GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,992
Erlang
39
GitHub Actions
38
Go
2,634
Maven
5,000+
npm
4,259
NuGet
760
pip
4,052
Pub
12
RubyGems
955
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
253 advisories
Filter by severity
Products that incorporate the Microhard BulletLTE-NA2 and IPn4Gii-NA2 are vulnerable to a post...
High
Unreviewed
CVE-2025-35004
was published
Jun 8, 2025
The Quantenna Wi-Fi chipset ships with a local control script, router_command.sh (in the...
High
Unreviewed
CVE-2025-32457
was published
Jun 8, 2025
The Quantenna Wi-Fi chipset ships with a local control script, router_command.sh (in the...
High
Unreviewed
CVE-2025-32456
was published
Jun 8, 2025
The Quantenna Wi-Fi chipset ships with a local control script, router_command.sh (in the...
High
Unreviewed
CVE-2025-32458
was published
Jun 8, 2025
The Quantenna Wi-Fi chipset ships with a local control script, router_command.sh (in the run_cmd...
High
Unreviewed
CVE-2025-32455
was published
Jun 8, 2025
The Quantenna Wi-Fi chipset ships with a local control script, router_command.sh (in the...
High
Unreviewed
CVE-2025-32459
was published
Jun 8, 2025
Improper Neutralization of Argument Delimiters in a Command ('Argument Injection') vulnerability...
High
Unreviewed
CVE-2025-3945
was published
May 22, 2025
Argument injection in special agent configuration in Checkmk <2.4.0p1, <2.3.0p32, <2.2.0p42 and 2...
High
Unreviewed
CVE-2025-1712
was published
May 21, 2025
DevDojo Voyager Argument Injection vulnerability
Critical
CVE-2025-32931
was published
for
tcg/voyager
(Composer)
Apr 14, 2025
A vulnerability was found in Pagure. An argument injection in Git during retrieval of the...
Critical
Unreviewed
CVE-2024-47516
was published
Mar 26, 2025
Matrix IRC Bridge allows IRC command injection to own puppeted user
Low
CVE-2025-27146
was published
for
matrix-appservice-irc
(npm)
Feb 25, 2025
Improper neutralization of argument delimiters in a command ('Argument Injection') issue exists...
Moderate
Unreviewed
CVE-2025-24845
was published
Feb 6, 2025
Improper Neutralization of Argument Delimiters in the TeamViewer_service.exe component of...
High
Unreviewed
CVE-2025-0065
was published
Jan 28, 2025
An argument injection vulnerability in the diagnose and import pac commands in WatchGuard...
Moderate
Unreviewed
CVE-2022-31749
was published
Jan 28, 2025
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Wikimedia Foundation...
Low
Unreviewed
CVE-2025-23073
was published
Jan 14, 2025
A user with administrator privileges can perform command injection
High
Unreviewed
CVE-2024-9131
was published
Jan 11, 2025
go-git has an Argument Injection via the URL field
Critical
CVE-2025-21613
was published
for
github.com/go-git/go-git/v5
(Go)
Jan 6, 2025
Gogs has an argument Injection in the built-in SSH server
Critical
CVE-2024-39930
was published
for
gogs.io/gogs
(Go)
Dec 23, 2024
Gogs allows argument Injection when tagging new releases
High
CVE-2024-39933
was published
for
gogs.io/gogs
(Go)
Dec 23, 2024
Dell PowerStore contains an Improper Neutralization of Argument Delimiters in a Command (...
High
Unreviewed
CVE-2024-51532
was published
Dec 19, 2024
Argument injection in Ivanti Connect Secure before version 22.7R2.4 allows a remote authenticated...
Critical
Unreviewed
CVE-2024-11633
was published
Dec 10, 2024
A vulnerability in the web UI of Cisco SD-WAN vManage Software could allow an authenticated,...
Moderate
Unreviewed
CVE-2021-1484
was published
Nov 15, 2024
Argument injection in Ivanti Connect Secure before version 22.7R2 and 9.1R18.7 and Ivanti Policy...
Critical
Unreviewed
CVE-2024-39710
was published
Nov 13, 2024
Argument injection in Ivanti Connect Secure before version 22.7R2.1 and 9.1R18.7 and Ivanti...
Critical
Unreviewed
CVE-2024-39711
was published
Nov 13, 2024
Argument injection in Ivanti Connect Secure before version 22.7R2.2 and 9.1R18.9 and Ivanti...
Critical
Unreviewed
CVE-2024-38656
was published
Nov 13, 2024
ProTip!
Advisories are also available from the
GraphQL API