GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,361
Erlang
33
GitHub Actions
22
Go
2,127
Maven
5,000+
npm
3,794
NuGet
685
pip
3,473
Pub
12
RubyGems
895
Rust
894
Swift
38
Unreviewed advisories
All unreviewed
5,000+
1,207 advisories
Filter by severity
An issue was discovered on FiberHome HG6245D devices through RP2613. A hardcoded GEPON password...
Critical
Unreviewed
CVE-2021-27172
was published
May 24, 2022
The Relish (Verve Connect) VH510 device with firmware before 1.0.1.6L0516 contains undocumented...
Critical
Unreviewed
CVE-2020-27689
was published
May 24, 2022
Use of a Hard-coded Password in VNCserver in Amino Communications AK45x series, AK5xx series,...
Moderate
Unreviewed
CVE-2020-10206
was published
May 24, 2022
Because of hard-coded SSH keys for the root user in Amino Communications AK45x series, AK5xx...
Critical
Unreviewed
CVE-2020-10210
was published
May 24, 2022
Use of Hard-coded Credentials in the database of Bosch FSM-2500 server and Bosch FSM-5000 server...
Critical
Unreviewed
CVE-2020-6779
was published
May 24, 2022
An attacker with local network access can obtain a fixed cryptography key which may allow for...
High
Unreviewed
CVE-2020-25173
was published
May 24, 2022
Programi Bilanc Build 007 Release 014 31.01.2020 supplies a .exe file containing several...
Critical
Unreviewed
CVE-2020-8995
was published
May 24, 2022
A hard-coded password vulnerability has been reported to affect earlier versions of QES. If...
High
Unreviewed
CVE-2020-2499
was published
May 24, 2022
A vulnerability has been identified in LOGO! 8 BM (incl. SIPLUS variants) (All versions < V8.3)....
High
Unreviewed
CVE-2020-25229
was published
May 24, 2022
A vulnerability has been identified in LOGO! 8 BM (incl. SIPLUS variants) (All versions < V8.3),...
Moderate
Unreviewed
CVE-2020-25231
was published
May 24, 2022
A vulnerability has been identified in SCALANCE X-300 switch family (incl. X408 and SIPLUS NET...
Moderate
Unreviewed
CVE-2020-28395
was published
May 24, 2022
Use of Hard-coded Credentials in EntoneWebEngine in Amino Communications AK45x series, AK5xx...
Critical
Unreviewed
CVE-2020-10207
was published
May 24, 2022
An issue was discovered on V-SOL V1600D V2.03.69 OLT devices. The string K0LTdi@gnos312$ is...
Critical
Unreviewed
CVE-2020-29377
was published
May 24, 2022
Panasonic Security System WV-S2231L 4.25 has an insecure hard-coded password of lkjhgfdsa (which...
Moderate
Unreviewed
CVE-2020-29193
was published
May 24, 2022
An issue was discovered on CDATA 72408A, 9008A, 9016A, 92408A, 92416A, 9288, 97016, 97024P,...
Critical
Unreviewed
CVE-2020-29061
was published
May 24, 2022
An issue was discovered on CDATA 72408A, 9008A, 9016A, 92408A, 92416A, 9288, 97016, 97024P,...
Critical
Unreviewed
CVE-2020-29060
was published
May 24, 2022
The SD-WAN Orchestrator 3.3.2, 3.4.x, and 4.0.x has default passwords allowing for a Pass-the...
Critical
Unreviewed
CVE-2020-4001
was published
May 24, 2022
An issue was discovered on V-SOL V1600D V2.03.69 and V2.03.57, V1600D4L V1.01.49, V1600D-MINI V1...
High
Unreviewed
CVE-2020-29375
was published
May 24, 2022
An issue was discovered on CDATA 72408A, 9008A, 9016A, 92408A, 92416A, 9288, 97016, 97024P,...
Critical
Unreviewed
CVE-2020-29059
was published
May 24, 2022
Barco wePresent WiPG-1600W devices use Hard-coded Credentials (issue 2 of 2). Affected Version(s)...
Critical
Unreviewed
CVE-2020-28334
was published
May 24, 2022
An issue was discovered in Programi Bilanc build 007 release 014 31.01.2020 and possibly below....
Critical
Unreviewed
CVE-2020-11720
was published
May 24, 2022
A flaw was found in rhacm versions before 2.0.5 and before 2.1.0. Two internal service APIs were...
Low
Unreviewed
CVE-2020-25688
was published
May 24, 2022
In the Broadcom Nexus firmware, there is an insecure default password. This could lead to local...
High
Unreviewed
CVE-2020-0016
was published
May 24, 2022
Unisys Stealth(core) before 4.0.132 stores Passwords in a Recoverable Format.
High
Unreviewed
CVE-2020-24620
was published
May 24, 2022
Studyplus App for Android v6.3.7 and earlier and Studyplus App for iOS v8.29.0 and earlier use a...
Moderate
Unreviewed
CVE-2020-5667
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API