GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,645
Maven
5,000+
npm
4,269
NuGet
760
pip
4,062
Pub
12
RubyGems
957
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,267 advisories
Filter by severity
TRENDnet TEW755AP 1.13B01 was discovered to contain a command injection vulnerability via the...
Critical
Unreviewed
CVE-2022-46597
was published
Dec 30, 2022
A vulnerability was found in Brave UX for-the-badge and classified as critical. Affected by this...
Critical
Unreviewed
CVE-2021-4281
was published
Dec 26, 2022
IP-COM M50 V15.11.0.33(10768) was discovered to contain multiple command injection...
Critical
Unreviewed
CVE-2022-45709
was published
Dec 23, 2022
IP-COM M50 V15.11.0.33(10768) was discovered to contain a command injection vulnerability via the...
Critical
Unreviewed
CVE-2022-45717
was published
Dec 23, 2022
IP-COM M50 V15.11.0.33(10768) was discovered to contain a command injection vulnerability via the...
Critical
Unreviewed
CVE-2022-45711
was published
Dec 23, 2022
A command injection vulnerability exists in Rocket.Chat-Desktop <3.8.14 that could allow an...
Critical
Unreviewed
CVE-2022-44567
was published
Dec 23, 2022
Dataprobe iBoot-PDU FW versions prior to 1.42.06162022 contain a vulnerability where a specific...
Critical
Unreviewed
CVE-2022-3183
was published
Dec 22, 2022
docconv OS Command Injection vulnerability
Critical
CVE-2022-4643
was published
for
code.sajari.com/docconv
(Go)
Dec 22, 2022
A flaw was found in Exuberant Ctags in the way it handles the "-o" option. This option specifies...
Critical
Unreviewed
CVE-2022-4515
was published
Dec 20, 2022
Tenda F1203 V2.0.1.6 was discovered to contain a command injection vulnerability via the mac...
Critical
Unreviewed
CVE-2022-46538
was published
Dec 20, 2022
pfSense pfBlockerNG through 2.1.4_27 allows remote attackers to execute arbitrary OS commands as...
Critical
Unreviewed
CVE-2022-40624
was published
Dec 20, 2022
CONPROSYS HMI System (CHS) Ver.3.4.4?and earlier allows a remote unauthenticated attacker to...
Critical
Unreviewed
CVE-2022-44456
was published
Dec 19, 2022
TOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection...
Critical
Unreviewed
CVE-2022-46631
was published
Dec 16, 2022
TOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection...
Critical
Unreviewed
CVE-2022-46634
was published
Dec 16, 2022
cycle-import-check vulnerable to Command Injection
Critical
CVE-2022-24377
was published
for
cycle-import-check
(npm)
Dec 14, 2022
IP-COM EW9 V15.11.0.14(9732) was discovered to contain a command injection vulnerability in the...
Critical
Unreviewed
CVE-2022-45005
was published
Dec 13, 2022
There is a command injection vulnerability that could lead to unauthenticated remote code...
Critical
Unreviewed
CVE-2022-37897
was published
Dec 12, 2022
egg-compile.scm in CHICKEN 5.x before 5.3.1 allows arbitrary OS command execution during package...
Critical
Unreviewed
CVE-2022-45145
was published
Dec 10, 2022
A vulnerability in Brocade Fabric OS software v9.1.1, v9.0.1e, v8.2.3c, v7.4.2j, and earlier...
Critical
Unreviewed
CVE-2022-33186
was published
Dec 9, 2022
Tenda W30E v1.0.1.25(633) was discovered to contain a command injection vulnerability via the...
Critical
Unreviewed
CVE-2022-45506
was published
Dec 8, 2022
Tenda W6-S v1.0.0.4(510) was discovered to contain a command injection vulnerability in the...
Critical
Unreviewed
CVE-2022-45497
was published
Dec 8, 2022
A vulnerability classified as critical has been found in Teledyne FLIR AX8 up to 1.46.16....
Critical
Unreviewed
CVE-2022-4364
was published
Dec 8, 2022
Markdown Preview Enhanced v0.6.5 and v0.19.6 for VSCode and Atom was discovered to contain a...
Critical
Unreviewed
CVE-2022-45025
was published
Dec 7, 2022
An issue in Markdown Preview Enhanced v0.6.5 and v0.19.6 for VSCode and Atom allows attackers to...
Critical
Unreviewed
CVE-2022-45026
was published
Dec 7, 2022
The web-management application on Seagate Central NAS STCG2000300, STCG3000300, and STCG4000300...
Critical
Unreviewed
CVE-2020-6627
was published
Dec 6, 2022
ProTip!
Advisories are also available from the
GraphQL API