GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,871
Erlang
37
GitHub Actions
36
Go
2,517
Maven
5,000+
npm
4,154
NuGet
736
pip
3,953
Pub
12
RubyGems
946
Rust
1,026
Swift
39
Unreviewed advisories
All unreviewed
5,000+
1,327 advisories
Filter by severity
An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the...
Critical
Unreviewed
CVE-2021-27160
was published
May 24, 2022
An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the...
Critical
Unreviewed
CVE-2021-27158
was published
May 24, 2022
An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the...
Critical
Unreviewed
CVE-2021-27159
was published
May 24, 2022
An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the...
Critical
Unreviewed
CVE-2021-27163
was published
May 24, 2022
An issue was discovered on FiberHome HG6245D devices through RP2613. There is a...
Critical
Unreviewed
CVE-2021-27168
was published
May 24, 2022
An issue was discovered on FiberHome AN5506-04-FA devices with firmware RP2631. There is a gepon...
Critical
Unreviewed
CVE-2021-27169
was published
May 24, 2022
An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the...
Critical
Unreviewed
CVE-2021-27164
was published
May 24, 2022
An issue was discovered on FiberHome HG6245D devices through RP2613. A hardcoded GEPON password...
Critical
Unreviewed
CVE-2021-27172
was published
May 24, 2022
An issue was discovered on FiberHome HG6245D devices through RP2613. There is a password of four...
Critical
Unreviewed
CVE-2021-27167
was published
May 24, 2022
IBM Security Verify Information Queue 1.0.6 and 1.0.7 contains hard-coded credentials, such as a...
High
Unreviewed
CVE-2021-20412
was published
May 24, 2022
An issue was discovered in MB CONNECT LINE mymbCONNECT24 and mbCONNECT24 through 2.6.2. The...
High
Unreviewed
CVE-2020-35567
was published
May 24, 2022
Use of hard-coded key in the BMC firmware for some Intel(R) Server Boards, Server Systems and...
Moderate
Unreviewed
CVE-2020-12376
was published
May 24, 2022
Tesla SolarCity Solar Monitoring Gateway through 5.46.43 has a "Use of Hard-coded Credentials"...
High
Unreviewed
CVE-2020-9306
was published
May 24, 2022
An issue was discovered in Shinobi through ocean version 1. lib/auth.js has Incorrect Access...
Critical
Unreviewed
CVE-2021-27228
was published
May 24, 2022
Helpcom before v10.0 contains a file download and execution vulnerability caused by storing...
High
Unreviewed
CVE-2020-7846
was published
May 24, 2022
BB-ESWGP506-2SFP-T versions 1.01.09 and prior is vulnerable due to the use of hard-coded...
Critical
Unreviewed
CVE-2021-22667
was published
May 24, 2022
An issue was discovered in Scytl sVote 2.1. Due to the implementation of the database manager, an...
High
Unreviewed
CVE-2019-25021
was published
May 24, 2022
ThinkAdmin Admin Panel Access using Default Credentials
High
CVE-2020-35296
was published
for
zoujingli/thinkadmin
(Composer)
May 24, 2022
In Bitnami Containers, all Laravel container versions prior to: 6.20.0-debian-10-r107 for Laravel...
High
Unreviewed
CVE-2021-21979
was published
May 24, 2022
IBM Security Verify Bridge contains hard-coded credentials, such as a password or cryptographic...
High
Unreviewed
CVE-2021-20442
was published
May 24, 2022
This vulnerability allows network-adjacent attackers to bypass authentication on affected...
High
Unreviewed
CVE-2021-27254
was published
May 24, 2022
An issue was discovered on Athom Homey and Homey Pro devices before 5.0.0. ZigBee hub devices...
High
Unreviewed
CVE-2020-28952
was published
May 24, 2022
SOPlanning before 1.47 has Incorrect Access Control because certain secret key information, and...
Critical
Unreviewed
CVE-2020-13963
was published
May 24, 2022
The software contains a hard-coded password it uses for its own inbound authentication or for...
Critical
Unreviewed
CVE-2021-27440
was published
May 24, 2022
The software contains a hard-coded password it uses for its own inbound authentication or for...
High
Unreviewed
CVE-2021-27438
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API