GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,272
Erlang
31
GitHub Actions
21
Go
2,047
Maven
5,000+
npm
3,739
NuGet
663
pip
3,415
Pub
12
RubyGems
891
Rust
868
Swift
36
Unreviewed advisories
All unreviewed
5,000+
189 advisories
Filter by severity
An issue was discovered in vTech VCS754 version 1.1.1.A before 1.1.1.H, allows attackers to gain...
High
Unreviewed
CVE-2023-25437
was published
Apr 27, 2023
In KeePass 2.x before 2.54, it is possible to recover the cleartext master password from a memory...
High
Unreviewed
CVE-2023-32784
was published
May 15, 2023
Snap One OvrC Pro versions prior to 7.3 use HTTP connections when downloading a...
High
Unreviewed
CVE-2023-31193
was published
May 22, 2023
An issue was discovered in Faronics Insight 10.0.19045 on Windows. A suitably positioned attacker...
High
Unreviewed
CVE-2023-28348
was published
May 31, 2023
Atlas Copco Power Focus 6000 web server is not a secure connection by default, which could allow...
High
Unreviewed
CVE-2023-1899
was published
Jun 12, 2023
SolarWinds Serv-U is submitting an HTTP request when changing or updating the attributes for File...
High
Unreviewed
CVE-2023-23841
was published
Jun 16, 2023
A remote unprivileged attacker can intercept the communication via e.g. Man-In-The-Middle, due to...
High
Unreviewed
CVE-2023-31410
was published
Jun 19, 2023
there is a possible use of unencrypted transport over cellular networks due to an insecure...
High
Unreviewed
CVE-2023-21219
was published
Jun 28, 2023
there is a possible use of unencrypted transport over cellular networks due to an insecure...
High
Unreviewed
CVE-2023-21220
was published
Jun 28, 2023
The physical IoT device of the AliveCor's KardiaMobile, a smartphone-based personal...
High
Unreviewed
CVE-2022-41627
was published
Jul 6, 2023
SAUTER Controls Nova 200–220 Series with firmware version 3.3-006 and prior and BACnetstac...
High
Unreviewed
CVE-2023-0053
was published
Jul 6, 2023
Mattermost fails to redact from audit logs the user password during user creation and the user...
High
Unreviewed
CVE-2023-1831
was published
Jul 6, 2023
Hitron Technologies CODA-5310’s Telnet function transfers sensitive data in plaintext. An...
High
Unreviewed
CVE-2023-30602
was published
Jul 6, 2023
Cleartext Transmission of Sensitive Information in the SICK ICR890-4 could allow a
remote...
High
Unreviewed
CVE-2023-3272
was published
Jul 10, 2023
An issue found in Marui Co Marui Official app v.13.6.1 allows a remote attacker to gain access to...
High
Unreviewed
CVE-2023-31823
was published
Jul 13, 2023
Cleartext Transmission of Sensitive Information vulnerability in Hitachi Device Manager on...
High
Unreviewed
CVE-2023-34142
was published
Jul 18, 2023
ASUS RT-AC66U B1 3.0.0.4.286_51665 was discovered to transmit sensitive information in cleartext.
High
Unreviewed
CVE-2023-39086
was published
Aug 8, 2023
An issue was discovered in Avira Phantom VPN through 2.23.1 for macOS. The VPN client insecurely...
High
Unreviewed
CVE-2023-36673
was published
Aug 10, 2023
An authentication bypass vulnerability exists in the OAS Engine functionality of Open Automation...
High
Unreviewed
CVE-2023-34998
was published
Sep 5, 2023
Keycloak vulnerable to Plaintext Storage of User Password
High
CVE-2023-4918
was published
for
org.keycloak:keycloak-core
(Maven)
Sep 12, 2023
A vulnerability has been identified in QMS Automotive (All versions < V12.39). The affected...
High
Unreviewed
CVE-2023-40729
was published
Sep 14, 2023
A flaw was found in OpenStack. Multiple components show plain-text passwords in /var/log/messages...
High
Unreviewed
CVE-2022-3261
was published
Sep 15, 2023
An issue in CloudExplorer Lite 1.3.1 allows an attacker to obtain sensitive information via the...
High
Unreviewed
CVE-2023-42147
was published
Sep 20, 2023
BIG-IP APM clients may send IP traffic outside of the VPN tunnel. Note: Software versions which...
High
Unreviewed
CVE-2023-43124
was published
Sep 27, 2023
BIG-IP APM clients may send IP traffic outside of the VPN tunnel. Note: Software versions which...
High
Unreviewed
CVE-2023-43125
was published
Sep 27, 2023
ProTip!
Advisories are also available from the
GraphQL API