GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,750
Erlang
35
GitHub Actions
29
Go
2,323
Maven
5,000+
npm
3,956
NuGet
712
pip
3,739
Pub
12
RubyGems
921
Rust
973
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
1,956 advisories
Filter by severity
Dell Unity, version(s) 5.4 and prior, contain(s) an Improper Neutralization of Special Elements...
High
Unreviewed
CVE-2024-49563
was published
Mar 28, 2025
Dell Unity, version(s) 5.4 and prior, contain(s) an Improper Neutralization of Special Elements...
High
Unreviewed
CVE-2024-49565
was published
Mar 28, 2025
Dell Unity, version(s) 5.4 and prior, contain(s) an Improper Neutralization of Special Elements...
High
Unreviewed
CVE-2024-49564
was published
Mar 28, 2025
Dell Unity, version(s) 5.4 and prior, contain(s) an Improper Neutralization of Special Elements...
High
Unreviewed
CVE-2024-49601
was published
Mar 28, 2025
Dell Unity, version(s) 5.4 and prior, contain(s) an Improper Neutralization of Special Elements...
High
Unreviewed
CVE-2025-23383
was published
Mar 28, 2025
Dell Unity, version(s) 5.4 and prior, contain(s) an Improper Neutralization of Special Elements...
High
Unreviewed
CVE-2025-24377
was published
Mar 28, 2025
Dell Unity, version(s) 5.4 and prior, contain(s) an Improper Neutralization of Special Elements...
High
Unreviewed
CVE-2025-24378
was published
Mar 28, 2025
Dell Unity, version(s) 5.4 and prior, contain(s) an Improper Neutralization of Special Elements...
High
Unreviewed
CVE-2025-24382
was published
Mar 28, 2025
The Total Upkeep – WordPress Backup Plugin plus Restore & Migrate by BoldGrid plugin for...
High
Unreviewed
CVE-2025-2257
was published
Mar 26, 2025
HCL DevOps Deploy / HCL Launch could allow a remote privileged authenticated attacker to execute...
High
Unreviewed
CVE-2025-0255
was published
Mar 24, 2025
Improper neutralization of special elements used in an OS command ('OS Command Injection') issue...
High
Unreviewed
CVE-2025-24306
was published
Mar 18, 2025
Improper neutralization of special elements used in an OS command ('OS Command Injection') issue...
High
Unreviewed
CVE-2025-25220
was published
Mar 18, 2025
Koha before 24.11.02 allows admins to execute arbitrary commands via shell metacharacters in the...
High
Unreviewed
CVE-2025-30076
was published
Mar 16, 2025
A vulnerability in the CLI of Cisco IOS XR Software could allow an authenticated, local attacker...
High
Unreviewed
CVE-2025-20138
was published
Mar 12, 2025
Multiple improper neutralization of special elements used in an OS Command vulnerabilities [CWE...
High
Unreviewed
CVE-2024-54018
was published
Mar 11, 2025
Multiple improper neutralization of special elements used in an OS command ('OS Command Injection...
High
Unreviewed
CVE-2024-55590
was published
Mar 11, 2025
An improper neutralization of special elements used in an OS Command vulnerability [CWE-78] in...
High
Unreviewed
CVE-2024-52961
was published
Mar 11, 2025
The authenticated firmware update capability of the firmware for Mennekes Smart / Premium...
High
Unreviewed
CVE-2025-22366
was published
Mar 11, 2025
The authenticated time setting capability of the firmware for Mennekes Smart / Premium...
High
Unreviewed
CVE-2025-22367
was published
Mar 11, 2025
The authenticated SCU firmware command of the firmware for Mennekes Smart / Premium...
High
Unreviewed
CVE-2025-22368
was published
Mar 11, 2025
A vulnerability has been identified in SCALANCE LPE9403 (6GK5998-3GS00-2AC2) (All versions < V4.0...
High
Unreviewed
CVE-2025-27393
was published
Mar 11, 2025
A vulnerability has been identified in SCALANCE LPE9403 (6GK5998-3GS00-2AC2) (All versions < V4.0...
High
Unreviewed
CVE-2025-27392
was published
Mar 11, 2025
A vulnerability has been identified in SCALANCE LPE9403 (6GK5998-3GS00-2AC2) (All versions < V4.0...
High
Unreviewed
CVE-2025-27394
was published
Mar 11, 2025
A post-authentication command injection vulnerability in the ”zyUtilMailSend” function of the...
High
Unreviewed
CVE-2024-12010
was published
Mar 11, 2025
A post-authentication command injection vulnerability in the "ZyEE" function of the Zyxel EX5601...
High
Unreviewed
CVE-2024-12009
was published
Mar 11, 2025
ProTip!
Advisories are also available from the
GraphQL API