GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Language support
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
3,844
Erlang
29
GitHub Actions
16
Go
1,715
Maven
4,950
npm
3,480
NuGet
605
pip
3,024
Pub
10
RubyGems
832
Rust
776
Swift
34
Unreviewed advisories
All unreviewed
5,000+
278 advisories
Filter by severity
An OS command injection vulnerability has been reported to affect several QNAP operating system...
Moderate
Unreviewed
CVE-2023-34980
was published
Mar 8, 2024
A vulnerability in the web-based management interface of Cisco Small Business 100, 300, and 500...
Moderate
Unreviewed
CVE-2024-20335
was published
Mar 6, 2024
A vulnerability in the VirusEvent feature of ClamAV could allow a local attacker to inject...
Moderate
Unreviewed
CVE-2024-20328
was published
Mar 1, 2024
baserCMS OS command injection vulnerability in Installer
Moderate
CVE-2023-51450
was published
for
baserproject/basercms
(Composer)
Feb 22, 2024
BIG-IP or BIG-IQ Resource Administrators and Certificate Managers who have access to the secure...
Moderate
Unreviewed
CVE-2024-21782
was published
Feb 14, 2024
An OS command injection vulnerability has been reported to affect several QNAP operating system...
Moderate
Unreviewed
CVE-2023-50358
was published
Feb 13, 2024
An OS command injection vulnerability has been reported to affect several QNAP operating system...
Moderate
Unreviewed
CVE-2023-47566
was published
Feb 2, 2024
An OS command injection vulnerability has been reported to affect several QNAP operating system...
Moderate
Unreviewed
CVE-2023-47567
was published
Feb 2, 2024
An OS command injection vulnerability has been reported to affect several QNAP operating system...
Moderate
Unreviewed
CVE-2023-41282
was published
Feb 2, 2024
An OS command injection vulnerability has been reported to affect several QNAP operating system...
Moderate
Unreviewed
CVE-2023-41281
was published
Feb 2, 2024
An OS command injection vulnerability has been reported to affect several QNAP operating system...
Moderate
Unreviewed
CVE-2023-39302
was published
Feb 2, 2024
A vulnerability was found in Issabel PBX 4.0.0. It has been rated as critical. This issue affects...
Moderate
Unreviewed
CVE-2024-0986
was published
Jan 29, 2024
A vulnerability has been found in D-Link DIR-816 A2 1.10CNB04 and classified as critical....
Moderate
Unreviewed
CVE-2024-0921
was published
Jan 26, 2024
A vulnerability was found in TRENDnet TEW-800MB 1.0.1.0 and classified as critical. Affected by...
Moderate
Unreviewed
CVE-2024-0918
was published
Jan 26, 2024
OS command injection vulnerability in ELECOM wireless LAN routers allows a network-adjacent...
Moderate
Unreviewed
CVE-2024-22372
was published
Jan 24, 2024
Active debug code exists in Yamaha wireless LAN access point devices. If a logged-in user who...
Moderate
Unreviewed
CVE-2024-22366
was published
Jan 24, 2024
A vulnerability was found in MiczFlor RPi-Jukebox-RFID up to 2.5.0. It has been rated as critical...
Moderate
Unreviewed
CVE-2024-0714
was published
Jan 19, 2024
A vulnerability in the web-based management interface of Cisco ThousandEyes Enterprise Agent,...
Moderate
Unreviewed
CVE-2024-20277
was published
Jan 17, 2024
A vulnerability classified as critical was found in Totolink LR1200GB 9.1.0u.6619_B20230130....
Moderate
Unreviewed
CVE-2024-0293
was published
Jan 8, 2024
A vulnerability classified as critical has been found in Totolink LR1200GB 9.1.0u.6619_B20230130....
Moderate
Unreviewed
CVE-2024-0292
was published
Jan 8, 2024
An OS command injection vulnerability has been reported to affect QcalAgent. If exploited, the...
Moderate
Unreviewed
CVE-2023-41289
was published
Jan 5, 2024
An OS command injection vulnerability has been reported to affect several QNAP operating system...
Moderate
Unreviewed
CVE-2023-39294
was published
Jan 5, 2024
A vulnerability, which was classified as critical, has been found in WeiYe-Jing datax-web 2.1.2....
Moderate
Unreviewed
CVE-2023-7116
was published
Dec 27, 2023
VR-S1000 firmware Ver. 2.37 and earlier allows an attacker with access to the product's web...
Moderate
Unreviewed
CVE-2023-45741
was published
Dec 26, 2023
A vulnerability classified as critical has been found in KylinSoft kylin-system-updater up to 2.0...
Moderate
Unreviewed
CVE-2023-7093
was published
Dec 25, 2023
ProTip!
Advisories are also available from the
GraphQL API