GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,333
Erlang
31
GitHub Actions
22
Go
2,095
Maven
5,000+
npm
3,760
NuGet
678
pip
3,446
Pub
12
RubyGems
892
Rust
882
Swift
37
Unreviewed advisories
All unreviewed
5,000+
2,420 advisories
Filter by severity
VMware Aria Operations contains a local privilege escalation vulnerability. A malicious actor...
High
Unreviewed
CVE-2024-38831
was published
Nov 26, 2024
TOTOLINK EX200 v4.0.3c.7646_B20201211 was found to contain a command insertion vulnerability in...
Moderate
Unreviewed
CVE-2024-53333
was published
Nov 26, 2024
A vulnerability was found in EnGenius ENH1350EXT, ENS500-AC and ENS620EXT up to 20241118 and...
Moderate
Unreviewed
CVE-2024-11659
was published
Nov 25, 2024
A vulnerability has been found in EnGenius ENH1350EXT, ENS500-AC and ENS620EXT up to 20241118 and...
Moderate
Unreviewed
CVE-2024-11658
was published
Nov 25, 2024
A vulnerability, which was classified as critical, has been found in EnGenius ENH1350EXT, ENS500...
Moderate
Unreviewed
CVE-2024-11656
was published
Nov 25, 2024
A vulnerability, which was classified as critical, was found in EnGenius ENH1350EXT, ENS500-AC...
Moderate
Unreviewed
CVE-2024-11657
was published
Nov 25, 2024
A vulnerability classified as critical was found in EnGenius ENH1350EXT, ENS500-AC and ENS620EXT...
Moderate
Unreviewed
CVE-2024-11655
was published
Nov 25, 2024
A vulnerability was found in EnGenius ENH1350EXT, ENS500-AC and ENS620EXT up to 20241118. It has...
Moderate
Unreviewed
CVE-2024-11653
was published
Nov 25, 2024
A vulnerability classified as critical has been found in EnGenius ENH1350EXT, ENS500-AC and...
Moderate
Unreviewed
CVE-2024-11654
was published
Nov 25, 2024
Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability...
High
Unreviewed
CVE-2024-11665
was published
Nov 25, 2024
virtualenv allows command injection through activation scripts for a virtual environment
High
CVE-2024-53899
was published
for
virtualenv
(pip)
Nov 24, 2024
An LDAP injection vulnerability in the login page of Gladinet CentreStack v13.12.9934.54690...
Critical
Unreviewed
CVE-2024-37782
was published
Nov 22, 2024
An OS command injection vulnerability has been reported to affect several product versions. If...
Critical
Unreviewed
CVE-2024-48860
was published
Nov 22, 2024
An OS command injection vulnerability has been reported to affect several product versions. If...
High
Unreviewed
CVE-2024-48861
was published
Nov 22, 2024
An OS command injection vulnerability has been reported to affect Notes Station 3. If exploited,...
High
Unreviewed
CVE-2024-38644
was published
Nov 22, 2024
Possible Elevation of Privilege Vulnerability
in iManager has been discovered in
OpenText™...
High
Unreviewed
CVE-2021-38116
was published
Nov 22, 2024
Possible Command Injection
in iManager GET parameter has been discovered in
OpenText™ iManager...
High
Unreviewed
CVE-2023-24467
was published
Nov 22, 2024
D-Link DI-8200 16.07.26A1 is vulnerable to remote command execution in the msp_info_htm function...
Critical
Unreviewed
CVE-2024-51151
was published
Nov 22, 2024
Linksys E3000 1.0.06.002_US is vulnerable to command injection via the diag_ping_start function.
High
Unreviewed
CVE-2024-48286
was published
Nov 21, 2024
An issue in Kasda LinkSmart Router KW5515 v1.7 and before allows an authenticated remote attacker...
Critical
Unreviewed
CVE-2024-33439
was published
Nov 20, 2024
Multiple OS Command Injection vulnerabilities affecting Kasda KW6512 router software version...
Critical
Unreviewed
CVE-2024-29292
was published
Nov 20, 2024
D-LINK DI-8400 v16.07.26A1 was discovered to contain multiple remote command execution (RCE)...
High
Unreviewed
CVE-2024-52739
was published
Nov 20, 2024
Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability...
High
Unreviewed
CVE-2024-45505
was published
Nov 18, 2024
Improper neutralization of special elements used in a command ('Command Injection') vulnerability...
Critical
Unreviewed
CVE-2024-10443
was published
Nov 15, 2024
Connecting to a malicious Codespaces via GH CLI could allow command execution on the user's computer
High
CVE-2024-52308
was published
for
github.com/cli/cli
(Go)
Nov 14, 2024
ProTip!
Advisories are also available from the
GraphQL API