GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,126
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,021
Swift
39
Unreviewed advisories
All unreviewed
5,000+
122 advisories
Filter by severity
Improper Restriction of Excessive Authentication Attempts vulnerability in Brainstorm Force...
Moderate
Unreviewed
CVE-2023-23730
was published
Jun 4, 2024
Improper Restriction of Excessive Authentication Attempts vulnerability in CodePeople Appointment...
Moderate
Unreviewed
CVE-2024-32720
was published
May 17, 2024
Improper Restriction of Excessive Authentication Attempts vulnerability in Metagauss ProfileGrid...
Moderate
Unreviewed
CVE-2024-32774
was published
May 17, 2024
KioWare for Windows (versions all through 8.35) allows to brute force the PIN number, which...
Moderate
Unreviewed
CVE-2024-3461
was published
May 14, 2024
Improper Restriction of Excessive Authentication Attempts vulnerability in LoginPress LoginPress...
Moderate
Unreviewed
CVE-2024-32676
was published
Apr 25, 2024
Improper restriction of excessive authentication attempts on some authentication methods in...
Moderate
Unreviewed
CVE-2024-28825
was published
Apr 24, 2024
An Improper Restriction of Excessive Authentication Attempts vulnerability in Juniper Networks...
Moderate
Unreviewed
CVE-2024-30390
was published
Apr 12, 2024
Bypassing Rate Limit and Brute Force Protection Using Cache Overflow
Moderate
CVE-2024-21662
was published
for
github.com/argoproj/argo-cd/v2
(Go)
Mar 18, 2024
An issue was discovered on Innovaphone PBX before 14r1 devices. The password form, used to...
Moderate
Unreviewed
CVE-2024-24721
was published
Feb 27, 2024
Weak MySQL database root password in LaborOfficeFree affects version 19.10. This vulnerability...
Moderate
Unreviewed
CVE-2024-1345
was published
Feb 19, 2024
Improper Restriction of Excessive Authentication Attempts in github.com/greenpau/caddy-security
Moderate
CVE-2024-21500
was published
for
github.com/greenpau/caddy-security
(Go)
Feb 17, 2024
Dell RecoverPoint for Virtual Machines 5.3.x contains a brute force/dictionary attack...
Moderate
Unreviewed
CVE-2024-22425
was published
Feb 16, 2024
IBM Engineering Lifecycle Optimization 7.0.2 and 7.0.3 is vulnerable to HTTP header injection,...
Moderate
Unreviewed
CVE-2023-45190
was published
Feb 9, 2024
Devise-Two-Factor vulnerable to brute force attacks
Moderate
CVE-2024-0227
was published
for
devise-two-factor
(RubyGems)
Jan 12, 2024
•
withdrawn
A vulnerability was found in Thecosy IceCMS 2.0.1. It has been classified as problematic....
Moderate
Unreviewed
CVE-2023-6756
was published
Dec 13, 2023
LibreNMS vulnerable to rate limiting bypass on login page
Moderate
CVE-2023-46745
was published
for
librenms/librenms
(Composer)
Nov 17, 2023
An improper restriction of excessive authentication attempts vulnerability [CWE-307] in FortiMail...
Moderate
Unreviewed
CVE-2023-45582
was published
Nov 14, 2023
The unauthenticated attacker in NetWeaver AS Java Logon application - version 7.50, can brute...
Moderate
Unreviewed
CVE-2023-42480
was published
Nov 14, 2023
Improper Restriction of Excessive Authentication Attempts vulnerability in Mitsubishi Electric...
Moderate
Unreviewed
CVE-2023-4625
was published
Nov 6, 2023
A vulnerability was found in PHPGurukul Online Shopping Portal 1.0. It has been declared as...
Moderate
Unreviewed
CVE-2023-3605
was published
Jul 10, 2023
The captive portal in Inpiazza Cloud WiFi versions prior to v4.2.17 does not enforce limits on...
Moderate
Unreviewed
CVE-2023-33754
was published
Jun 1, 2023
ENTAB ERP 1.0 allows attackers to discover users' full names via a brute force attack with a...
Moderate
Unreviewed
CVE-2022-30076
was published
Apr 16, 2023
Improper Restriction of Excessive Authentication Attempts in calibreweb
Moderate
CVE-2022-2525
was published
for
calibreweb
(pip)
Apr 15, 2023
Answer has Guessable CAPTCHA
Moderate
CVE-2023-1539
was published
for
github.com/answerdev/answer
(Go)
Mar 21, 2023
A improper restriction of excessive authentication attempts vulnerability [CWE-307] in Fortinet...
Moderate
Unreviewed
CVE-2023-26209
was published
Mar 9, 2023
ProTip!
Advisories are also available from the
GraphQL API