GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,688
Erlang
34
GitHub Actions
26
Go
2,274
Maven
5,000+
npm
3,929
NuGet
706
pip
3,696
Pub
12
RubyGems
919
Rust
951
Swift
38
Unreviewed advisories
All unreviewed
5,000+
2,630 advisories
Filter by severity
When running in Appliance mode, a command injection vulnerability exists in an undisclosed...
High
Unreviewed
CVE-2025-31644
was published
May 8, 2025
HTML injection vulnerability in lemeconsultoria HCM galera.app v.4.58.0 allows an attacker to...
Moderate
Unreviewed
CVE-2025-29154
was published
May 7, 2025
Dell Storage Center - Dell Storage Manager, version(s) 20.1.20, contain(s) an Improper...
Moderate
Unreviewed
CVE-2025-22476
was published
May 6, 2025
An issue in the component /internals/functions of R-fx Networks Linux Malware Detect v1.6.5...
Moderate
Unreviewed
CVE-2025-26262
was published
May 6, 2025
Linksys E5600 v1.1.0.26 was discovered to contain a command injection vulnerability in the...
Moderate
Unreviewed
CVE-2025-45490
was published
May 6, 2025
Netgear EX8000 V1.0.0.126 is vulnerable to Command Injection via the Iface parameter in the...
Moderate
Unreviewed
CVE-2025-45492
was published
May 6, 2025
Linksys E5600 v1.1.0.26 was discovered to contain a command injection vulnerability in the...
Moderate
Unreviewed
CVE-2025-45487
was published
May 6, 2025
Linksys E5600 v1.1.0.26 was discovered to contain a command injection vulnerability in the...
Moderate
Unreviewed
CVE-2025-45488
was published
May 6, 2025
Linksys E5600 v1.1.0.26 was discovered to contain a command injection vulnerability in the...
Moderate
Unreviewed
CVE-2025-45489
was published
May 6, 2025
goshs route not protected, allows command execution
Critical
CVE-2025-46816
was published
for
github.com/patrickhener/goshs
(Go)
May 6, 2025
Terraform WinDNS Provider improperly sanitizes input variables in `windns_record`
Low
CVE-2025-46735
was published
for
github.com/nrkno/terraform-provider-windns
(Go)
May 6, 2025
NETGEAR RAX5 (AX1600 WiFi Router) V1.0.2.26 was discovered to contain a command injection...
Moderate
Unreviewed
CVE-2024-57229
was published
May 5, 2025
NETGEAR RAX5 (AX1600 WiFi Router) V1.0.2.26 was discovered to contain a command injection...
Moderate
Unreviewed
CVE-2024-57231
was published
May 5, 2025
NETGEAR RAX5 (AX1600 WiFi Router) V1.0.2.26 was discovered to contain a command injection...
Moderate
Unreviewed
CVE-2024-57234
was published
May 5, 2025
NETGEAR RAX5 (AX1600 WiFi Router) v1.0.2.26 was discovered to contain a command injection...
Moderate
Unreviewed
CVE-2024-57233
was published
May 5, 2025
NETGEAR RAX5 (AX1600 WiFi Router) V1.0.2.26 was discovered to contain a command injection...
Moderate
Unreviewed
CVE-2024-57235
was published
May 5, 2025
An issue in the /usr/local/bin/jncs.sh script of Gefen WebFWC (In AV over IP products) v1.85h, v1...
Moderate
Unreviewed
CVE-2025-25504
was published
May 5, 2025
NETGEAR RAX5 (AX1600 WiFi Router) V1.0.2.26 was discovered to contain a command injection...
Moderate
Unreviewed
CVE-2024-57230
was published
May 5, 2025
NETGEAR RAX5 (AX1600 WiFi Router) V1.0.2.26 was discovered to contain a command injection...
Moderate
Unreviewed
CVE-2024-57232
was published
May 5, 2025
Tenda AC9 v15.03.05.14 was discovered to contain a command injection vulnerability via the Telnet...
Critical
Unreviewed
CVE-2025-45042
was published
May 5, 2025
Wavlink WL-WN530H4 20220801 was found to contain a command injection vulnerability in the...
Critical
Unreviewed
CVE-2025-44868
was published
May 2, 2025
Tenda AC9 V15.03.06.42_multi was found to contain a command injection vulnerability in the...
Critical
Unreviewed
CVE-2025-44877
was published
May 2, 2025
Tenda AC9 V15.03.06.42_multi was found to contain a command injection vulnerability in the...
Critical
Unreviewed
CVE-2025-44872
was published
May 2, 2025
Tenda W20E V15.11.0.6 was found to contain a command injection vulnerability in the...
Moderate
Unreviewed
CVE-2025-44865
was published
May 2, 2025
Tenda W20E V15.11.0.6 was found to contain a command injection vulnerability in the...
Moderate
Unreviewed
CVE-2025-44864
was published
May 2, 2025
ProTip!
Advisories are also available from the
GraphQL API