GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,645
Maven
5,000+
npm
4,271
NuGet
760
pip
4,065
Pub
12
RubyGems
957
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
3,002 advisories
Filter by severity
TOTOLINK CA600-PoE V5.3c.6665_B20180820 was found to contain a command injection vulnerability in...
Moderate
Unreviewed
CVE-2025-44847
was published
May 1, 2025
TOTOLINK CA600-PoE V5.3c.6665_B20180820 was found to contain a command injection vulnerability in...
Moderate
Unreviewed
CVE-2025-44842
was published
May 1, 2025
TOTOLINK CA600-PoE V5.3c.6665_B20180820 was found to contain a command injection vulnerability in...
Moderate
Unreviewed
CVE-2025-44843
was published
May 1, 2025
TOTOLINK CA600-PoE V5.3c.6665_B20180820 was found to contain a command injection vulnerability in...
Moderate
Unreviewed
CVE-2025-44839
was published
May 1, 2025
TOTOLINK CA600-PoE V5.3c.6665_B20180820 was found to contain a command injection vulnerability in...
Moderate
Unreviewed
CVE-2025-44841
was published
May 1, 2025
TOTOLINK CA600-PoE V5.3c.6665_B20180820 was found to contain a command injection vulnerability in...
Moderate
Unreviewed
CVE-2025-44840
was published
May 1, 2025
TOTOLINK CPE CP900 V6.3c.1144_B20190715 was discovered to contain a command injection...
Moderate
Unreviewed
CVE-2025-44837
was published
May 1, 2025
TOTOLINK CPE CP900 V6.3c.1144_B20190715 was discovered to contain a command injection...
Moderate
Unreviewed
CVE-2025-44836
was published
May 1, 2025
TOTOLINK CPE CP900 V6.3c.1144_B20190715 was discovered to contain a command injection...
Moderate
Unreviewed
CVE-2025-44838
was published
May 1, 2025
Totolink CP900 V6.3c.1144_B20190715 was found to contain a command injection vulnerability in the...
Moderate
Unreviewed
CVE-2025-44854
was published
May 1, 2025
D-Link DIR-816 A2V1.1.0B05 was found to contain a command injection in iptablesWebsFilterRun,...
Moderate
Unreviewed
CVE-2025-44835
was published
May 1, 2025
A vulnerability was found in Netgear JWNR2000v2 1.0.0.11. It has been rated as critical. Affected...
Moderate
Unreviewed
CVE-2025-4122
was published
Apr 30, 2025
A vulnerability was found in Netgear JWNR2000v2 1.0.0.11. It has been declared as critical....
Moderate
Unreviewed
CVE-2025-4121
was published
Apr 30, 2025
A HTML Injection vulnerability was discovered in the normal-search.php file of PHPGurukul Park...
Moderate
Unreviewed
CVE-2025-45009
was published
Apr 30, 2025
A HTML Injection vulnerability was discovered in the foreigner-search.php file of PHPGurukul Park...
Moderate
Unreviewed
CVE-2025-45011
was published
Apr 30, 2025
A HTML Injection vulnerability was discovered in the normal-bwdates-reports-details.php file of...
Moderate
Unreviewed
CVE-2025-45010
was published
Apr 30, 2025
Due to insufficient escaping of special characters in the "copy as cURL" feature, an attacker...
Moderate
Unreviewed
CVE-2025-4089
was published
Apr 29, 2025
AWorld OS Command Injection vulnerability
Low
CVE-2025-4032
was published
for
aworld
(pip)
Apr 28, 2025
A vulnerability was found in TOTOLINK N150RT 3.4.0-B20190525. It has been rated as critical. This...
Moderate
Unreviewed
CVE-2025-3987
was published
Apr 28, 2025
A vulnerability has been found in AMTT Hotel Broadband Operation System 1.0 and classified as...
Moderate
Unreviewed
CVE-2025-3983
was published
Apr 27, 2025
YoutubeDLSharp allows command injection on windows system due to non sanitized arguments
Critical
CVE-2025-43858
was published
for
YoutubeDLSharp
(NuGet)
Apr 23, 2025
TOTOLINK A800R V4.1.2cu.5032_B20200408 is vulnerable to Command Injection in downloadFile.cgi via...
Moderate
Unreviewed
CVE-2025-28017
was published
Apr 23, 2025
D-Link DIR-816 A2V1.1.0B05 was found to contain a command injection in /goform/delRouting.
Moderate
Unreviewed
CVE-2025-29743
was published
Apr 22, 2025
Codemers KLIMS 1.6.DEV allows Python code injection. A user can provide Python code as an input...
High
Unreviewed
CVE-2025-43948
was published
Apr 22, 2025
Directory Traversal vulnerability in forkosh Mime Tex before v.1.77 allows an attacker to execute...
High
Unreviewed
CVE-2024-40445
was published
Apr 22, 2025
ProTip!
Advisories are also available from the
GraphQL API