GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Language support
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,077
Erlang
29
GitHub Actions
19
Go
1,903
Maven
5,000+
npm
3,632
NuGet
638
pip
3,247
Pub
10
RubyGems
864
Rust
818
Swift
35
Unreviewed advisories
All unreviewed
5,000+
338 advisories
Filter by severity
baserCMS OS command injection vulnerability in Installer
Moderate
CVE-2023-51450
was published
for
baserproject/basercms
(Composer)
Feb 22, 2024
OS command injection vulnerability in ELECOM wireless LAN routers allows a network-adjacent...
Moderate
Unreviewed
CVE-2024-25579
was published
Feb 29, 2024
A vulnerability in the VirusEvent feature of ClamAV could allow a local attacker to inject...
Moderate
Unreviewed
CVE-2024-20328
was published
Mar 1, 2024
A vulnerability in the web-based management interface of Cisco Small Business 100, 300, and 500...
Moderate
Unreviewed
CVE-2024-20335
was published
Mar 6, 2024
An OS command injection vulnerability has been reported to affect several QNAP operating system...
Moderate
Unreviewed
CVE-2023-34980
was published
Mar 8, 2024
Fluid vulnerable to OS Command Injection for Fluid Users with JuicefsRuntime
Moderate
CVE-2023-51699
was published
for
github.com/fluid-cloudnative/fluid
(Go)
Mar 15, 2024
A vulnerability has been found in Tenda AC10U 15.03.06.49 and classified as critical. This...
Moderate
Unreviewed
CVE-2024-2707
was published
Mar 20, 2024
A vulnerability was found in Tenda AC15 15.03.05.18/15.03.20_multi. It has been classified as...
Moderate
Unreviewed
CVE-2024-2812
was published
Mar 22, 2024
A vulnerability was found in Tenda AC15 15.03.05.18/15.03.20_multi. It has been classified as...
Moderate
Unreviewed
CVE-2024-2851
was published
Mar 24, 2024
A vulnerability classified as critical has been found in Tenda AC18 15.03.05.05. Affected is the...
Moderate
Unreviewed
CVE-2024-2854
was published
Mar 24, 2024
A vulnerability was found in Tenda AC10U 15.03.06.48/15.03.06.49. It has been rated as critical....
Moderate
Unreviewed
CVE-2024-2853
was published
Mar 24, 2024
A vulnerability classified as critical has been found in Tenda AC7 15.03.06.44. Affected is the...
Moderate
Unreviewed
CVE-2024-2897
was published
Mar 26, 2024
A vulnerability, which was classified as critical, has been found in Ruijie RG-EG350 up to...
Moderate
Unreviewed
CVE-2024-2910
was published
Mar 26, 2024
TP-Link Omada ER605 Access Control Command Injection Remote Code Execution Vulnerability. This...
Moderate
Unreviewed
CVE-2024-1180
was published
Apr 3, 2024
A vulnerability was found in Byzro Smart S80 up to 20240328. It has been declared as critical....
Moderate
Unreviewed
CVE-2024-3346
was published
Apr 5, 2024
An improper neutralization of special elements used in an os command ('os command injection') in...
Moderate
Unreviewed
CVE-2023-47540
was published
Apr 9, 2024
Operating system command injection vulnerability in Planet IGS-4215-16T2S, affecting firmware...
Moderate
Unreviewed
CVE-2024-2742
was published
Apr 11, 2024
A vulnerability was found in TBK DVR-4104 and DVR-4216 up to 20240412 and classified as critical....
Moderate
Unreviewed
CVE-2024-3721
was published
Apr 13, 2024
A vulnerability classified as critical was found in cym1102 nginxWebUI up to 3.9.9. This...
Moderate
Unreviewed
CVE-2024-3739
was published
Apr 13, 2024
OS command injection vulnerability in BUFFALO wireless LAN routers allows a logged-in user to...
Moderate
Unreviewed
CVE-2024-26023
was published
Apr 15, 2024
A vulnerability has been found in Tenda W30E 1.0.1.25(633) and classified as critical. This...
Moderate
Unreviewed
CVE-2024-3880
was published
Apr 16, 2024
Renovate vulnerable to arbitrary command injection via helmv3 manager and registryAliases
Moderate
GHSA-rqgv-292v-5qgr
was published
for
renovate
(npm)
Apr 23, 2024
A vulnerability in the Cisco Adaptive Security Appliance (ASA) restore functionality that is...
Moderate
Unreviewed
CVE-2024-20358
was published
Apr 24, 2024
A vulnerability, which was classified as critical, has been found in Ruijie RG-UAC up to 20240419...
Moderate
Unreviewed
CVE-2024-4255
was published
Apr 27, 2024
A vulnerability was found in MailCleaner up to 2023.03.14. It has been declared as critical. This...
Moderate
Unreviewed
CVE-2024-3196
was published
Apr 29, 2024
ProTip!
Advisories are also available from the
GraphQL API