GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,638
Maven
5,000+
npm
4,264
NuGet
760
pip
4,060
Pub
12
RubyGems
956
Rust
1,056
Swift
45
Unreviewed advisories
All unreviewed
5,000+
2,996 advisories
Filter by severity
The Versa Director SD-WAN orchestration platform includes functionality to initiate SSH sessions...
Moderate
Unreviewed
CVE-2025-23170
was published
Jun 19, 2025
A vulnerability was found in TOTOLINK A3002R 1.1.1-B20200824.0128. It has been classified as...
Moderate
Unreviewed
CVE-2025-6485
was published
Jun 22, 2025
Ackites KillWxapkg vulnerable to OS Command Injection
Low
CVE-2025-5030
was published
for
github.com/Ackites/KillWxapkg
(Go)
May 21, 2025
In Cassia Gateway firmware XC1000_2.1.1.2303082218 and XC2000_2.1.1.2303090947, the queueUrl...
Critical
Unreviewed
CVE-2023-31446
was published
Jan 10, 2024
Command Injection vulnerability in Mathtex v.1.05 and before allows a remote attacker to execute...
Critical
Unreviewed
CVE-2023-51887
was published
Jan 24, 2024
A vulnerability classified as critical has been found in TOTOLINK N150RT 3.4.0-B20190525. This...
Moderate
Unreviewed
CVE-2025-6299
was published
Jun 20, 2025
A command inject vulnerability allows an attacker to perform command injection on Windows...
Critical
Unreviewed
CVE-2024-3566
was published
Apr 10, 2024
H3C GR2200 MiniGR1A0V100R014 was discovered to contain a command injection vulnerability via the...
High
Unreviewed
CVE-2022-36510
was published
Aug 26, 2022
H3C GR3200 MiniGR1B0V100R014 was discovered to contain a command injection vulnerability via the...
High
Unreviewed
CVE-2022-36509
was published
Aug 26, 2022
A vulnerability classified as critical has been found in FLIR AX8 up to 1.46.16. This affects the...
Moderate
Unreviewed
CVE-2025-5695
was published
Jun 5, 2025
TOTOlink A3700R v9.1.2u.5822_B20200513 was discovered to contain a remote command execution (RCE)...
Critical
Unreviewed
CVE-2023-52027
was published
Jan 11, 2024
Command injection in the administration interface in APSystems ECU-R version 5203 allows a remote...
Critical
Unreviewed
CVE-2022-45699
was published
Feb 10, 2023
A vulnerability, which was classified as critical, was found in Wifi-soft UniBox Controller up to...
High
Unreviewed
CVE-2025-6104
was published
Jun 16, 2025
A vulnerability classified as critical was found in Wifi-soft UniBox Controller up to 20250506....
High
Unreviewed
CVE-2025-6102
was published
Jun 16, 2025
A vulnerability, which was classified as critical, has been found in Wifi-soft UniBox Controller...
High
Unreviewed
CVE-2025-6103
was published
Jun 16, 2025
Salt's on demand pillar functionality vulnerable to arbitrary command injections
Moderate
CVE-2025-22237
was published
for
salt
(pip)
Jun 13, 2025
Blink routers BL-WR9000 V2.4.9, BL-AC1900 V1.0.2, BL-AC2100_AZ3 V1.0.4, BL-X10_AC8 V1.0.5, BL...
Critical
Unreviewed
CVE-2025-45984
was published
Jun 13, 2025
Blink routers BL-WR9000 V2.4.9 , BL-AC2100_AZ3 V1.0.4, BL-X10_AC8 v1.0.5 , BL-LTE300 v1.2.3, BL...
Critical
Unreviewed
CVE-2025-45985
was published
Jun 13, 2025
Blink routers BL-WR9000 V2.4.9 , BL-AC2100_AZ3 V1.0.4, BL-X10_AC8 v1.0.5 , BL-LTE300 v1.2.3, BL...
Critical
Unreviewed
CVE-2025-45988
was published
Jun 13, 2025
Blink routers BL-WR9000 V2.4.9 , BL-AC2100_AZ3 V1.0.4, BL-X10_AC8 v1.0.5 , BL-LTE300 v1.2.3, BL...
Critical
Unreviewed
CVE-2025-45987
was published
Jun 13, 2025
Blink routers BL-WR9000 V2.4.9 , BL-AC2100_AZ3 V1.0.4, BL-X10_AC8 v1.0.5 , BL-LTE300 v1.2.3, BL...
Critical
Unreviewed
CVE-2025-45986
was published
Jun 13, 2025
Improper neutralization of special elements used in a command ('command injection') in Visual...
High
Unreviewed
CVE-2025-47959
was published
Jun 13, 2025
A vulnerability was found in Linksys FGW3000-AH and FGW3000-HK up to 1.0.17.000000 and classified...
Moderate
Unreviewed
CVE-2025-4999
was published
May 20, 2025
A vulnerability was found in Linksys FGW3000-AH and FGW3000-HK up to 1.0.17.000000. It has been...
Moderate
Unreviewed
CVE-2025-5000
was published
May 20, 2025
Qualitor through 8.20 allows remote attackers to execute arbitrary code via PHP code in the html...
Critical
Unreviewed
CVE-2023-47253
was published
Nov 6, 2023
ProTip!
Advisories are also available from the
GraphQL API