GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,871
Erlang
37
GitHub Actions
36
Go
2,511
Maven
5,000+
npm
4,149
NuGet
736
pip
3,949
Pub
12
RubyGems
946
Rust
1,025
Swift
39
Unreviewed advisories
All unreviewed
5,000+
1,327 advisories
Filter by severity
An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the...
Critical
Unreviewed
CVE-2021-27155
was published
May 24, 2022
An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the...
Critical
Unreviewed
CVE-2021-27159
was published
May 24, 2022
An issue was discovered on FiberHome HG6245D devices through RP2613. There is a password of four...
Critical
Unreviewed
CVE-2021-27167
was published
May 24, 2022
The Web Administrative Interface in Mobile Viewpoint Wireless Multiplex Terminal (WMT) Playout...
Critical
Unreviewed
CVE-2020-35338
was published
May 24, 2022
In the Broadcom Nexus firmware, there is an insecure default password. This could lead to local...
Moderate
Unreviewed
CVE-2020-0019
was published
May 24, 2022
IBM Security Verify Information Queue 1.0.6 and 1.0.7 contains hard-coded credentials, such as a...
High
Unreviewed
CVE-2021-20412
was published
May 24, 2022
An issue was discovered in MB CONNECT LINE mymbCONNECT24 and mbCONNECT24 through 2.6.2. The...
High
Unreviewed
CVE-2020-35567
was published
May 24, 2022
An issue was discovered in SolarWinds N-Central 12.3.0.670. Hard-coded Credentials exist by...
High
Unreviewed
CVE-2020-25620
was published
May 24, 2022
Use of hard-coded key in the BMC firmware for some Intel(R) Server Boards, Server Systems and...
Moderate
Unreviewed
CVE-2020-12376
was published
May 24, 2022
A security vulnerability in HPE Unified Data Management (UDM) could allow the local disclosure of...
Moderate
Unreviewed
CVE-2021-26579
was published
May 24, 2022
Tesla SolarCity Solar Monitoring Gateway through 5.46.43 has a "Use of Hard-coded Credentials"...
High
Unreviewed
CVE-2020-9306
was published
May 24, 2022
An issue was discovered in Shinobi through ocean version 1. lib/auth.js has Incorrect Access...
Critical
Unreviewed
CVE-2021-27228
was published
May 24, 2022
Helpcom before v10.0 contains a file download and execution vulnerability caused by storing...
High
Unreviewed
CVE-2020-7846
was published
May 24, 2022
An issue was discovered in Scytl sVote 2.1. Due to the implementation of the database manager, an...
High
Unreviewed
CVE-2019-25021
was published
May 24, 2022
Patterson Dental Eaglesoft 21 has AES-256 encryption but there are two ways to obtain a keyfile: ...
High
Unreviewed
CVE-2022-37710
was published
Nov 7, 2022
This vulnerability allows network-adjacent attackers to bypass authentication on affected...
High
Unreviewed
CVE-2021-27254
was published
May 24, 2022
An issue was discovered on Athom Homey and Homey Pro devices before 5.0.0. ZigBee hub devices...
High
Unreviewed
CVE-2020-28952
was published
May 24, 2022
A Use of Hard-coded Credentials vulnerability in Juniper Networks Junos OS on Junos Fusion...
High
Unreviewed
CVE-2021-0245
was published
May 24, 2022
'Hulu / ????' App for Android from version 3.0.47 to the version prior to 3.1.2 uses a hard-coded...
High
Unreviewed
CVE-2022-35734
was published
Aug 17, 2022
In TOTOLINK A860R V4.1.2cu.5182_B20201027 there is a hard coded password for root in /etc/shadow...
High
Unreviewed
CVE-2022-37841
was published
Sep 7, 2022
In SOOIL Developments Co., Ltd Diabecare RS, AnyDana-i and AnyDana-A, a hard-coded physician PIN...
Moderate
Unreviewed
CVE-2020-27256
was published
May 24, 2022
IBM QRadar SIEM 7.3 and 7.4 contains hard-coded credentials, such as a password or cryptographic...
High
Unreviewed
CVE-2021-20401
was published
May 24, 2022
An issue was discovered in Apexis Streaming Video Web Application on Geeni GNC-CW013 doorbell 1.8...
High
Unreviewed
CVE-2020-28999
was published
May 24, 2022
An issue was discovered on Geeni GNC-CW013 doorbell 1.8.1 devices. A vulnerability exists in the...
Critical
Unreviewed
CVE-2020-28998
was published
May 24, 2022
SITEL CAP/PRX firmware version 5.2.01 makes use of a hardcoded password. An attacker with access...
High
Unreviewed
CVE-2021-32454
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API