GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
102
GitHub Actions
54
Go
4,428
Maven
5,000+
npm
5,000+
NuGet
1,088
pip
5,000+
Pub
13
RubyGems
1,129
Rust
1,506
Swift
62
Unreviewed advisories
All unreviewed
5,000+
16 advisories
Filter by severity
Some API functions allow interaction with the registry, which includes reading values as well as...
Critical
Unreviewed
CVE-2021-38453
was published
May 24, 2022
A vulnerability in parisneo/lollms-webui versions up to 9.3 allows remote attackers to execute...
Critical
Unreviewed
CVE-2024-4326
was published
May 16, 2024
An external config control vulnerability exists in the nas.cgi set_nas() functionality of Wavlink...
Critical
Unreviewed
CVE-2024-39602
was published
Jan 14, 2025
An external config control vulnerability exists in the nas.cgi set_smb_cfg() functionality of...
Critical
Unreviewed
CVE-2024-39280
was published
Jan 14, 2025
An external config control vulnerability exists in the openvpn.cgi openvpn_client_setup()...
Critical
Unreviewed
CVE-2024-38666
was published
Jan 14, 2025
Multiple external config control vulnerabilities exist in the nas.cgi set_ftp_cfg() functionality...
Critical
Unreviewed
CVE-2024-39788
was published
Jan 14, 2025
Multiple external config control vulnerabilities exist in the nas.cgi set_ftp_cfg() functionality...
Critical
Unreviewed
CVE-2024-39790
was published
Jan 14, 2025
Multiple external config control vulnerabilities exist in the nas.cgi set_nas() proftpd...
Critical
Unreviewed
CVE-2024-39795
was published
Jan 14, 2025
Multiple external config control vulnerabilities exists in the openvpn.cgi openvpn_server_setup()...
Critical
Unreviewed
CVE-2024-39798
was published
Jan 14, 2025
Multiple external config control vulnerabilities exist in the nas.cgi set_ftp_cfg() functionality...
Critical
Unreviewed
CVE-2024-39789
was published
Jan 14, 2025
Multiple external config control vulnerabilities exist in the nas.cgi set_nas() proftpd...
Critical
Unreviewed
CVE-2024-39794
was published
Jan 14, 2025
Multiple external config control vulnerabilities exists in the openvpn.cgi openvpn_server_setup()...
Critical
Unreviewed
CVE-2024-39799
was published
Jan 14, 2025
Multiple external config control vulnerabilities exist in the nas.cgi set_nas() proftpd...
Critical
Unreviewed
CVE-2024-39793
was published
Jan 14, 2025
Multiple external config control vulnerabilities exists in the openvpn.cgi openvpn_server_setup()...
Critical
Unreviewed
CVE-2024-39800
was published
Jan 14, 2025
RSSN has Arbitrary Code Execution via Unvalidated JIT Instruction Generation in C-FFI Interface
Critical
CVE-2026-30960
was published
for
rssn
(Rust)
Mar 10, 2026
Dalfox Server Mode Vulnerable to Unauthenticated Remote Code Execution via `found-action`
Critical
CVE-2026-45087
was published
for
github.com/hahwul/dalfox/v2
(Go)
May 12, 2026
ProTip!
Advisories are also available from the
GraphQL API