017-2152
was published
May 17, 2022
A improper neutralization of special elements used in an os command ('os command injection') in...
High
Unreviewed
CVE-2022-27483
was published
Jul 20, 2022
textract before 1.5.0 allows OS Command Injection attacks via a filename in a call to the process...
High
Unreviewed
CVE-2016-10320
was published
May 17, 2022
A vulnerability in CLI command processing in the Cisco Firepower 4100 Series Next-Generation...
Moderate
Unreviewed
CVE-2017-3806
was published
May 17, 2022
Addressed a remote code execution vulnerability by resolving a command injection vulnerability...
Critical
Unreviewed
CVE-2022-22997
was published
Jul 13, 2022
A user with administrative privileges in Distributed Data Systems WebHMI 4.1.1.7662 may send OS...
Critical
Unreviewed
CVE-2022-2253
was published
Jul 2, 2022
A vulnerability in the esc_listener.py script of Cisco Elastic Services Controllers could allow...
High
Unreviewed
CVE-2017-6683
was published
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API