GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,126
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,021
Swift
39
Unreviewed advisories
All unreviewed
5,000+
640 advisories
Filter by severity
A flaw was found in the PKI-server, where the spkispawn command, when run in debug mode, stores...
High
Unreviewed
CVE-2021-3551
was published
Feb 17, 2022
NVIDIA License System contains a vulnerability in the installation scripts for the DLS virtual...
Moderate
Unreviewed
CVE-2022-21818
was published
Feb 16, 2022
" Insecure password storage issue.The application stores sensitive information in cleartext...
High
Unreviewed
CVE-2021-27757
was published
Mar 5, 2022
Veritas System Recovery (VSR) 18 and 21 stores a network destination password in the Windows...
Moderate
Unreviewed
CVE-2022-26778
was published
Mar 11, 2022
Dell EMC Enterprise Storage Analytics for vRealize Operations, versions 4.0.1 to 6.2.1, contain a...
Moderate
Unreviewed
CVE-2021-43590
was published
Mar 5, 2022
In DPA 2022.4 and older releases, generated heap memory dumps contain sensitive information in...
High
Unreviewed
CVE-2022-38112
was published
Jan 20, 2023
Plaintext storage of Access Token in Jenkins GitHub Pull Request Coverage Status Plugin
Moderate
CVE-2023-24442
was published
for
org.jenkins-ci.plugins:github-pr-coverage-status
(Maven)
Jan 26, 2023
Plaintext Storage of a Password in Jenkins JIRA Pipeline Steps Plugin
Moderate
CVE-2023-24439
was published
for
org.jenkins-ci.plugins:jira-steps
(Maven)
Jan 26, 2023
On Xerox WorkCentre 3550 25.003.03.000 devices, an authenticated attacker can view the SMB server...
Moderate
Unreviewed
CVE-2022-45897
was published
Jan 31, 2023
A flaw was found in OpenShift Container Platform where OAuth tokens are not encrypted when the...
Moderate
Unreviewed
CVE-2020-10706
was published
May 24, 2022
Plaintext Storage of a Password in Jenkins TestQuality Updater Plugin
Moderate
CVE-2023-24454
was published
for
org.jenkins-ci.plugins:testquality-updater
(Maven)
Jan 26, 2023
Phicomm K2 v22.6.534.263 was discovered to store the root and admin passwords in plaintext.
High
Unreviewed
CVE-2022-48071
was published
Jan 27, 2023
A vulnerability was found in business-central, as shipped in rhdm-7.5.1 and rhpam-7.5.1, where...
Moderate
Unreviewed
CVE-2019-14886
was published
May 24, 2022
Katello cleartext password storage issue
Low
CVE-2019-14825
was published
for
katello
(RubyGems)
May 24, 2022
Plaintext storage of sensitive data in Rancher API and cluster.management.cattle.io objects
High
CVE-2022-43757
was published
for
github.com/rancher/rancher
(Go)
Jan 25, 2023
Jenkins NeoLoad Plugin stores credentials in cleartext
High
CVE-2019-10440
was published
for
org.jenkins-ci.plugins:neoload-jenkins-plugin
(Maven)
May 24, 2022
Jenkins iceScrum Plugin stores credentials in Cleartext
High
CVE-2019-10443
was published
for
org.jenkins-ci.plugins:icescrum
(Maven)
May 24, 2022
Dell PowerScale OneFS, 9.0.0.x-9.4.0.x, contain a cleartext storage of sensitive information...
Moderate
Unreviewed
CVE-2022-45098
was published
Feb 1, 2023
Dell SupportAssist for Home PCs (version 3.11.4 and prior) and SupportAssist for Business PCs ...
High
Unreviewed
CVE-2022-34388
was published
Feb 11, 2023
A security vulnerability exists in Zingbox Inspector versions 1.294 and earlier, that results in...
High
Unreviewed
CVE-2019-15023
was published
May 24, 2022
Echelon SmartServer 2.2 with i.LON Vision 2.2 stores cleartext credentials in a file, which could...
Critical
Unreviewed
CVE-2022-3089
was published
Feb 13, 2023
IBM InfoSphere Information Server 11.7 could allow a local user to obtain sensitive information...
Moderate
Unreviewed
CVE-2023-24964
was published
Feb 17, 2023
A Cleartext Storage of Sensitive Information vulnerability in suppportutils of SUSE Linux...
Moderate
Unreviewed
CVE-2022-45154
was published
Feb 15, 2023
Dell BIOS contains an information exposure vulnerability. An unauthenticated local attacker with...
Moderate
Unreviewed
CVE-2022-24410
was published
Feb 10, 2023
IBM QRadar SIEM 7.4 and 7.5 is vulnerable to information exposure allowing a non-tenant user with...
High
Unreviewed
CVE-2022-34351
was published
Feb 17, 2023
ProTip!
Advisories are also available from the
GraphQL API