GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,635
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,071 advisories
Filter by severity
H3C GR-1200W MiniGRW1A0V100R006 was discovered to contain a command injection vulnerability via...
Critical
Unreviewed
CVE-2022-37070
was published
Aug 26, 2022
Tenda AC1206 V15.03.06.23 was discovered to contain a command injection vulnerability via the mac...
Critical
Unreviewed
CVE-2022-37810
was published
Aug 26, 2022
FusionPBX 5.0.1 was discovered to contain a command injection vulnerability via /fax/fax_send.php.
Critical
Unreviewed
CVE-2022-35153
was published
Aug 19, 2022
Tenda AC9 V15.03.2.21_cn is vulnerable to command injection via goform/SetSysTimeCfg.
Critical
Unreviewed
CVE-2022-36273
was published
Aug 17, 2022
D-Link Go-RT-AC750 GORTAC750_revA_v101b03 & GO-RT-AC750_revB_FWv200b02 is vulnerable to command...
Critical
Unreviewed
CVE-2022-36523
was published
Aug 16, 2022
A command injection vulnerability exists in /goform/exeCommand in Tenda W6 V1.0.0.9(4122), which...
Critical
Unreviewed
CVE-2022-35555
was published
Aug 13, 2022
A vulnerability has been identified in Teamcenter V12.4 (All versions < V12.4.0.15), Teamcenter...
Critical
Unreviewed
CVE-2022-34660
was published
Aug 11, 2022
WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 wireless.cgi has no filtering on parameters:...
Critical
Unreviewed
CVE-2022-35538
was published
Aug 11, 2022
WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 qos.cgi has no filtering on parameters:...
Critical
Unreviewed
CVE-2022-35536
was published
Aug 11, 2022
WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 wireless.cgi has no filtering on parameter...
Critical
Unreviewed
CVE-2022-35534
was published
Aug 11, 2022
WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 wireless.cgi has no filtering on parameters:...
Critical
Unreviewed
CVE-2022-35537
was published
Aug 11, 2022
WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 adm.cgi has no filtering on parameters:...
Critical
Unreviewed
CVE-2022-35524
was published
Aug 11, 2022
WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 wireless.cgi has no filtering on parameter...
Critical
Unreviewed
CVE-2022-35535
was published
Aug 11, 2022
WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 nas.cgi has no filtering on parameters:...
Critical
Unreviewed
CVE-2022-35518
was published
Aug 11, 2022
WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 firewall.cgi has no filtering on parameters:...
Critical
Unreviewed
CVE-2022-35521
was published
Aug 11, 2022
WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 adm.cgi has no filtering on parameters:...
Critical
Unreviewed
CVE-2022-35522
was published
Aug 11, 2022
WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 qos.cgi has no filtering on parameters:...
Critical
Unreviewed
CVE-2022-35533
was published
Aug 11, 2022
WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 firewall.cgi has no filtering on parameter...
Critical
Unreviewed
CVE-2022-35523
was published
Aug 11, 2022
WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 login.cgi has no filtering on parameter key,...
Critical
Unreviewed
CVE-2022-35526
was published
Aug 11, 2022
WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 firewall.cgi has no filtering on parameter...
Critical
Unreviewed
CVE-2022-35519
was published
Aug 11, 2022
WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 api.cgi has no filtering on parameter ufconf...
Critical
Unreviewed
CVE-2022-35520
was published
Aug 11, 2022
WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 adm.cgi has no filtering on parameter...
Critical
Unreviewed
CVE-2022-35525
was published
Aug 11, 2022
In Airspan AirSpot 5410 version 0.3.4.1-4 and under there exists a Unauthenticated remote command...
Critical
Unreviewed
CVE-2022-36267
was published
Aug 9, 2022
@acrontum/filesystem-template vulnerable to Command Injection due to fetchRepo API missing sanitization
Critical
CVE-2022-21186
was published
for
@acrontum/filesystem-template
(npm)
Aug 6, 2022
D-Link DIR810LA1_FW102B22 was discovered to contain a command injection vulnerability via the...
Critical
Unreviewed
CVE-2022-34974
was published
Aug 4, 2022
ProTip!
Advisories are also available from the
GraphQL API