GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,189
Erlang
31
GitHub Actions
19
Go
1,985
Maven
5,000+
npm
3,701
NuGet
657
pip
3,326
Pub
11
RubyGems
882
Rust
836
Swift
35
Unreviewed advisories
All unreviewed
5,000+
1,061 advisories
Filter by severity
An OS command injection vulnerability has been reported to affect Photo Station. If exploited,...
High
Unreviewed
CVE-2023-47562
was published
Feb 2, 2024
An issue was discovered in GTB Central Console 15.17.1-30814.NG. The method...
High
Unreviewed
CVE-2024-22107
was published
Feb 2, 2024
An issue was discovered in Atos Unify OpenScape Voice Trace Manager V8 before V8 R0.9.11. It...
High
Unreviewed
CVE-2023-40263
was published
Feb 9, 2024
Azure DevOps Server Remote Code Execution Vulnerability
High
Unreviewed
CVE-2024-20667
was published
Feb 13, 2024
TYPO3 Install Tool vulnerable to Code Execution
High
CVE-2024-22188
was published
for
typo3/cms-core
(Composer)
Feb 13, 2024
A command injection vulnerability was identified in GitHub Enterprise Server that allowed an...
High
Unreviewed
CVE-2024-1354
was published
Feb 13, 2024
When running in appliance mode, an authenticated remote command injection vulnerability exists in...
High
Unreviewed
CVE-2024-22093
was published
Feb 14, 2024
Command Injection vulnerability discovered in 4ipnet EAP-767 device v3.42.00 within the web...
High
Unreviewed
CVE-2024-24301
was published
Feb 15, 2024
An issue in idocv v.14.1.3_20231228 allows a remote attacker to execute arbitrary code and obtain...
High
Unreviewed
CVE-2024-24377
was published
Feb 16, 2024
Command Injection vulnerability in D-Link Dir 882 with firmware version DIR882A1_FW130B06 allows...
High
Unreviewed
CVE-2023-24330
was published
Feb 21, 2024
An issue was discovered in Linksys Router E1700 version 1.0.04 (build 3), allows authenticated...
High
Unreviewed
CVE-2024-22544
was published
Feb 27, 2024
Vulnerabilities in the ClearPass Policy Manager web-based management interface allow remote...
High
Unreviewed
CVE-2024-26298
was published
Feb 28, 2024
Vulnerabilities in the ClearPass Policy Manager web-based management interface allow remote...
High
Unreviewed
CVE-2024-26297
was published
Feb 28, 2024
Vulnerabilities in the ClearPass Policy Manager web-based management interface allow remote...
High
Unreviewed
CVE-2024-26295
was published
Feb 28, 2024
Vulnerabilities in the ClearPass Policy Manager web-based management interface allow remote...
High
Unreviewed
CVE-2024-26294
was published
Feb 28, 2024
Vulnerabilities in the ClearPass Policy Manager web-based management interface allow remote...
High
Unreviewed
CVE-2024-26296
was published
Feb 28, 2024
Authenticated command injection vulnerabilities exist in the ArubaOS command line interface....
High
Unreviewed
CVE-2024-1356
was published
Mar 5, 2024
Authenticated command injection vulnerabilities exist in the ArubaOS command line interface....
High
Unreviewed
CVE-2024-25612
was published
Mar 5, 2024
Authenticated command injection vulnerabilities exist in the ArubaOS command line interface....
High
Unreviewed
CVE-2024-25613
was published
Mar 5, 2024
Authenticated command injection vulnerabilities exist in the ArubaOS command line interface....
High
Unreviewed
CVE-2024-25611
was published
Mar 5, 2024
Outlook for Android Information Disclosure Vulnerability
High
Unreviewed
CVE-2024-26204
was published
Mar 12, 2024
Vinchin Backup and Recovery 7.2 and Earlier is vulnerable to Authenticated Remote Code Execution ...
High
Unreviewed
CVE-2024-25228
was published
Mar 14, 2024
There is a command injection vulnerability in the TRENDnet TEW-827DRU router with firmware...
High
Unreviewed
CVE-2024-28353
was published
Mar 15, 2024
RCE in TranformGraph().to_dot_graph function
High
CVE-2023-41334
was published
for
astropy
(pip)
Mar 18, 2024
A vulnerability was found in Ruijie RG-NBS2009G-P up to 20240305. It has been declared as...
High
Unreviewed
CVE-2024-2642
was published
Mar 20, 2024
ProTip!
Advisories are also available from the
GraphQL API