Skip to content

GitHub Advisory Database

Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.

718 advisories

Loading
PaddlePaddle vulnerable to Code Injection Critical
CVE-2022-46742 was published for paddlepaddle (pip) Dec 7, 2022
mattberry3
Grafana Command Injection And Local File Inclusion Via Sql Expressions Critical
CVE-2024-9264 was published for github.com/grafana/grafana (Go) Oct 18, 2024
Malayke
A remote code execution (RCE) vulnerability in the component /PluXml/core/admin... Critical Unreviewed
CVE-2024-48138 was published Oct 30, 2024
MangoOS before 5.2.0 was discovered to contain a Client-Side Template Injection (CSTI)... Critical Unreviewed
CVE-2024-37846 was published Oct 25, 2024
pyload-ng vulnerable to RCE with js2py sandbox escape Critical
CVE-2024-39205 was published for pyload-ng (pip) Sep 9, 2024
Marven11
Code Injection in PyTorch Lightning Critical
CVE-2022-0845 was published for pytorch-lightning (pip) Mar 6, 2022
oliverchang
Aim Web API vulnerable to Remote Code Execution Critical
CVE-2024-2195 was published for aim (pip) Apr 10, 2024
LArkema
SaltStack Salt Server Side Template Injection Critical
CVE-2021-25283 was published for salt (pip) May 24, 2022
A vulnerability in NuPoint Messenger (NPM) of Mitel MiCollab through 9.8.0.33 allows an... Critical Unreviewed
CVE-2024-35285 was published Oct 21, 2024
MariaDB v10.5 was discovered to contain a remote code execution (RCE) vulnerability. Critical Unreviewed
CVE-2023-26785 was published Oct 18, 2024
An issue in Loom on macOS version 0.196.1 and before, allows remote attackers to execute... Critical Unreviewed
CVE-2024-23742 was published Jan 28, 2024
ProTip! Advisories are also available from the GraphQL API