GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Malware advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
114
GitHub Actions
55
Go
4,608
Maven
5,000+
npm
5,000+
NuGet
1,103
pip
5,000+
Pub
13
RubyGems
1,146
Rust
1,528
Swift
62
Unreviewed advisories
All unreviewed
5,000+
Malware advisories
All malware
5,000+
Composer
2
Go
18
Maven
2
npm
5,000+
NuGet
264
pip
5,000+
RubyGems
3,510
Rust
19
1,590 advisories
Filter by severity
A command injection vulnerability in the 'advanced/curl' component of Osbil Technology oPanel v1...
High
Unreviewed
CVE-2026-50979
was published
Aug 28, 2026
NVIDIA UFM Enterprise contains a vulnerability in the plugin management API, where an...
High
Unreviewed
CVE-2026-24169
was published
Aug 25, 2026
D-Link DI-7001 MINI_5G 19.10.31A1 contains a code execution vulnerability in the flag parameter...
High
Unreviewed
CVE-2025-26237
was published
Aug 24, 2026
Command Injection in BOSH CLI tool on windows in Cloud Foundry allows a remote attacker to...
High
Unreviewed
CVE-2026-47827
was published
Aug 21, 2026
Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability...
High
Unreviewed
CVE-2026-61400
was published
Aug 21, 2026
In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, an unauthenticated user...
High
Unreviewed
CVE-2026-76321
was published
Aug 20, 2026
Renovate versions from 39.53.0 before 40.33.0 contain a command injection vulnerability in the...
High
Unreviewed
CVE-2026-76233
was published
Aug 19, 2026
Renovate versions from 31.51.0 before 40.33.0 contain a command injection vulnerability in the...
High
Unreviewed
CVE-2026-76232
was published
Aug 19, 2026
Renovate versions from 32.135.0 before 40.33.0 contain a command injection vulnerability in the...
High
Unreviewed
CVE-2026-76231
was published
Aug 19, 2026
Renovate versions from 39.218.0 before 40.33.0 contain an arbitrary command injection...
High
Unreviewed
CVE-2026-76229
was published
Aug 19, 2026
Renovate versions from 35.63.0 before 40.33.0 contain a command injection vulnerability in the...
High
Unreviewed
CVE-2026-76230
was published
Aug 19, 2026
LibreNMS Vulnerable to Remote Code Execution by Signal Alert Transportation module
High
CVE-2026-55182
was published
for
librenms/librenms
(Composer)
Aug 18, 2026
Improper neutralization of special elements used in a command ('command injection') in Microsoft...
High
Unreviewed
CVE-2026-24301
was published
Aug 18, 2026
A flaw has been found in COMFAST CF-N1-S 2.6.0.1. This impacts the function sub_44B438 of the...
High
Unreviewed
CVE-2026-75094
was published
Aug 18, 2026
In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, mail search and LITERAL+ byte-count...
High
Unreviewed
CVE-2026-75002
was published
Aug 17, 2026
Improper neutralization of special elements used in a command ('command injection') in Microsoft...
High
Unreviewed
CVE-2026-50523
was published
Aug 14, 2026
A vulnerability was identified in Baicells EG3661M BaiCE_BQ6_2.0.5.3_NA. This impacts an unknown...
High
Unreviewed
CVE-2026-19771
was published
Aug 14, 2026
Improper neutralization of special elements used in a command ('command injection') in Microsoft...
High
Unreviewed
CVE-2026-68792
was published
Aug 11, 2026
Improper neutralization of special elements used in a command ('command injection') in Microsoft...
High
Unreviewed
CVE-2026-65656
was published
Aug 11, 2026
Improper neutralization of special elements used in a command ('command injection') in Windows...
High
Unreviewed
CVE-2026-49179
was published
Aug 11, 2026
Improper neutralization of special elements used in a command ('command injection') in Azure...
High
Unreviewed
CVE-2026-47299
was published
Aug 11, 2026
A security flaw has been discovered in Shibby Tomato 1.28.0000. This affects the function...
High
Unreviewed
CVE-2026-19036
was published
Aug 6, 2026
A vulnerability was identified in Shibby Tomato 1.28.0000. Affected by this issue is the function...
High
Unreviewed
CVE-2026-19035
was published
Aug 6, 2026
A vulnerability was determined in Shibby Tomato 1.28.0000. Affected by this vulnerability is the...
High
Unreviewed
CVE-2026-19034
was published
Aug 6, 2026
The Backup Migration plugin for WordPress is vulnerable to OS Command Injection in all versions...
High
Unreviewed
CVE-2026-7693
was published
Aug 5, 2026
ProTip!
Advisories are also available from the
GraphQL API