GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,785
Erlang
36
GitHub Actions
29
Go
2,368
Maven
5,000+
npm
3,988
NuGet
720
pip
3,779
Pub
12
RubyGems
926
Rust
981
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
1,972 advisories
Filter by severity
A vulnerability in the “Remote Logging” functionality of the web application of ctrlX OS allows a...
High
Unreviewed
CVE-2025-24351
was published
Apr 30, 2025
Brocade Fabric OS versions starting with 9.1.0 have root access removed, however, a local user...
High
Unreviewed
CVE-2025-1976
was published
Apr 24, 2025
BEC Technologies Multiple Routers sys ping Command Injection Remote Code Execution Vulnerability....
High
Unreviewed
CVE-2025-2773
was published
Apr 23, 2025
OS command injection vulnerability exists in Deco BE65 Pro firmware versions prior to "Deco BE65...
High
Unreviewed
CVE-2025-32107
was published
Apr 11, 2025
A command injection vulnerability in Palo Alto Networks PAN-OS® software enables an authenticated...
High
Unreviewed
CVE-2025-0127
was published
Apr 11, 2025
OS command injection vulnerability in the WEB UI (the setting page) exists in Wi-Fi AP UNIT 'AC...
High
Unreviewed
CVE-2025-25053
was published
Apr 9, 2025
ColdFusion versions 2023.12, 2021.18, 2025.0 and earlier are affected by an Improper...
High
Unreviewed
CVE-2025-30286
was published
Apr 8, 2025
ColdFusion versions 2023.12, 2021.18, 2025.0 and earlier are affected by an Improper...
High
Unreviewed
CVE-2025-30289
was published
Apr 8, 2025
An improper neutralization of special elements used in an OS command ('OS Command Injection')...
High
Unreviewed
CVE-2024-54024
was published
Apr 8, 2025
This vulnerability involves command injection in tcpdump within Moxa products, enabling an...
High
Unreviewed
CVE-2025-0676
was published
Apr 2, 2025
Dell Unity, version(s) 5.4 and prior, contain(s) an Improper Neutralization of Special Elements...
High
Unreviewed
CVE-2025-24379
was published
Mar 28, 2025
Dell Unity, version(s) 5.4 and prior, contain(s) an Improper Neutralization of Special Elements...
High
Unreviewed
CVE-2025-24380
was published
Mar 28, 2025
Dell Unity, version(s) 5.4 and prior, contain(s) an Improper Neutralization of Special Elements...
High
Unreviewed
CVE-2025-24385
was published
Mar 28, 2025
Dell Unity, version(s) 5.4 and prior, contain(s) an Improper Neutralization of Special Elements...
High
Unreviewed
CVE-2025-24386
was published
Mar 28, 2025
Dell Unity, version(s) 5.4 and prior, contain(s) an Improper Neutralization of Special Elements...
High
Unreviewed
CVE-2024-49601
was published
Mar 28, 2025
Dell Unity, version(s) 5.4 and prior, contain(s) an Improper Neutralization of Special Elements...
High
Unreviewed
CVE-2025-24377
was published
Mar 28, 2025
Dell Unity, version(s) 5.4 and prior, contain(s) an Improper Neutralization of Special Elements...
High
Unreviewed
CVE-2024-49565
was published
Mar 28, 2025
Dell Unity, version(s) 5.4 and prior, contain(s) an Improper Neutralization of Special Elements...
High
Unreviewed
CVE-2024-49564
was published
Mar 28, 2025
Dell Unity, version(s) 5.4 and prior, contain(s) an Improper Neutralization of Special Elements...
High
Unreviewed
CVE-2025-24382
was published
Mar 28, 2025
Dell Unity, version(s) 5.4 and prior, contain(s) an Improper Neutralization of Special Elements...
High
Unreviewed
CVE-2025-23383
was published
Mar 28, 2025
Dell Unity, version(s) 5.4 and prior, contain(s) an Improper Neutralization of Special Elements...
High
Unreviewed
CVE-2024-49563
was published
Mar 28, 2025
Dell Unity, version(s) 5.4 and prior, contain(s) an Improper Neutralization of Special Elements...
High
Unreviewed
CVE-2025-24378
was published
Mar 28, 2025
The Total Upkeep – WordPress Backup Plugin plus Restore & Migrate by BoldGrid plugin for...
High
Unreviewed
CVE-2025-2257
was published
Mar 26, 2025
HCL DevOps Deploy / HCL Launch could allow a remote privileged authenticated attacker to execute...
High
Unreviewed
CVE-2025-0255
was published
Mar 24, 2025
Improper neutralization of special elements used in an OS command ('OS Command Injection') issue...
High
Unreviewed
CVE-2025-24306
was published
Mar 18, 2025
ProTip!
Advisories are also available from the
GraphQL API