GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,731
Erlang
35
GitHub Actions
29
Go
2,308
Maven
5,000+
npm
3,949
NuGet
711
pip
3,727
Pub
12
RubyGems
920
Rust
964
Swift
38
Unreviewed advisories
All unreviewed
5,000+
2,115 advisories
Filter by severity
LLama-Index CLI OS command injection vulnerability
High
CVE-2025-1753
was published
for
llama-index-cli
(pip)
May 28, 2025
On MOBOTIX P3 cameras before MX-V4.7.2.18 and Mx6 cameras before MX-V5.2.0.61, the tcpdump...
High
Unreviewed
CVE-2023-34873
was published
May 23, 2025
eCharge Hardy Barth cPH2 nwcheckexec.php dest Command Injection Remote Code Execution...
High
Unreviewed
CVE-2025-3882
was published
May 22, 2025
eCharge Hardy Barth cPH2 index.php Command Injection Remote Code Execution Vulnerability. This...
High
Unreviewed
CVE-2025-3883
was published
May 22, 2025
eCharge Hardy Barth cPH2 check_req.php ntp Command Injection Remote Code Execution Vulnerability....
High
Unreviewed
CVE-2025-3881
was published
May 22, 2025
The vCenter Server contains an authenticated command-execution vulnerability. A malicious actor...
High
Unreviewed
CVE-2025-41225
was published
May 20, 2025
motionEye vulnerable to RCE in add_camera Function Due to unsafe command execution
High
CVE-2025-47782
was published
for
motioneye
(pip)
May 15, 2025
A vulnerability has been identified in SCALANCE LPE9403 (6GK5998-3GS00-2AC2) (All versions with...
High
Unreviewed
CVE-2025-40582
was published
May 13, 2025
A vulnerability in SMA100 allows a remote authenticated attacker with SSLVPN admin privileges can...
High
Unreviewed
CVE-2025-32821
was published
May 7, 2025
A vulnerability in the web-based management interface of the Wireless LAN Controller feature of...
High
Unreviewed
CVE-2025-20186
was published
May 7, 2025
OPA server Data API HTTP path injection of Rego
High
CVE-2025-46569
was published
for
github.com/open-policy-agent/opa
(Go)
May 1, 2025
Tesla Model S Iris Modem ql_atfwd Command Injection Code Execution Vulnerability. This...
High
Unreviewed
CVE-2024-6032
was published
Apr 30, 2025
A vulnerability in the “Remote Logging” functionality of the web application of ctrlX OS allows a...
High
Unreviewed
CVE-2025-24351
was published
Apr 30, 2025
Brocade Fabric OS versions starting with 9.1.0 have root access removed, however, a local user...
High
Unreviewed
CVE-2025-1976
was published
Apr 24, 2025
BEC Technologies Multiple Routers sys ping Command Injection Remote Code Execution Vulnerability....
High
Unreviewed
CVE-2025-2773
was published
Apr 23, 2025
Whoogle allows attackers to execute arbitrary code via supplying a crafted search query
High
CVE-2024-53305
was published
for
whoogle-search
(pip)
Apr 16, 2025
OS command injection vulnerability exists in Deco BE65 Pro firmware versions prior to "Deco BE65...
High
Unreviewed
CVE-2025-32107
was published
Apr 11, 2025
A command injection vulnerability in Palo Alto Networks PAN-OS® software enables an authenticated...
High
Unreviewed
CVE-2025-0127
was published
Apr 11, 2025
OS command injection vulnerability in the WEB UI (the setting page) exists in Wi-Fi AP UNIT 'AC...
High
Unreviewed
CVE-2025-25053
was published
Apr 9, 2025
ColdFusion versions 2023.12, 2021.18, 2025.0 and earlier are affected by an Improper...
High
Unreviewed
CVE-2025-30286
was published
Apr 8, 2025
ColdFusion versions 2023.12, 2021.18, 2025.0 and earlier are affected by an Improper...
High
Unreviewed
CVE-2025-30289
was published
Apr 8, 2025
An improper neutralization of special elements used in an OS command ('OS Command Injection')...
High
Unreviewed
CVE-2024-54024
was published
Apr 8, 2025
jupyterlab-git has a command injection vulnerability in "Open Git Repository in Terminal"
High
CVE-2025-30370
was published
for
jupyterlab-git
(pip)
Apr 4, 2025
This vulnerability involves command injection in tcpdump within Moxa products, enabling an...
High
Unreviewed
CVE-2025-0676
was published
Apr 2, 2025
Dell Unity, version(s) 5.4 and prior, contain(s) an Improper Neutralization of Special Elements...
High
Unreviewed
CVE-2025-24385
was published
Mar 28, 2025
ProTip!
Advisories are also available from the
GraphQL API