GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,096
Erlang
29
GitHub Actions
19
Go
1,925
Maven
5,000+
npm
3,654
NuGet
638
pip
3,263
Pub
10
RubyGems
873
Rust
823
Swift
35
Unreviewed advisories
All unreviewed
5,000+
509 advisories
Filter by severity
A vulnerability has been identified in QMS Automotive (All versions < V12.39). The affected...
High
Unreviewed
CVE-2023-40729
was published
Sep 14, 2023
A flaw was found in OpenStack. Multiple components show plain-text passwords in /var/log/messages...
High
Unreviewed
CVE-2022-3261
was published
Sep 15, 2023
** UNSUPPPORTED WHEN ASSIGNED ** The lack of web request control on ekorCCP and ekorRCI devices...
Moderate
Unreviewed
CVE-2022-47560
was published
Sep 20, 2023
An issue in CloudExplorer Lite 1.3.1 allows an attacker to obtain sensitive information via the...
High
Unreviewed
CVE-2023-42147
was published
Sep 20, 2023
BIG-IP APM clients may send IP traffic outside of the VPN tunnel. Note: Software versions which...
High
Unreviewed
CVE-2023-43124
was published
Sep 27, 2023
BIG-IP APM clients may send IP traffic outside of the VPN tunnel. Note: Software versions which...
High
Unreviewed
CVE-2023-43125
was published
Sep 27, 2023
All versions of NetMan 204 could allow an unauthenticated remote attacker to read a file (config...
High
Unreviewed
CVE-2022-47892
was published
Oct 3, 2023
A flaw was found in Red Hat OpenShift Data Science. When exporting a pipeline from the Elyra...
High
Unreviewed
CVE-2023-3361
was published
Oct 4, 2023
A cleartext transmission of sensitive information vulnerability has been reported to affect QVPN...
Moderate
Unreviewed
CVE-2023-23371
was published
Oct 6, 2023
Cleartext Transmission of Sensitive Information in RDT400 in SICK APU allows an
unprivileged...
Moderate
Unreviewed
CVE-2023-5100
was published
Oct 9, 2023
A vulnerability was found in Delta Electronics WPLSoft 2.51. It has been classified as...
Low
Unreviewed
CVE-2023-5461
was published
Oct 9, 2023
IBM Security Verify Privilege On-Premises 11.5 could disclose sensitive information to an...
High
Unreviewed
CVE-2022-22385
was published
Oct 17, 2023
Baker Hughes – Bently Nevada 3500 System TDI Firmware version 5.05
contains a cleartext...
High
Unreviewed
CVE-2023-34441
was published
Oct 19, 2023
The affected product is vulnerable to a cleartext transmission of sensitive...
Moderate
Unreviewed
CVE-2023-41088
was published
Oct 19, 2023
IBM Cognos Dashboards on Cloud Pak for Data 4.7.0 exposes sensitive information in container...
High
Unreviewed
CVE-2023-38275
was published
Oct 22, 2023
IBM Cognos Dashboards on Cloud Pak for Data 4.7.0 exposes sensitive information in environment...
High
Unreviewed
CVE-2023-38276
was published
Oct 22, 2023
IBM Security Verify Governance 10.0 does not encrypt sensitive or critical information before...
High
Unreviewed
CVE-2023-33837
was published
Oct 23, 2023
The Android Client application, when enrolled with the define method 1 (the user manually...
High
Unreviewed
CVE-2023-45321
was published
Oct 25, 2023
A vulnerability has been identified in PT-G503 Series firmware versions prior to v5.2, where the...
Low
Unreviewed
CVE-2023-5035
was published
Nov 2, 2023
bcrypt password hashing in Botan before 2.1.0 does not correctly handle passwords with a length...
High
Unreviewed
CVE-2017-7252
was published
Nov 3, 2023
LOYTEC LINX-212 firmware 6.2.4 and LVIS-3ME12-A1 firmware 6.2.2 and LIOB-586 firmware 6.2.3...
High
Unreviewed
CVE-2023-46380
was published
Nov 5, 2023
LOYTEC LINX-212 firmware 6.2.4 and LVIS-3ME12-A1 firmware 6.2.2 and LIOB-586 firmware 6.2.3...
High
Unreviewed
CVE-2023-46382
was published
Nov 5, 2023
A vulnerability has been identified in COMOS (All versions < V10.4.4). Caching system in the...
Low
Unreviewed
CVE-2023-43503
was published
Nov 14, 2023
LOYTEC electronics GmbH LINX Configurator 7.4.10 uses HTTP Basic Authentication, which transmits...
High
Unreviewed
CVE-2023-46383
was published
Dec 1, 2023
LOYTEC electronics GmbH LINX Configurator 7.4.10 is vulnerable to Insecure Permissions. An admin...
High
Unreviewed
CVE-2023-46385
was published
Dec 1, 2023
ProTip!
Advisories are also available from the
GraphQL API