GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,272
Erlang
31
GitHub Actions
21
Go
2,047
Maven
5,000+
npm
3,739
NuGet
666
pip
3,415
Pub
12
RubyGems
891
Rust
868
Swift
36
Unreviewed advisories
All unreviewed
5,000+
189 advisories
Filter by severity
OnCommand Unified Manager 7-Mode prior to version 5.2.4 shipped without certain HTTP Security...
High
Unreviewed
CVE-2019-5494
was published
May 24, 2022
Oncommand Insight versions prior to 7.3.5 shipped without certain HTTP Security headers...
High
Unreviewed
CVE-2019-5496
was published
May 24, 2022
The handshake protocol in Object Management Group (OMG) DDS Security 1.1 sends cleartext...
High
Unreviewed
CVE-2019-15135
was published
May 24, 2022
The Nulock application 1.5.0 for mobile devices sends a cleartext password over Bluetooth, which...
High
Unreviewed
CVE-2019-16924
was published
May 24, 2022
The web application portal of the Cobham EXPLORER 710, firmware version 1.07, sends the login...
High
Unreviewed
CVE-2019-9532
was published
May 24, 2022
The Deep Security Manager application (Versions 10.0, 11.0 and 12.0), when configured in a...
High
Unreviewed
CVE-2019-15626
was published
May 24, 2022
The Administration page on Connect Box EuroDOCSIS 3.0 Voice Gateway CH7465LG-NCIP-6.12.18.25-2p6...
High
Unreviewed
CVE-2019-19967
was published
May 24, 2022
D-Link DIR-865L Ax 1.20B01 Beta devices have Cleartext Transmission of Sensitive Information.
High
Unreviewed
CVE-2020-13787
was published
May 24, 2022
An issue was discovered in vTech VCS754 version 1.1.1.A before 1.1.1.H, allows attackers to gain...
High
Unreviewed
CVE-2023-25437
was published
Apr 27, 2023
In KeePass 2.x before 2.54, it is possible to recover the cleartext master password from a memory...
High
Unreviewed
CVE-2023-32784
was published
May 15, 2023
Snap One OvrC Pro versions prior to 7.3 use HTTP connections when downloading a...
High
Unreviewed
CVE-2023-31193
was published
May 22, 2023
An issue was discovered in Faronics Insight 10.0.19045 on Windows. A suitably positioned attacker...
High
Unreviewed
CVE-2023-28348
was published
May 31, 2023
Atlas Copco Power Focus 6000 web server is not a secure connection by default, which could allow...
High
Unreviewed
CVE-2023-1899
was published
Jun 12, 2023
SolarWinds Serv-U is submitting an HTTP request when changing or updating the attributes for File...
High
Unreviewed
CVE-2023-23841
was published
Jun 16, 2023
A remote unprivileged attacker can intercept the communication via e.g. Man-In-The-Middle, due to...
High
Unreviewed
CVE-2023-31410
was published
Jun 19, 2023
there is a possible use of unencrypted transport over cellular networks due to an insecure...
High
Unreviewed
CVE-2023-21219
was published
Jun 28, 2023
there is a possible use of unencrypted transport over cellular networks due to an insecure...
High
Unreviewed
CVE-2023-21220
was published
Jun 28, 2023
The physical IoT device of the AliveCor's KardiaMobile, a smartphone-based personal...
High
Unreviewed
CVE-2022-41627
was published
Jul 6, 2023
SAUTER Controls Nova 200–220 Series with firmware version 3.3-006 and prior and BACnetstac...
High
Unreviewed
CVE-2023-0053
was published
Jul 6, 2023
Mattermost fails to redact from audit logs the user password during user creation and the user...
High
Unreviewed
CVE-2023-1831
was published
Jul 6, 2023
Cleartext Transmission of Sensitive Information in the SICK ICR890-4 could allow a
remote...
High
Unreviewed
CVE-2023-3272
was published
Jul 10, 2023
An issue found in Marui Co Marui Official app v.13.6.1 allows a remote attacker to gain access to...
High
Unreviewed
CVE-2023-31823
was published
Jul 13, 2023
Cleartext Transmission of Sensitive Information vulnerability in Hitachi Device Manager on...
High
Unreviewed
CVE-2023-34142
was published
Jul 18, 2023
ASUS RT-AC66U B1 3.0.0.4.286_51665 was discovered to transmit sensitive information in cleartext.
High
Unreviewed
CVE-2023-39086
was published
Aug 8, 2023
An issue was discovered in Avira Phantom VPN through 2.23.1 for macOS. The VPN client insecurely...
High
Unreviewed
CVE-2023-36673
was published
Aug 10, 2023
ProTip!
Advisories are also available from the
GraphQL API