GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,871
Erlang
37
GitHub Actions
36
Go
2,511
Maven
5,000+
npm
4,149
NuGet
736
pip
3,949
Pub
12
RubyGems
946
Rust
1,025
Swift
39
Unreviewed advisories
All unreviewed
5,000+
1,327 advisories
Filter by severity
On Xiaomi router AX1800 rom version < 1.0.336 and RM1800 root version < 1.0.26, the encryption...
High
Unreviewed
CVE-2020-14099
was published
May 24, 2022
Draeger X-Dock Firmware before 03.00.13 has Hard-Coded Credentials, leading to remote code...
High
Unreviewed
CVE-2021-28111
was published
May 24, 2022
An issue was discovered on Mofi Network MOFI4500-4GXeLTE 3.6.1-std and 4.0.8-std devices. They...
Critical
Unreviewed
CVE-2020-13858
was published
May 24, 2022
An issue was discovered on Mofi Network MOFI4500-4GXeLTE 4.1.5-std devices. The Dropbear SSH...
Critical
Unreviewed
CVE-2020-15833
was published
May 24, 2022
A flaw was found in the ceph-ansible playbook where it contained hardcoded passwords that were...
High
Unreviewed
CVE-2020-1716
was published
May 24, 2022
Xerox AltaLink B8045/B8055/B8065/B8075/B8090, AltaLink C8030/C8035/C8045/C8055/C8070 with...
Critical
Unreviewed
CVE-2019-10881
was published
May 24, 2022
A flaw was found in tpm2-tools in versions before 5.1.1 and before 4.3.2. tpm2_import used a...
Moderate
Unreviewed
CVE-2021-3565
was published
May 24, 2022
An issue was discovered in svc-login.php in Void Aural Rec Monitor 9.0.0.1. Passwords are stored...
High
Unreviewed
CVE-2021-25898
was published
May 24, 2022
An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the...
Critical
Unreviewed
CVE-2021-27149
was published
May 24, 2022
An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the...
Critical
Unreviewed
CVE-2021-27152
was published
May 24, 2022
An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the...
Critical
Unreviewed
CVE-2021-27158
was published
May 24, 2022
An issue was discovered on FiberHome HG6245D devices through RP2613. Credentials in /fhconf...
Critical
Unreviewed
CVE-2021-27141
was published
May 24, 2022
An issue was discovered on FiberHome AN5506-04-FA devices with firmware RP2631. There is a gepon...
Critical
Unreviewed
CVE-2021-27169
was published
May 24, 2022
An issue was discovered on FiberHome HG6245D devices through RP2613. The telnet daemon on port 23...
Critical
Unreviewed
CVE-2021-27165
was published
May 24, 2022
The default administrator account & password of the EDIMAX wireless network camera is hard-coded....
High
Unreviewed
CVE-2021-30165
was published
May 24, 2022
IBM QRadar SIEM 7.3 and 7.4 contains hard-coded credentials, such as a password or cryptographic...
High
Unreviewed
CVE-2020-4932
was published
May 24, 2022
The affected product allows attackers to obtain sensitive information from the WISE-PaaS...
Critical
Unreviewed
CVE-2021-27437
was published
May 24, 2022
BB-ESWGP506-2SFP-T versions 1.01.09 and prior is vulnerable due to the use of hard-coded...
Critical
Unreviewed
CVE-2021-22667
was published
May 24, 2022
SonicWall Email Security Virtual Appliance version 10.0.9 and earlier versions contain a default...
High
Unreviewed
CVE-2021-20025
was published
May 24, 2022
IBM Security Identity Manager 7.0.2 contains hard-coded credentials, such as a password or...
High
Unreviewed
CVE-2021-29691
was published
May 24, 2022
The MobileIron agents through 2021-03-22 for Android and iOS contain a hardcoded encryption key,...
Critical
Unreviewed
CVE-2020-35138
was published
May 24, 2022
An issue was discovered on Enphase Envoy R3.x and D4.x devices. There are hardcoded web-panel...
Moderate
Unreviewed
CVE-2020-25752
was published
May 24, 2022
This vulnerability allows remote attackers to execute arbitrary code on affected installations of...
High
Unreviewed
CVE-2021-31477
was published
May 24, 2022
This issue is not applicable to NFX NextGen Software. On NFX Series devices the use of Hard-coded...
Critical
Unreviewed
CVE-2021-0248
was published
May 24, 2022
A vulnerability has been identified in Siveillance Video Open Network Bridge (2020 R3),...
High
Unreviewed
CVE-2021-27392
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API