GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,272
Erlang
31
GitHub Actions
21
Go
2,047
Maven
5,000+
npm
3,739
NuGet
666
pip
3,415
Pub
12
RubyGems
891
Rust
868
Swift
36
Unreviewed advisories
All unreviewed
5,000+
541 advisories
Filter by severity
Cleartext transmission of sensitive information vulnerability in synoagentregisterd in Synology...
Moderate
Unreviewed
CVE-2021-26560
was published
May 24, 2022
Cleartext transmission of sensitive information vulnerability in synorelayd in Synology...
Moderate
Unreviewed
CVE-2021-26565
was published
May 24, 2022
A CWE-319: Cleartext transmission of sensitive information vulnerability exists in PowerLogic...
High
Unreviewed
CVE-2021-22702
was published
May 24, 2022
In JetBrains IntelliJ IDEA before 2022.3.1 the "Validate JSP File" action used the HTTP protocol...
High
Unreviewed
CVE-2022-47895
was published
Dec 22, 2022
BigFix Inventory up to v10.0.2 does not set the secure flag for the session cookie in an https...
Moderate
Unreviewed
CVE-2020-14248
was published
May 24, 2022
In the management interface on TP-Link Archer C5v 1.7_181221 devices, credentials are sent in a...
High
Unreviewed
CVE-2021-27209
was published
May 24, 2022
Dell PowerScale OneFS, versions 9.0.0 up to and including 9.1.0.19, 9.2.1.12, 9.3.0.6, and 9.4.0...
Critical
Unreviewed
CVE-2022-34371
was published
Sep 3, 2022
Cleartext transmission of sensitive information vulnerability in synorelayd in Synology...
Moderate
Unreviewed
CVE-2021-26564
was published
May 24, 2022
The affected Reolink P2P products do not sufficiently protect data transferred between the local...
High
Unreviewed
CVE-2020-25169
was published
May 24, 2022
IBM Security Identity Governance and Intelligence 5.2.6 could allow a remote attacker to obtain...
Moderate
Unreviewed
CVE-2020-4969
was published
May 24, 2022
A CWE-319: Cleartext transmission of sensitive information vulnerability exists in PowerLogic...
High
Unreviewed
CVE-2021-22703
was published
May 24, 2022
Cleartext transmission of sensitive information in Agora Video SDK prior to 3.1 allows a remote...
Moderate
Unreviewed
CVE-2020-25605
was published
May 24, 2022
An issue was discovered on CDATA 72408A, 9008A, 9016A, 92408A, 92416A, 9288, 97016, 97024P,...
Moderate
Unreviewed
CVE-2020-29055
was published
May 24, 2022
When clicking on a tel: link, USSD codes, specified after a <code>\*</code> character, would be...
High
Unreviewed
CVE-2022-22758
was published
Dec 22, 2022
IBM API Connect 5.0.0.0 through 5.0.8.10 could potentially leak sensitive information or allow...
Critical
Unreviewed
CVE-2020-4899
was published
May 24, 2022
A cleartext transmission of sensitive information vulnerability has been reported to affect...
High
Unreviewed
CVE-2018-19944
was published
May 24, 2022
Cleartext transmission of sensitive information vulnerability in DDNS in Synology Router Manager ...
Moderate
Unreviewed
CVE-2020-27657
was published
May 24, 2022
Cleartext transmission of sensitive information vulnerability in DDNS in Synology DiskStation...
Moderate
Unreviewed
CVE-2020-27656
was published
May 24, 2022
An issue was discovered in Programi Bilanc build 007 release 014 31.01.2020 and below. Its...
High
Unreviewed
CVE-2020-11718
was published
May 24, 2022
The built-in WEB server for MOXA NPort IAW5000A-I/O firmware version 2.1 or lower stores and...
Critical
Unreviewed
CVE-2020-25190
was published
May 24, 2022
Quick Heal Total Security before version 19.0 transmits quarantine and sysinfo files via clear text.
Moderate
Unreviewed
CVE-2020-27586
was published
May 24, 2022
An issue was discovered on V-SOL V1600D V2.03.69 and V2.03.57, V1600D4L V1.01.49, V1600D-MINI V1...
Moderate
Unreviewed
CVE-2020-29380
was published
May 24, 2022
Cleartext Transmission of Sensitive Information vulnerability in BASETech GE-131 BT-1837836...
High
Unreviewed
CVE-2020-27554
was published
May 24, 2022
UPNP Service listening on port 5555 in Genexis Platinum 4410 Router V2.1 has an action ...
Moderate
Unreviewed
CVE-2020-25988
was published
May 24, 2022
In certain Secustation products the administrator account password can be read. This affects V2.5...
Moderate
Unreviewed
CVE-2022-40939
was published
Dec 8, 2022
ProTip!
Advisories are also available from the
GraphQL API