GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,963
Erlang
39
GitHub Actions
38
Go
2,615
Maven
5,000+
npm
4,255
NuGet
760
pip
4,036
Pub
12
RubyGems
953
Rust
1,049
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
486 advisories
Filter by severity
A privilege escalation vulnerability in Palo Alto Networks PAN-OS software allows a PAN-OS...
Moderate
Unreviewed
CVE-2024-9474
was published
Nov 18, 2024
A vulnerability has been discovered in Privileged Remote Access (PRA) and Remote Support (RS)...
Moderate
Unreviewed
CVE-2024-12686
was published
Dec 18, 2024
Pi-hole Web v4.3.2 (aka AdminLTE) allows Remote Code Execution by privileged dashboard users via...
Moderate
Unreviewed
CVE-2020-8816
was published
May 24, 2022
lib/ajaxHandlers/ajaxAddTemplate.php in rConfig through 3.94 allows remote attackers to execute...
Moderate
Unreviewed
CVE-2020-10221
was published
May 24, 2022
Improper neutralization of special elements in the SMA100 management interface allows a remote...
Moderate
Unreviewed
CVE-2021-20035
was published
May 24, 2022
** UNSUPPORTED WHEN ASSIGNED ** D-Link DIR-610 devices allow Remote Command Execution via the cmd...
Moderate
Unreviewed
CVE-2020-9377
was published
May 24, 2022
A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker...
Moderate
Unreviewed
CVE-2024-20399
was published
Jul 1, 2024
A vulnerability in the `start_app_server` function of parisneo/lollms-webui V12 (Strawberry)...
Moderate
Unreviewed
CVE-2024-10019
was published
Mar 20, 2025
When a user attempts to initialize the rSeries FIPS module using a password with special shell...
Moderate
Unreviewed
CVE-2025-60013
was published
Oct 15, 2025
A vulnerability classified as critical was found in AMTT Hotel Broadband Operation System 1.0....
Moderate
Unreviewed
CVE-2025-2701
was published
Mar 24, 2025
Multiple instances of an Improper Neutralization of Special Elements used in an OS Command ('OS...
Moderate
Unreviewed
CVE-2025-60006
was published
Oct 9, 2025
A command injection vulnerability has been reported to affect several QNAP operating system...
Moderate
Unreviewed
CVE-2025-47212
was published
Oct 3, 2025
Dell PowerProtect Data Domain with Data Domain Operating System (DD OS) of Feature Release...
Moderate
Unreviewed
CVE-2025-43908
was published
Oct 7, 2025
Dell PowerProtect Data Domain with Data Domain Operating System (DD OS) of Feature Release...
Moderate
Unreviewed
CVE-2025-36569
was published
Oct 7, 2025
Dell PowerProtect Data Domain with Data Domain Operating System (DD OS) of Feature Release...
Moderate
Unreviewed
CVE-2025-36566
was published
Oct 7, 2025
Dell PowerProtect Data Domain with Data Domain Operating System (DD OS) of Feature Release...
Moderate
Unreviewed
CVE-2025-36567
was published
Oct 7, 2025
Dell PowerProtect Data Domain with Data Domain Operating System (DD OS) of Feature Release...
Moderate
Unreviewed
CVE-2025-43911
was published
Oct 7, 2025
Dell PowerProtect Data Domain with Data Domain Operating System (DD OS) of Feature Release...
Moderate
Unreviewed
CVE-2025-43890
was published
Oct 7, 2025
Dell PowerProtect Data Domain with Data Domain Operating System (DD OS) of Feature Release...
Moderate
Unreviewed
CVE-2025-43906
was published
Oct 7, 2025
A vulnerability was detected in Wavlink WL-WN578W2 221110. This impacts the function sub_404DBC...
Moderate
Unreviewed
CVE-2025-10359
was published
Sep 13, 2025
A security vulnerability has been detected in MiczFlor RPi-Jukebox-RFID up to 2.8.0. Affected by...
Moderate
Unreviewed
CVE-2025-10328
was published
Sep 13, 2025
A security vulnerability has been detected in Wavlink WL-WN578W2 221110. This affects the...
Moderate
Unreviewed
CVE-2025-10358
was published
Sep 13, 2025
A weakness has been identified in MiczFlor RPi-Jukebox-RFID up to 2.8.0. Affected by this...
Moderate
Unreviewed
CVE-2025-10327
was published
Sep 12, 2025
A security flaw has been discovered in MiczFlor RPi-Jukebox-RFID up to 2.8.0. Affected is an...
Moderate
Unreviewed
CVE-2025-10326
was published
Sep 12, 2025
A potential command
injection vulnerability has been identified in the Poly Clariti Manager for...
Moderate
Unreviewed
CVE-2025-43020
was published
Jul 23, 2025
ProTip!
Advisories are also available from the
GraphQL API