GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,871
Erlang
37
GitHub Actions
36
Go
2,517
Maven
5,000+
npm
4,150
NuGet
736
pip
3,952
Pub
12
RubyGems
946
Rust
1,026
Swift
39
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
23,501 advisories
Filter by severity
Several stack-based buffer overflow vulnerabilities exist in the DetranCLI command parsing...
Critical
Unreviewed
CVE-2022-40993
was published
Jan 27, 2023
Several stack-based buffer overflow vulnerabilities exist in the DetranCLI command parsing...
Critical
Unreviewed
CVE-2022-40990
was published
Jan 27, 2023
Several stack-based buffer overflow vulnerabilities exist in the DetranCLI command parsing...
Critical
Unreviewed
CVE-2022-40992
was published
Jan 27, 2023
An OS command injection vulnerability exists in the m2m DELETE_FILE cmd functionality of Siretta...
Critical
Unreviewed
CVE-2022-40222
was published
Jan 27, 2023
Several stack-based buffer overflow vulnerabilities exist in the DetranCLI command parsing...
Critical
Unreviewed
CVE-2022-40988
was published
Jan 27, 2023
Several stack-based buffer overflow vulnerabilities exist in the DetranCLI command parsing...
Critical
Unreviewed
CVE-2022-40994
was published
Jan 27, 2023
Several stack-based buffer overflow vulnerabilities exist in the DetranCLI command parsing...
Critical
Unreviewed
CVE-2022-40991
was published
Jan 27, 2023
Several stack-based buffer overflow vulnerabilities exist in the DetranCLI command parsing...
Critical
Unreviewed
CVE-2022-40995
was published
Jan 27, 2023
Several stack-based buffer overflow vulnerabilities exist in the DetranCLI command parsing...
Critical
Unreviewed
CVE-2022-40989
was published
Jan 27, 2023
Several OS command injection vulnerabilities exist in the m2m binary of Siretta QUARTZ-GOLD G5.0...
Critical
Unreviewed
CVE-2022-42492
was published
Jan 27, 2023
Several OS command injection vulnerabilities exist in the m2m binary of Siretta QUARTZ-GOLD G5.0...
Critical
Unreviewed
CVE-2022-42491
was published
Jan 27, 2023
Several OS command injection vulnerabilities exist in the m2m binary of Siretta QUARTZ-GOLD G5.0...
Critical
Unreviewed
CVE-2022-42490
was published
Jan 27, 2023
Several stack-based buffer overflow vulnerabilities exist in the DetranCLI command parsing...
Critical
Unreviewed
CVE-2022-41030
was published
Jan 27, 2023
Several OS command injection vulnerabilities exist in the m2m binary of Siretta QUARTZ-GOLD G5.0...
Critical
Unreviewed
CVE-2022-42493
was published
Jan 27, 2023
Several stack-based buffer overflow vulnerabilities exist in the DetranCLI command parsing...
Critical
Unreviewed
CVE-2022-41016
was published
Jan 27, 2023
Several stack-based buffer overflow vulnerabilities exist in the DetranCLI command parsing...
Critical
Unreviewed
CVE-2022-41017
was published
Jan 27, 2023
Several stack-based buffer overflow vulnerabilities exist in the DetranCLI command parsing...
Critical
Unreviewed
CVE-2022-41019
was published
Jan 27, 2023
A heap-based buffer overflow vulnerability exists in the m2m DELETE_FILE cmd functionality of...
Critical
Unreviewed
CVE-2022-41991
was published
Jan 27, 2023
Revenue Collection System v1.0 was discovered to contain a SQL injection vulnerability at step1.php.
Critical
Unreviewed
CVE-2022-46966
was published
Jan 27, 2023
An access control issue in Revenue Collection System v1.0 allows unauthenticated attackers to...
Critical
Unreviewed
CVE-2022-46967
was published
Jan 27, 2023
Directory traversal vulnerability in ChinaMobile PLC Wireless Router model GPN2.4P21-C-CN running...
Critical
Unreviewed
CVE-2020-18331
was published
Jan 26, 2023
An issue was discovered in the default configuration of ChinaMobile PLC Wireless Router model...
Critical
Unreviewed
CVE-2020-18330
was published
Jan 26, 2023
A vulnerability in the FTP service of Western Digital My Cloud OS 5 devices running firmware...
Critical
Unreviewed
CVE-2022-29844
was published
Jan 26, 2023
A command injection vulnerability in the DDNS service configuration of Western Digital My Cloud...
Critical
Unreviewed
CVE-2022-29843
was published
Jan 26, 2023
The vRealize Log Insight contains a Directory Traversal Vulnerability. An unauthenticated,...
Critical
Unreviewed
CVE-2022-31706
was published
Jan 26, 2023
ProTip!
Advisories are also available from the
GraphQL API