GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,170
Erlang
30
GitHub Actions
19
Go
1,981
Maven
5,000+
npm
3,700
NuGet
656
pip
3,319
Pub
11
RubyGems
882
Rust
834
Swift
35
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
912 advisories
Filter by severity
Tenda W30E v1.0 V1.0.1.25(633) firmware contains a command injection vulnerablility in the...
High
Unreviewed
CVE-2024-32292
was published
Apr 17, 2024
Tenda AC7V1.0 v15.03.06.44 firmware contains a command injection vulnerablility in formexeCommand...
High
Unreviewed
CVE-2024-32281
was published
Apr 17, 2024
Tenda FH1203 V2.0.1.6 firmware has a command injection vulnerablility in formexeCommand function...
High
Unreviewed
CVE-2024-32283
was published
Apr 17, 2024
The Delta Electronics DVW-W02W2-E2 devices expose a web administration interface to users. This...
High
Unreviewed
CVE-2024-3871
was published
Apr 16, 2024
Insecure default configurations in Hikvision Interactive Tablet DS-D5B86RB/B V2.3.0 build220119,...
High
Unreviewed
CVE-2023-33806
was published
Apr 16, 2024
An issue discovered in Telesquare TLR-2005Ksh 1.0.0 and 1.1.4 allows attackers to run arbitrary...
High
Unreviewed
CVE-2024-29269
was published
Apr 10, 2024
Microsoft Defender for IoT Remote Code Execution Vulnerability
High
Unreviewed
CVE-2024-21322
was published
Apr 9, 2024
TOTOLINK EX200 V4.0.3c.7646_B20201211 was discovered to contain a remote code execution (RCE)...
High
Unreviewed
CVE-2024-31811
was published
Apr 8, 2024
A command injection vulnerability exists in /goform/exeCommand in Tenda AC18 v15.03.05.05, which...
High
Unreviewed
CVE-2024-30891
was published
Apr 5, 2024
A vulnerability, which was classified as critical, was found in D-Link DNS-320L, DNS-325, DNS...
High
Unreviewed
CVE-2024-3273
was published
Apr 4, 2024
VMware SD-WAN Edge contains an unauthenticated command injection vulnerability potentially...
High
Unreviewed
CVE-2024-22246
was published
Apr 2, 2024
There is a command injection vulnerability in some Hikvision NVRs. This could allow an...
High
Unreviewed
CVE-2024-29949
was published
Apr 2, 2024
Tenda F1202 v1.2.0.20(408) has a command injection vulnerablility in the formWriteFacMac function...
High
Unreviewed
CVE-2024-30637
was published
Mar 29, 2024
A flaw was found in Cockpit. Deleting a sosreport with a crafted name via the Cockpit web...
High
Unreviewed
CVE-2024-2947
was published
Mar 28, 2024
In Splunk Enterprise versions below 9.2.1, 9.1.4, and 9.0.9, the Dashboard Examples Hub in the...
High
Unreviewed
CVE-2024-29946
was published
Mar 27, 2024
Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability...
High
Unreviewed
CVE-2024-24897
was published
Mar 25, 2024
HGW BL1500HM Ver 002.001.013 and earlier allows a network-adjacent unauthenticated attacker to...
High
Unreviewed
CVE-2024-28041
was published
Mar 25, 2024
A command injection vulnerability exists in the cgibin binary in DIR-845L router firmware <= v1...
High
Unreviewed
CVE-2024-29366
was published
Mar 22, 2024
A vulnerability was found in Ruijie RG-NBS2009G-P up to 20240305. It has been declared as...
High
Unreviewed
CVE-2024-2642
was published
Mar 20, 2024
There is a command injection vulnerability in the TRENDnet TEW-827DRU router with firmware...
High
Unreviewed
CVE-2024-28353
was published
Mar 15, 2024
Vinchin Backup and Recovery 7.2 and Earlier is vulnerable to Authenticated Remote Code Execution ...
High
Unreviewed
CVE-2024-25228
was published
Mar 14, 2024
Outlook for Android Information Disclosure Vulnerability
High
Unreviewed
CVE-2024-26204
was published
Mar 12, 2024
Authenticated command injection vulnerabilities exist in the ArubaOS command line interface....
High
Unreviewed
CVE-2024-25611
was published
Mar 5, 2024
Authenticated command injection vulnerabilities exist in the ArubaOS command line interface....
High
Unreviewed
CVE-2024-1356
was published
Mar 5, 2024
Authenticated command injection vulnerabilities exist in the ArubaOS command line interface....
High
Unreviewed
CVE-2024-25612
was published
Mar 5, 2024
ProTip!
Advisories are also available from the
GraphQL API