GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,635
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,071 advisories
Filter by severity
inventory in Atos Unify OpenScape 4000 Platform and OpenScape 4000 Manager Platform 10 R1 before...
Critical
Unreviewed
CVE-2023-29475
was published
Apr 7, 2023
webservice in Atos Unify OpenScape 4000 Platform and OpenScape 4000 Manager Platform 10 R1 before...
Critical
Unreviewed
CVE-2023-29473
was published
Apr 7, 2023
An issue was identified in GitLab CE/EE affecting all versions from 1.0 prior to 15.8.5, 15.9...
Critical
Unreviewed
CVE-2023-1708
was published
Apr 5, 2023
GreenPacket OH736's WR-1200 Indoor Unit, OT-235 with firmware versions M-IDU-1.6.0.3_V1.1 and MH...
Critical
Unreviewed
CVE-2023-26866
was published
Apr 4, 2023
A pre-auth command injection vulnerability in the warn-proceed handler of Sophos Web Appliance...
Critical
Unreviewed
CVE-2023-1671
was published
Apr 4, 2023
D-Link Go-RT-AC750 revA_v101b03 was discovered to contain a command injection vulnerability via...
Critical
Unreviewed
CVE-2023-26822
was published
Apr 2, 2023
TOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection...
Critical
Unreviewed
CVE-2023-27232
was published
Mar 29, 2023
TOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection...
Critical
Unreviewed
CVE-2023-27229
was published
Mar 29, 2023
TOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection...
Critical
Unreviewed
CVE-2023-27231
was published
Mar 29, 2023
Osprey Pump Controller version 1.01 contains an unauthenticated command injection vulnerability...
Critical
Unreviewed
CVE-2023-28712
was published
Mar 28, 2023
Ruijie Networks RG-EW1200 Wireless Routers EW_3.0(1)B11P204 was discovered to contain a command...
Critical
Unreviewed
CVE-2023-26800
was published
Mar 26, 2023
LB-LINK BL-AC1900_2.0 v1.0.1, LB-LINK BL-WR9000 v2.4.9, LB-LINK BL-X26 v1.2.5, and LB-LINK BL...
Critical
Unreviewed
CVE-2023-26801
was published
Mar 26, 2023
** DISPUTED ** A vulnerability has been found in Ubiquiti EdgeRouter X 2.0.9-hotfix.6 and...
Critical
Unreviewed
CVE-2023-1458
was published
Mar 26, 2023
** DISPUTED ** A vulnerability, which was classified as critical, was found in Ubiquiti...
Critical
Unreviewed
CVE-2023-1457
was published
Mar 25, 2023
** DISPUTED ** A vulnerability, which was classified as critical, has been found in Ubiquiti...
Critical
Unreviewed
CVE-2023-1456
was published
Mar 25, 2023
DEK-1705 <=Firmware:34.23.1 device was discovered to have a command execution vulnerability.
Critical
Unreviewed
CVE-2023-23149
was published
Mar 25, 2023
TOTOLink outdoor CPE CP900 V6.3c.566_B20171026 is discovered to contain a command injection...
Critical
Unreviewed
CVE-2022-28495
was published
Mar 24, 2023
TOTOLink outdoor CPE CP900 V6.3c.566_B20171026 is discovered to contain a command injection...
Critical
Unreviewed
CVE-2022-28497
was published
Mar 23, 2023
TOTOLink outdoor CPE CP900 V6.3c.566_B20171026 discovered to contain a command injection...
Critical
Unreviewed
CVE-2022-28496
was published
Mar 23, 2023
A command injection issue was found in TP-Link MR3020 v.1_150921 that allows a remote attacker to...
Critical
Unreviewed
CVE-2023-27078
was published
Mar 23, 2023
TOTOLink outdoor CPE CP900 V6.3c.566_B20171026 contains a command injection vulnerability in the...
Critical
Unreviewed
CVE-2022-28491
was published
Mar 23, 2023
TOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection...
Critical
Unreviewed
CVE-2023-27135
was published
Mar 23, 2023
TOTOLink outdoor CPE CP900 V6.3c.566_B20171026 is discovered to contain a command injection...
Critical
Unreviewed
CVE-2022-28494
was published
Mar 23, 2023
An issue found in NginxProxyManager v.2.9.19 allows an attacker to execute arbitrary code via a...
Critical
Unreviewed
CVE-2023-27224
was published
Mar 22, 2023
A vulnerability, which was classified as critical, was found in Zarthus IRC Twitter Announcer Bot...
Critical
Unreviewed
CVE-2015-10096
was published
Mar 20, 2023
ProTip!
Advisories are also available from the
GraphQL API