GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,884
Erlang
37
GitHub Actions
38
Go
2,546
Maven
5,000+
npm
4,207
NuGet
743
pip
3,979
Pub
12
RubyGems
947
Rust
1,034
Swift
45
Unreviewed advisories
All unreviewed
5,000+
524 advisories
Filter by severity
A command injection vulnerability has been reported to affect several QNAP operating system...
Moderate
Unreviewed
CVE-2025-47212
was published
Oct 3, 2025
A weakness has been identified in D-Link DIR-816L 206b01. Affected by this issue is the function...
Moderate
Unreviewed
CVE-2025-9727
was published
Oct 1, 2025
Dell Cloud Disaster Recovery, version(s) prior to 19.20, contain(s) an Improper Neutralization of...
Moderate
Unreviewed
CVE-2025-43943
was published
Sep 25, 2025
OS Command injection vulnerability in D-Link C1 2020-02-21. The sub_47F028 function in jhttpd...
Moderate
Unreviewed
CVE-2025-57636
was published
Sep 23, 2025
OS Command injection vulnerability in Tenda AC9 1.0 was discovered to contain a command injection...
Moderate
Unreviewed
CVE-2025-57639
was published
Sep 23, 2025
HyperX NGENUITY software is potentially vulnerable to arbitrary code execution. HP is releasing...
Moderate
Unreviewed
CVE-2025-10568
was published
Sep 19, 2025
IBM Lakehouse (watsonx.data 2.2) could allow an authenticated privileged user to execute...
Moderate
Unreviewed
CVE-2025-36143
was published
Sep 18, 2025
A vulnerable feature in the command line interface of EdgeConnect SD-WAN could allow an...
Moderate
Unreviewed
CVE-2025-37129
was published
Sep 17, 2025
A vulnerability was detected in Wavlink WL-WN578W2 221110. This impacts the function sub_404DBC...
Moderate
Unreviewed
CVE-2025-10359
was published
Sep 13, 2025
A security vulnerability has been detected in Wavlink WL-WN578W2 221110. This affects the...
Moderate
Unreviewed
CVE-2025-10358
was published
Sep 13, 2025
A security vulnerability has been detected in MiczFlor RPi-Jukebox-RFID up to 2.8.0. Affected by...
Moderate
Unreviewed
CVE-2025-10328
was published
Sep 13, 2025
A weakness has been identified in MiczFlor RPi-Jukebox-RFID up to 2.8.0. Affected by this...
Moderate
Unreviewed
CVE-2025-10327
was published
Sep 12, 2025
A security flaw has been discovered in MiczFlor RPi-Jukebox-RFID up to 2.8.0. Affected is an...
Moderate
Unreviewed
CVE-2025-10326
was published
Sep 12, 2025
CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection'...
Moderate
Unreviewed
CVE-2025-9997
was published
Sep 10, 2025
CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection'...
Moderate
Unreviewed
CVE-2025-9996
was published
Sep 9, 2025
An OS command injection vulnerability exists in PLDT WiFi Router's Prolink PGN6401V Firmware 8.1...
Moderate
Unreviewed
CVE-2025-56498
was published
Sep 9, 2025
An improper neutralization of special elements used in an OS command ('OS Command Injection')...
Moderate
Unreviewed
CVE-2024-45325
was published
Sep 9, 2025
A security vulnerability has been detected in D-Link DIR-852 1.00CN B09. Impacted is the function...
Moderate
Unreviewed
CVE-2025-9752
was published
Sep 4, 2025
A security vulnerability has been detected in LB-LINK BL-X26 1.2.8. This affects an unknown...
Moderate
Unreviewed
CVE-2025-9580
was published
Aug 28, 2025
A weakness has been identified in LB-LINK BL-X26 1.2.8. The impacted element is an unknown...
Moderate
Unreviewed
CVE-2025-9579
was published
Aug 28, 2025
Multiple vulnerabilities in the CLI and web-based management interface of Cisco UCS Manager...
Moderate
Unreviewed
CVE-2025-20294
was published
Aug 27, 2025
A vulnerability in the CLI of Cisco UCS Manager Software could allow an authenticated, local...
Moderate
Unreviewed
CVE-2025-20295
was published
Aug 27, 2025
A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker...
Moderate
Unreviewed
CVE-2025-20292
was published
Aug 27, 2025
The Calamaris log exporter CGI (/cgi-bin/logs.cgi/calamaris.dat) in IPFire 2.29 does not properly...
Moderate
Unreviewed
CVE-2025-50974
was published
Aug 26, 2025
A vulnerability was identified in Ruijie WS7204-A 2017.06.15. Affected by this vulnerability is...
Moderate
Unreviewed
CVE-2025-9424
was published
Aug 26, 2025
ProTip!
Advisories are also available from the
GraphQL API