GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Language support
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
3,958
Erlang
29
GitHub Actions
16
Go
1,745
Maven
4,971
npm
3,507
NuGet
609
pip
3,066
Pub
10
RubyGems
832
Rust
780
Swift
34
Unreviewed advisories
All unreviewed
5,000+
926 advisories
Filter by severity
TPLINK TL-ER5120G 4.0 2.0.0 Build 210817 Rel.80868n has a command injection vulnerability, when...
High
Unreviewed
CVE-2023-43138
was published
Sep 20, 2023
TPLINK TL-ER5120G 4.0 2.0.0 Build 210817 Rel.80868n has a command injection vulnerability, when...
High
Unreviewed
CVE-2023-43137
was published
Sep 20, 2023
The ping_from parameter of ping_tracerte.cgi in the web UI of Telstra Smart Modem Gen 2 (Arcadyan...
High
Unreviewed
CVE-2023-43477
was published
Sep 20, 2023
A command injection vulnerability exists in RTS VLink Virtual Matrix Software Versions v5 (< 5.7...
High
Unreviewed
CVE-2023-34999
was published
Sep 18, 2023
ASUS RT-AX55 v3.0.0.4.386.51598 was discovered to contain an authenticated command injection...
High
Unreviewed
CVE-2023-39780
was published
Sep 11, 2023
An issue in NETIS SYSTEMS WF2409E v.3.6.42541 allows a remote attacker to execute arbitrary code...
High
Unreviewed
CVE-2023-38829
was published
Sep 11, 2023
There is a command injection vulnerability in a mobile internet product of ZTE. Due to...
High
Unreviewed
CVE-2023-25649
was published
Aug 25, 2023
An issue was discovered in Geomatika IsiGeo Web 6.0. It allows remote authenticated users to...
High
Unreviewed
CVE-2023-23564
was published
Aug 22, 2023
Memcached 1.6.0 before 1.6.3 allows remote attackers to cause a denial of service (daemon crash)...
High
Unreviewed
CVE-2020-22570
was published
Aug 22, 2023
An issue in RG-EW series home routers and repeaters v.EW_3.0(1)B11P204, RG-NBS and RG-S1930...
High
Unreviewed
CVE-2023-38902
was published
Aug 17, 2023
Improper neutralization of special elements used in a command ('Command Injection') vulnerability...
High
Unreviewed
CVE-2023-2910
was published
Aug 17, 2023
An issue was discovered in Paessler PRTG Network Monitor 23.2.83.1760. Due to command-line...
High
Unreviewed
CVE-2023-32782
was published
Aug 9, 2023
Netgear WG302v2 v5.2.9 and WAG302v2 v5.1.19 were discovered to contain multiple command injection...
High
Unreviewed
CVE-2023-38921
was published
Aug 7, 2023
An authenticated command injection vulnerability exists in the AOS-CX command line interface....
High
Unreviewed
CVE-2023-3718
was published
Aug 1, 2023
HCL BigFix Mobile is vulnerable to a cross-site scripting attack. An authenticated attacker could...
High
Unreviewed
CVE-2023-28012
was published
Jul 27, 2023
Local user may lead to privilege escalation using Gaia Portal hostnames page.
High
Unreviewed
CVE-2023-28130
was published
Jul 26, 2023
ELECOM wireless LAN routers WRC-1167GHBK-S v1.03 and earlier, and WRC-1167GEBK-S v1.03 and...
High
Unreviewed
CVE-2023-37568
was published
Jul 13, 2023
ELECOM wireless LAN routers WRC-1167GHBK3-A v1.24 and earlier, and WRC-1167FEBK-A v1.18 and...
High
Unreviewed
CVE-2023-37566
was published
Jul 13, 2023
A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.16.0), RUGGEDCOM...
High
Unreviewed
CVE-2023-36755
was published
Jul 11, 2023
A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.16.0), RUGGEDCOM...
High
Unreviewed
CVE-2023-36752
was published
Jul 11, 2023
A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.16.0), RUGGEDCOM...
High
Unreviewed
CVE-2023-36754
was published
Jul 11, 2023
A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.16.0), RUGGEDCOM...
High
Unreviewed
CVE-2023-36751
was published
Jul 11, 2023
A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.16.0), RUGGEDCOM...
High
Unreviewed
CVE-2023-36750
was published
Jul 11, 2023
An administrator is able to execute commands as root via the alerts management dialog
High
Unreviewed
CVE-2021-4406
was published
Jul 10, 2023
Aria Operations for Networks contains an information disclosure vulnerability. A malicious actor...
High
Unreviewed
CVE-2023-20889
was published
Jul 6, 2023
ProTip!
Advisories are also available from the
GraphQL API