GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,873
Erlang
37
GitHub Actions
36
Go
2,519
Maven
5,000+
npm
4,156
NuGet
736
pip
3,956
Pub
12
RubyGems
946
Rust
1,026
Swift
39
Unreviewed advisories
All unreviewed
5,000+
2,906 advisories
Filter by severity
TOTOLINK A3002R v4.0.0-B20230531.1404 was discovered to contain an command injection...
Moderate
Unreviewed
CVE-2025-55590
was published
Aug 18, 2025
TOTOLINK-A3002R v4.0.0-B20230531.1404 was discovered to contain a command injection vulnerability...
Critical
Unreviewed
CVE-2025-55591
was published
Aug 18, 2025
A vulnerability was identified in D-Link DIR-860L 2.04.B04. This affects the function...
Moderate
Unreviewed
CVE-2025-9026
was published
Aug 15, 2025
A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center ...
Moderate
Unreviewed
CVE-2025-20306
was published
Aug 14, 2025
An issue was discovered in phome Empirebak 2010 in ebak2008/upload/class/config.php allowing...
Moderate
Unreviewed
CVE-2025-50515
was published
Aug 14, 2025
The KuWFi 4G AC900 LTE router 1.0.13 is vulnerable to command injection on the HTTP API endpoints...
High
Unreviewed
CVE-2024-53945
was published
Aug 14, 2025
Active Storage allowed transformation methods that were potentially unsafe
Critical
CVE-2025-24293
was published
for
activestorage
(RubyGems)
Aug 14, 2025
A zip slip vulnerability in the /modules/ImportModule.php component of hortusfox-web v4.4 allows...
Moderate
Unreviewed
CVE-2025-45317
was published
Aug 13, 2025
Improper neutralization of special elements used in a command ('command injection') in GitHub...
High
Unreviewed
CVE-2025-53773
was published
Aug 12, 2025
A vulnerability was identified in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 up to...
Moderate
Unreviewed
CVE-2025-8829
was published
Aug 11, 2025
A vulnerability has been found in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 up to...
Moderate
Unreviewed
CVE-2025-8830
was published
Aug 11, 2025
A vulnerability was determined in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 up to...
Moderate
Unreviewed
CVE-2025-8828
was published
Aug 11, 2025
A vulnerability was found in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 up to...
Moderate
Unreviewed
CVE-2025-8827
was published
Aug 11, 2025
A vulnerability was identified in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 up to...
Moderate
Unreviewed
CVE-2025-8825
was published
Aug 11, 2025
A vulnerability was found in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 up to...
Moderate
Unreviewed
CVE-2025-8823
was published
Aug 11, 2025
A vulnerability was identified in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 up to...
Moderate
Unreviewed
CVE-2025-8821
was published
Aug 11, 2025
A vulnerability has been found in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 up to...
Moderate
Unreviewed
CVE-2025-8818
was published
Aug 11, 2025
A vulnerability was found in wangzhixuan spring-shiro-training up to...
Moderate
Unreviewed
CVE-2025-8752
was published
Aug 9, 2025
A vulnerability was found in agentUniverse up to 0.0.18 and classified as critical. This issue...
Moderate
Unreviewed
CVE-2025-8697
was published
Aug 7, 2025
Microsoft 365 Copilot BizChat Information Disclosure Vulnerability
High
Unreviewed
CVE-2025-53787
was published
Aug 7, 2025
Microsoft 365 Copilot BizChat Information Disclosure Vulnerability
Moderate
Unreviewed
CVE-2025-53774
was published
Aug 7, 2025
Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 allows Static...
Moderate
Unreviewed
CVE-2025-54393
was published
Aug 7, 2025
A vulnerability in the Mitel 6800 Series, 6900 Series, and 6900w Series SIP Phones, including the...
Moderate
Unreviewed
CVE-2025-47188
was published
Aug 7, 2025
Tigo Energy's CCA is vulnerable to a command injection vulnerability in the /cgi-bin/mobile_api...
High
Unreviewed
CVE-2025-7769
was published
Aug 6, 2025
A vulnerability, which was classified as critical, was found in SkyworkAI DeepResearchAgent up to...
Moderate
Unreviewed
CVE-2025-8667
was published
Aug 6, 2025
ProTip!
Advisories are also available from the
GraphQL API