GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,126
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,021
Swift
39
Unreviewed advisories
All unreviewed
5,000+
389 advisories
Filter by severity
IBM Security Guardium Big Data Intelligence 4.0 (SonarG) uses an inadequate account lockout...
High
Unreviewed
CVE-2019-4310
was published
May 24, 2022
The PlexTrac platform prior to API version 1.17.0 does not restrict excessive MFA TOTP submission...
High
Unreviewed
CVE-2022-37144
was published
Sep 9, 2022
The PlexTrac platform prior to version 1.17.0 does not restrict excessive authentication attempts...
High
Unreviewed
CVE-2022-37145
was published
Sep 9, 2022
There is a password verification vulnerability in WS7200-10 11.0.2.13. Attackers on the LAN may...
Moderate
Unreviewed
CVE-2022-33735
was published
Sep 21, 2022
The IPsec VPN blade has a dedicated portal for downloading and connecting through SSL Network...
High
Unreviewed
CVE-2022-23746
was published
Nov 30, 2022
IBM Robotic Process Automation with Automation Anywhere 11 uses an inadequate account lockout...
Critical
Unreviewed
CVE-2019-4336
was published
May 24, 2022
An issue was discovered in certain Verbatim drives through 2022-03-31. Due to an insecure design,...
Moderate
Unreviewed
CVE-2022-28384
was published
Jun 9, 2022
An issue was discovered in certain Verbatim drives through 2022-03-31. The security feature for...
Moderate
Unreviewed
CVE-2022-28386
was published
Jun 9, 2022
Maarch RM 2.8.3 solution contains an improper restriction of excessive authentication attempts...
High
Unreviewed
CVE-2022-37772
was published
Nov 23, 2022
Improper restriction of excessive authentication attempts vulnerability in QSAN Storage Manager,...
Critical
Unreviewed
CVE-2021-32522
was published
May 24, 2022
A CWE-307: Improper Restriction of Excessive Authentication Attempts vulnerability exists in PLC...
Critical
Unreviewed
CVE-2020-28212
was published
May 24, 2022
In Ionic Identity Vault before 5.0.5, the protection mechanism for invalid unlock attempts can be...
Moderate
Unreviewed
CVE-2021-44033
was published
May 24, 2022
Impact varies for each individual vulnerability in the application. For generation of accounts,...
Critical
Unreviewed
CVE-2022-3741
was published
Oct 28, 2022
An issue was discovered in Fimer Aurora Vision before 2.97.10. The response to a failed login...
Moderate
Unreviewed
CVE-2021-33209
was published
May 24, 2022
GNU Mailman before 2.1.35 may allow remote Privilege Escalation. A certain csrf_token value is...
Moderate
Unreviewed
CVE-2021-42096
was published
May 24, 2022
InHand Networks IR615 Router's Versions 2.3.0.r4724 and 2.3.0.r4870 have has no account lockout...
Critical
Unreviewed
CVE-2021-38474
was published
May 24, 2022
Kirby CMS vulnerable to user enumeration in the code-based login and password reset forms
Moderate
CVE-2022-39314
was published
for
getkirby/cms
(Composer)
Oct 18, 2022
Dell BIOS contains an Improper Restriction of Excessive Authentication Attempts vulnerability. A...
Moderate
Unreviewed
CVE-2021-36284
was published
May 24, 2022
Dell BIOS contains an Improper Restriction of Excessive Authentication Attempts vulnerability. A...
Moderate
Unreviewed
CVE-2021-36285
was published
May 24, 2022
BAB TECHNOLOGIE GmbH eibPort V3 prior version 3.9.1 allow unauthenticated attackers access to ...
Critical
Unreviewed
CVE-2021-28911
was published
May 24, 2022
Fuel CMS 1.5.0 has a brute force vulnerability in fuel/modules/fuel/controllers/Login.php
Moderate
Unreviewed
CVE-2021-38725
was published
May 24, 2022
BAB TECHNOLOGIE GmbH eibPort V3 prior version 3.9.1 allow unauthenticated attackers to access...
Critical
Unreviewed
CVE-2021-28909
was published
May 24, 2022
IBM WebSphere Application Server 7.0, 8.0, 8.5, 9.0 and Liberty 17.0.0.3 through 21.0.0.9 could...
Moderate
Unreviewed
CVE-2021-29842
was published
May 24, 2022
Insufficiently Protected Credentials vulnerability exists in homeLYnk (Wiser For KNX) and...
Critical
Unreviewed
CVE-2021-22737
was published
May 24, 2022
VMware Workspace ONE Access and Identity Manager, unintentionally provide a login interface on...
High
Unreviewed
CVE-2021-22003
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API