GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,373
Erlang
33
GitHub Actions
22
Go
2,135
Maven
5,000+
npm
3,797
NuGet
687
pip
3,478
Pub
12
RubyGems
896
Rust
897
Swift
38
Unreviewed advisories
All unreviewed
5,000+
3,438 advisories
Filter by severity
A vulnerability has been found in BDCOM Behavior Management and Auditing System up to 20250210...
Moderate
Unreviewed
CVE-2025-1546
was published
Feb 21, 2025
TOTOLink outdoor CPE CP900 V6.3c.566_B20171026 is discovered to contain a command injection...
Critical
Unreviewed
CVE-2022-28495
was published
Mar 24, 2023
An OS command injection vulnerability exists in Vinci Protocol Analyzer that could allow an...
Critical
Unreviewed
CVE-2025-1265
was published
Feb 20, 2025
Improper neutralization of special elements used in an OS command ('OS Command Injection') issue...
High
Unreviewed
CVE-2025-26856
was published
Feb 20, 2025
An OS command injection vulnerability was discovered in D-Link DSL-3782 v1.01 via the public_type...
High
Unreviewed
CVE-2025-25895
was published
Feb 19, 2025
An OS command injection vulnerability was discovered in D-Link DSL-3782 v1.01 via the samba_wg...
High
Unreviewed
CVE-2025-25894
was published
Feb 19, 2025
An OS command injection vulnerability was discovered in D-Link DSL-3782 v1.01 via the inIP,...
High
Unreviewed
CVE-2025-25893
was published
Feb 19, 2025
Improper Input Validation vulnerability in Progress LoadMaster allows OS Command Injection.This...
Critical
Unreviewed
CVE-2024-7591
was published
Sep 5, 2024
Improper neutralization of special elements used in an OS command ('OS Command Injection') issue...
Critical
Unreviewed
CVE-2021-46686
was published
Feb 18, 2025
IBM DevOps Deploy 8.0 through 8.0.1.4, 8.1 through 8.1.0.0 / IBM UrbanCode Deploy 7.0 through 7.0...
High
Unreviewed
CVE-2024-55904
was published
Feb 14, 2025
mySCADA myPRO Manager
is vulnerable to an OS command injection which could allow a remote...
Critical
Unreviewed
CVE-2025-25067
was published
Feb 14, 2025
Command injection in OpenTSDB
Critical
CVE-2023-25826
was published
for
net.opentsdb:opentsdb
(Maven)
May 3, 2023
An OS command injection vulnerability has been reported to affect several QNAP operating system...
Moderate
Unreviewed
CVE-2023-50358
was published
Feb 13, 2024
A vulnerability in the fosexec command of Brocade Fabric OS after Brocade Fabric OS v9.1.0 and,...
High
Unreviewed
CVE-2023-31425
was published
Aug 1, 2023
This vulnerability exists in ESDS Emagic Data Center Management Suit due to lack of input...
High
Unreviewed
CVE-2023-37569
was published
Aug 8, 2023
Advantech EKI-1524, EKI-1522, EKI-1521 devices through 1.21 are affected by an command injection...
High
Unreviewed
CVE-2023-2574
was published
May 8, 2023
Advantech EKI-1524, EKI-1522, EKI-1521 devices through 1.21 are affected by an command injection...
High
Unreviewed
CVE-2023-2573
was published
May 8, 2023
A command injection vulnerability in the Palo Alto Networks PAN-OS OpenConfig plugin enables an...
High
Unreviewed
CVE-2025-0110
was published
Feb 12, 2025
A flaw was found in the Emacs text editor. Improper handling of custom "man" URI schemes allows...
High
Unreviewed
CVE-2025-1244
was published
Feb 12, 2025
A command injection vulnerability exists in the IOCTL that manages OTA updates. A specially...
High
Unreviewed
CVE-2023-6321
was published
May 15, 2024
An improper neutralization of special elements used in an OS command ('OS Command Injection')...
High
Unreviewed
CVE-2024-40584
was published
Feb 11, 2025
An improper neutralization of special elements used in an os command ('os command injection') in...
High
Unreviewed
CVE-2024-50567
was published
Feb 11, 2025
OS command injection in the admin web console of Ivanti CSA before version 5.0.5 allows a remote...
Critical
Unreviewed
CVE-2024-47908
was published
Feb 11, 2025
A improper neutralization of special elements used in an os command ('os command injection') in...
Moderate
Unreviewed
CVE-2024-50569
was published
Feb 11, 2025
On Windows platforms, a "best fit" character encoding conversion of command line arguments to...
High
Unreviewed
CVE-2024-45720
was published
Oct 9, 2024
ProTip!
Advisories are also available from the
GraphQL API