GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Malware advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
117
GitHub Actions
55
Go
4,836
Maven
5,000+
npm
5,000+
NuGet
1,126
pip
5,000+
Pub
13
RubyGems
1,157
Rust
1,577
Swift
63
Unreviewed advisories
All unreviewed
5,000+
Malware advisories
All malware
5,000+
Composer
2
Go
18
Maven
2
npm
5,000+
NuGet
264
pip
5,000+
RubyGems
3,513
Rust
20
1,630 advisories
Filter by severity
Unauthenticated remote command injection in the Brocade SANnav orchestrator HTTP service permits...
High
Unreviewed
CVE-2026-82370
was published
Sep 24, 2026
NVIDIA NeMo Speech for all platforms contains a vulnerability where malicious input created by an...
High
Unreviewed
CVE-2026-65111
was published
Sep 22, 2026
A vulnerability was found in D-Link R95 BE9500_1.00.16. This vulnerability affects the function...
High
Unreviewed
CVE-2026-93958
was published
Sep 20, 2026
NUUO Network Video Recorder 2.0.0 is vulnerable to Command Injection in handle_import_privilege.php.
High
Unreviewed
CVE-2026-88622
was published
Sep 18, 2026
Improper neutralization of special elements used in a command ('command injection') in Microsoft...
High
Unreviewed
CVE-2026-78501
was published
Sep 18, 2026
A vulnerability was found in Ruijie RG-EW3000GX EW_3.0(1)B11P380. Affected by this issue is some...
High
Unreviewed
CVE-2026-92398
was published
Sep 16, 2026
A vulnerability has been found in Ruijie RG-EW3000GX EW_3.0(1)B11P380. Affected by this...
High
Unreviewed
CVE-2026-92397
was published
Sep 16, 2026
On affected platforms running Arista EOS with gRPC Network Security Interface (gNSI) Credentialz...
High
Unreviewed
CVE-2026-73454
was published
Sep 16, 2026
GitLab has remediated an issue in GitLab EE affecting all versions from 12.3 to 19.1.8, 19.2...
High
Unreviewed
CVE-2026-88765
was published
Sep 15, 2026
A vulnerability was determined in EFM ipTIME C200E 1.094. The impacted element is an unknown...
High
Unreviewed
CVE-2026-90847
was published
Sep 15, 2026
A flaw has been found in D-Link DWR-M921 1.1.52. Impacted is the function system of the file ...
High
Unreviewed
CVE-2026-90702
was published
Sep 14, 2026
A vulnerability has been found in D-Link DWR-M921 1.1.52. The affected element is the function...
High
Unreviewed
CVE-2026-90703
was published
Sep 14, 2026
A weakness has been identified in D-Link DWR-M920 1.1.7. This issue affects the function...
High
Unreviewed
CVE-2026-90699
was published
Sep 14, 2026
Improper neutralization of special elements used in a command ('command injection') in Microsoft...
High
Unreviewed
CVE-2026-83948
was published
Sep 8, 2026
Improper neutralization of special elements used in a command ('command injection') in Windows...
High
Unreviewed
CVE-2026-69534
was published
Sep 8, 2026
A improper neutralization of special elements used in a command ('command injection')...
High
Unreviewed
CVE-2026-84387
was published
Sep 8, 2026
LibreNMS before 26.8.0 contains an argument injection vulnerability in the graph_title parameter...
High
Unreviewed
CVE-2026-86427
was published
Sep 7, 2026
A vulnerability was detected in Linksys RE7000 2.0.15. This affects the function...
High
Unreviewed
CVE-2026-86299
was published
Sep 7, 2026
A vulnerability was identified in Tenda HG10 300001138. Impacted is the function formgponConf of...
High
Unreviewed
CVE-2026-86167
was published
Sep 6, 2026
An issue in the ugw-restart method of /cgi-bin/wwwugw.cgi in MBS-Solutions X-Serie Gateway...
High
Unreviewed
CVE-2026-75161
was published
Sep 4, 2026
A vulnerability was found in D-Link DNS-340L 1.01B04. Affected by this issue is some unknown...
High
Unreviewed
CVE-2026-85223
was published
Sep 4, 2026
A vulnerability was determined in D-Link DNS-320 ShareCenter 2.06B01. This affects an unknown...
High
Unreviewed
CVE-2026-85224
was published
Sep 4, 2026
A vulnerability has been found in D-Link DNS-340L 1.01B04. Affected by this vulnerability is an...
High
Unreviewed
CVE-2026-85222
was published
Sep 3, 2026
A vulnerability exists in a management component that could allow an unauthenticated adjacent...
High
Unreviewed
CVE-2026-73763
was published
Sep 1, 2026
Command injection vulnerabilities in the API endpoint of AOS-CX could allow an authenticated...
High
Unreviewed
CVE-2026-73766
was published
Sep 1, 2026
ProTip!
Advisories are also available from the
GraphQL API