GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Malware advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
116
GitHub Actions
55
Go
4,683
Maven
5,000+
npm
5,000+
NuGet
1,104
pip
5,000+
Pub
13
RubyGems
1,150
Rust
1,543
Swift
62
Unreviewed advisories
All unreviewed
5,000+
Malware advisories
All malware
5,000+
Composer
2
Go
18
Maven
2
npm
5,000+
NuGet
264
pip
5,000+
RubyGems
3,510
Rust
19
1,610 advisories
Filter by severity
A vulnerability was determined in D-Link DNS-320 ShareCenter 2.06B01. This affects an unknown...
High
Unreviewed
CVE-2026-85224
was published
Sep 4, 2026
A vulnerability was found in D-Link DNS-340L 1.01B04. Affected by this issue is some unknown...
High
Unreviewed
CVE-2026-85223
was published
Sep 4, 2026
A vulnerability has been found in D-Link DNS-340L 1.01B04. Affected by this vulnerability is an...
High
Unreviewed
CVE-2026-85222
was published
Sep 3, 2026
An authenticated user with low-privileged access could submit crafted input through the web-based...
High
Unreviewed
CVE-2026-73751
was published
Sep 1, 2026
A vulnerability in the API of HPE Networking Fabric Composer could allow an unauthenticated...
High
Unreviewed
CVE-2026-73712
was published
Sep 1, 2026
A command injection vulnerability exists in the web-based management interface of HPE Networking...
High
Unreviewed
CVE-2026-73717
was published
Sep 1, 2026
Command injection vulnerabilities in the web-based management interface of HPE Networking Fabric...
High
Unreviewed
CVE-2026-73722
was published
Sep 1, 2026
A vulnerability exists in a management component that could allow an unauthenticated adjacent...
High
Unreviewed
CVE-2026-73763
was published
Sep 1, 2026
Command injection vulnerabilities in the API endpoint of AOS-CX could allow an authenticated...
High
Unreviewed
CVE-2026-73766
was published
Sep 1, 2026
A command sanitization bypass exists in the API of HPE Networking Fabric Composer. Successful...
High
Unreviewed
CVE-2026-73704
was published
Sep 1, 2026
A vulnerability in the underlying operating system of HPE Networking Fabric Composer could allow...
High
Unreviewed
CVE-2026-73709
was published
Sep 1, 2026
An issue was discovered in LibreNMS 1.65. A remote authenticated attacker with normal privileges...
High
Unreviewed
CVE-2020-15874
was published
Aug 26, 2026
Dell PowerStore contains a Command Injection vulnerability. An authenticated user with limited...
High
Unreviewed
CVE-2026-79682
was published
Sep 1, 2026
The FS-Poster plugin for WordPress is vulnerable to Remote Code Execution in versions up to and...
High
Unreviewed
CVE-2026-10195
was published
Sep 1, 2026
LibreNMS versions before 26.5.0 contain a remote code execution vulnerability in the...
High
Unreviewed
CVE-2026-84190
was published
Sep 1, 2026
A vulnerability was found in D-Link DNS-340L and DNS-345 up to 20260717. This affects an unknown...
High
Unreviewed
CVE-2026-82692
was published
Aug 31, 2026
A vulnerability was detected in D-Link DNS-320L, DNS-327L, DNS-340L and DNS-345 up to 20260717....
High
Unreviewed
CVE-2026-82689
was published
Aug 31, 2026
A flaw has been found in D-Link DNS-327L and DNS-340L up to 20260717. Affected by this...
High
Unreviewed
CVE-2026-82690
was published
Aug 31, 2026
A vulnerability has been found in D-Link DNS-320L, DNS-327L, DNS-340L and DNS-345 up to 20260717....
High
Unreviewed
CVE-2026-82691
was published
Aug 31, 2026
A security vulnerability has been detected in D-Link DNS-340L and DNS-345 1.01B04/1.03B06/1.04...
High
Unreviewed
CVE-2026-82688
was published
Aug 31, 2026
A command injection vulnerability in the 'advanced/curl' component of Osbil Technology oPanel v1...
High
Unreviewed
CVE-2026-50979
was published
Aug 28, 2026
D-Link DI-7001 MINI_5G 19.10.31A1 contains a code execution vulnerability in the flag parameter...
High
Unreviewed
CVE-2025-26237
was published
Aug 24, 2026
Deno has an incomplete fix for command-injection prevention on Windows — case-insensitive extension bypass
High
CVE-2026-22864
was published
for
deno
(Rust)
Jan 16, 2026
NVIDIA UFM Enterprise contains a vulnerability in the plugin management API, where an...
High
Unreviewed
CVE-2026-24169
was published
Aug 25, 2026
Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability...
High
Unreviewed
CVE-2026-61400
was published
Aug 21, 2026
ProTip!
Advisories are also available from the
GraphQL API