GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,871
Erlang
37
GitHub Actions
36
Go
2,517
Maven
5,000+
npm
4,150
NuGet
736
pip
3,952
Pub
12
RubyGems
946
Rust
1,026
Swift
39
Unreviewed advisories
All unreviewed
5,000+
2,900 advisories
Filter by severity
'.../...//' in Microsoft Office Outlook allows an authorized attacker to execute code locally.
High
Unreviewed
CVE-2025-47176
was published
Jun 10, 2025
Due to insufficient escaping of the ampersand character in the “Copy as cURL” feature, an...
Moderate
Unreviewed
CVE-2025-5265
was published
May 27, 2025
Memory safety bugs present in Firefox 138, Thunderbird 138, Firefox ESR 128.10, and Thunderbird...
Moderate
Unreviewed
CVE-2025-5268
was published
May 27, 2025
Due to insufficient escaping of the newline character in the “Copy as cURL” feature, an attacker...
Moderate
Unreviewed
CVE-2025-5264
was published
May 27, 2025
The Newsletters WordPress plugin before 4.9.3 does not properly escape user-controlled parameters...
High
Unreviewed
CVE-2023-4797
was published
Jan 16, 2024
VinChin Backup & Recovery v5.0.*, v6.0.*, v6.7.*, and v7.0.* was discovered to contain a command...
Critical
Unreviewed
CVE-2023-45498
was published
Oct 27, 2023
Qualitor through 8.20 allows remote attackers to execute arbitrary code via PHP code in the html...
Critical
Unreviewed
CVE-2023-47253
was published
Nov 6, 2023
A vulnerability was found in Linksys FGW3000-AH and FGW3000-HK up to 1.0.17.000000 and classified...
Moderate
Unreviewed
CVE-2025-4999
was published
May 20, 2025
A vulnerability was found in Linksys FGW3000-AH and FGW3000-HK up to 1.0.17.000000. It has been...
Moderate
Unreviewed
CVE-2025-5000
was published
May 20, 2025
A command injection vulnerability in Palo Alto Networks PAN-OS® enables an authenticated...
High
Unreviewed
CVE-2025-4231
was published
Jun 13, 2025
Improper neutralization of special elements used in a command ('command injection') in Visual...
High
Unreviewed
CVE-2025-47959
was published
Jun 13, 2025
Blink routers BL-WR9000 V2.4.9 , BL-AC2100_AZ3 V1.0.4, BL-X10_AC8 v1.0.5 , BL-LTE300 v1.2.3, BL...
Critical
Unreviewed
CVE-2025-45988
was published
Jun 13, 2025
Blink routers BL-WR9000 V2.4.9 , BL-AC2100_AZ3 V1.0.4, BL-X10_AC8 v1.0.5 , BL-LTE300 v1.2.3, BL...
Critical
Unreviewed
CVE-2025-45987
was published
Jun 13, 2025
Blink routers BL-WR9000 V2.4.9 , BL-AC2100_AZ3 V1.0.4, BL-X10_AC8 v1.0.5 , BL-LTE300 v1.2.3, BL...
Critical
Unreviewed
CVE-2025-45986
was published
Jun 13, 2025
Blink routers BL-WR9000 V2.4.9 , BL-AC2100_AZ3 V1.0.4, BL-X10_AC8 v1.0.5 , BL-LTE300 v1.2.3, BL...
Critical
Unreviewed
CVE-2025-45985
was published
Jun 13, 2025
Blink routers BL-WR9000 V2.4.9, BL-AC1900 V1.0.2, BL-AC2100_AZ3 V1.0.4, BL-X10_AC8 V1.0.5, BL...
Critical
Unreviewed
CVE-2025-45984
was published
Jun 13, 2025
Salt's on demand pillar functionality vulnerable to arbitrary command injections
Moderate
CVE-2025-22237
was published
for
salt
(pip)
Jun 13, 2025
A vulnerability, which was classified as critical, has been found in Wifi-soft UniBox Controller...
High
Unreviewed
CVE-2025-6103
was published
Jun 16, 2025
A vulnerability classified as critical was found in Wifi-soft UniBox Controller up to 20250506....
High
Unreviewed
CVE-2025-6102
was published
Jun 16, 2025
A vulnerability, which was classified as critical, was found in Wifi-soft UniBox Controller up to...
High
Unreviewed
CVE-2025-6104
was published
Jun 16, 2025
A vulnerability classified as critical was found in FLIR AX8 up to 1.46.16. This vulnerability...
High
Unreviewed
CVE-2025-5126
was published
May 24, 2025
Command injection in the administration interface in APSystems ECU-R version 5203 allows a remote...
Critical
Unreviewed
CVE-2022-45699
was published
Feb 10, 2023
TOTOlink A3700R v9.1.2u.5822_B20200513 was discovered to contain a remote command execution (RCE)...
Critical
Unreviewed
CVE-2023-52027
was published
Jan 11, 2024
A vulnerability classified as critical has been found in FLIR AX8 up to 1.46.16. This affects the...
Moderate
Unreviewed
CVE-2025-5695
was published
Jun 5, 2025
H3C GR3200 MiniGR1B0V100R014 was discovered to contain a command injection vulnerability via the...
High
Unreviewed
CVE-2022-36509
was published
Aug 26, 2022
ProTip!
Advisories are also available from the
GraphQL API