GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,768
Erlang
35
GitHub Actions
29
Go
2,332
Maven
5,000+
npm
3,965
NuGet
713
pip
3,748
Pub
12
RubyGems
921
Rust
975
Swift
38
Unreviewed advisories
All unreviewed
5,000+
2,713 advisories
Filter by severity
Ai command injection in M365 Copilot allows an unauthorized attacker to disclose information over...
Critical
Unreviewed
CVE-2025-32711
was published
Jun 11, 2025
'.../...//' in Microsoft Office Outlook allows an authorized attacker to execute code locally.
High
Unreviewed
CVE-2025-47176
was published
Jun 10, 2025
Improper Neutralization of Special Elements in the chromium_path variable may allow OS command...
High
Unreviewed
CVE-2025-4678
was published
Jun 10, 2025
Improper Neutralization of Special Elements in the backup name field may allow OS command...
High
Unreviewed
CVE-2025-4653
was published
Jun 10, 2025
A vulnerability, which was classified as critical, has been found in Zend.To up to 6.10-6 Beta....
Moderate
Unreviewed
CVE-2025-5952
was published
Jun 10, 2025
A command injection vulnerability has been reported to affect several QNAP operating system...
High
Unreviewed
CVE-2025-22481
was published
Jun 6, 2025
A vulnerability has been found in Tenda CP3 11.10.00.2311090948 and classified as critical....
Moderate
Unreviewed
CVE-2025-5763
was published
Jun 6, 2025
A vulnerability, which was classified as critical, was found in D-Link DIR-816 1.10CNB05....
Moderate
Unreviewed
CVE-2025-5620
was published
Jun 5, 2025
A vulnerability has been found in D-Link DIR-816 1.10CNB05 and classified as critical. Affected...
Moderate
Unreviewed
CVE-2025-5621
was published
Jun 5, 2025
A vulnerability was found in Tenda AC18 15.03.05.05. It has been declared as critical. This...
Moderate
Unreviewed
CVE-2025-5606
was published
Jun 4, 2025
A vulnerability in the CLI of multiple Cisco Unified Communications products could allow an...
Moderate
Unreviewed
CVE-2025-20278
was published
Jun 4, 2025
A vulnerability was found in D-Link DCS-932L 2.18.01. It has been classified as critical....
Moderate
Unreviewed
CVE-2025-5571
was published
Jun 4, 2025
A vulnerability was found in D-Link DCS-932L 2.18.01. It has been rated as critical. Affected by...
Moderate
Unreviewed
CVE-2025-5573
was published
Jun 4, 2025
A vulnerability was found in Jrohy trojan up to 2.15.3. It has been declared as critical. This...
Moderate
Unreviewed
CVE-2025-5525
was published
Jun 3, 2025
In engineermode service, there is a possible command injection due to improper input validation....
Moderate
Unreviewed
CVE-2025-31710
was published
Jun 3, 2025
An issue in Clinical Collaboration Platform 12.2.1.5 allows a remote attacker to obtain sensitive...
Moderate
Unreviewed
CVE-2025-27953
was published
Jun 2, 2025
An issue in Clinical Collaboration Platform 12.2.1.5 allows a remote attacker to obtain sensitive...
Moderate
Unreviewed
CVE-2025-27954
was published
Jun 2, 2025
A command injection remote code execution vulnerability exists in HPE StoreOnce Software.
High
Unreviewed
CVE-2025-37096
was published
Jun 2, 2025
A vulnerability was found in Linksys RE6500, RE6250, RE6300, RE6350, RE7000 and RE9000 1.0.013...
Moderate
Unreviewed
CVE-2025-5447
was published
Jun 2, 2025
A command injection remote code execution vulnerability exists in HPE StoreOnce Software.
High
Unreviewed
CVE-2025-37089
was published
Jun 2, 2025
A command injection remote code execution vulnerability exists in HPE StoreOnce Software.
High
Unreviewed
CVE-2025-37091
was published
Jun 2, 2025
A command injection remote code execution vulnerability exists in HPE StoreOnce Software.
High
Unreviewed
CVE-2025-37092
was published
Jun 2, 2025
A vulnerability was found in Linksys RE6500, RE6250, RE6300, RE6350, RE7000 and RE9000 1.0.013...
Moderate
Unreviewed
CVE-2025-5446
was published
Jun 2, 2025
A vulnerability was found in Linksys RE6500, RE6250, RE6300, RE6350, RE7000 and RE9000 1.0.013...
Moderate
Unreviewed
CVE-2025-5445
was published
Jun 2, 2025
A vulnerability classified as critical was found in Linksys RE6500, RE6250, RE6300, RE6350,...
Moderate
Unreviewed
CVE-2025-5441
was published
Jun 2, 2025
ProTip!
Advisories are also available from the
GraphQL API