GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,746
Maven
5,000+
npm
4,346
NuGet
765
pip
4,113
Pub
12
RubyGems
960
Rust
1,069
Swift
45
Unreviewed advisories
All unreviewed
5,000+
396 advisories
Filter by severity
QiHang Media Web Digital Signage 3.0.9 contains a cleartext credentials vulnerability that allows...
High
Unreviewed
CVE-2020-36896
was published
Dec 10, 2025
The Ubia camera ecosystem fails to adequately secure API credentials,
potentially enabling an...
High
Unreviewed
CVE-2025-12636
was published
Nov 7, 2025
Oxford Nanopore Technologies' MinKNOW software at or prior to version 24.11 stores authentication...
High
Unreviewed
CVE-2025-54808
was published
Oct 23, 2025
Argo Workflow may expose artifact repository credentials
High
CVE-2025-62157
was published
for
github.com/argoproj/argo-workflows/v3
(Go)
Oct 14, 2025
E3 Site Supervisor Control (firmware version < 2.31F01) RCI service contains an API call to read...
High
Unreviewed
CVE-2025-52545
was published
Oct 1, 2025
All versions of Dingtian DT-R002 are vulnerable to an Insufficiently Protected Credentials...
High
Unreviewed
CVE-2025-10880
was published
Sep 25, 2025
All versions of Dingtian DT-R002 are vulnerable to an Insufficiently Protected Credentials...
High
Unreviewed
CVE-2025-10879
was published
Sep 25, 2025
The NVIDIA NVDebug tool contains a vulnerability that may allow an actor to gain access to a...
High
Unreviewed
CVE-2025-23342
was published
Sep 9, 2025
When a user logs in via SAP Business One native client, the SLD backend service fails to enforce...
High
Unreviewed
CVE-2025-42933
was published
Sep 9, 2025
An authenticated, low-privileged attacker can obtain credentials stored on the charge controller...
High
Unreviewed
CVE-2025-41682
was published
Sep 8, 2025
Insufficiently Protected Credentials vulnerability in ABB Aspect.This issue affects Aspect:...
High
Unreviewed
CVE-2025-53188
was published
Aug 11, 2025
Dell Digital Delivery, versions prior to 5.6.1.0, contains an Insufficiently Protected...
High
Unreviewed
CVE-2025-38739
was published
Aug 4, 2025
A vulnerability exists in Sitecore Experience Manager (XM), Experience Platform (XP), Experience...
High
Unreviewed
CVE-2025-34139
was published
Jul 25, 2025
A local privilege escalation vulnerability exists in NSClient++ 0.5.2.35 when both the web...
High
Unreviewed
CVE-2025-34078
was published
Jul 2, 2025
tiny-secp256k1 vulnerable to private key extraction when signing a malicious JSON-stringifyable message in bundled environment
High
CVE-2024-49364
was published
for
tiny-secp256k1
(npm)
Jun 30, 2025
CyberData 011209 Intercom
does not properly store or protect web server admin credentials.
High
Unreviewed
CVE-2025-30183
was published
Jun 10, 2025
IBM Sterling Partner Engagement Manager 6.1.0, 6.2.0, 6.2.2 JWT secret is stored in public Helm...
High
Unreviewed
CVE-2025-33093
was published
May 7, 2025
A credential exposure vulnerability in Electrolink 500W, 1kW, 2kW Medium DAB Transmitter Web v01...
High
Unreviewed
CVE-2025-28228
was published
Apr 21, 2025
Insufficiently protected credentials in Azure Local Cluster allows an authorized attacker to...
High
Unreviewed
CVE-2025-26628
was published
Apr 8, 2025
The exposure of credentials in the call forwarding configuration module in MeetMe products in...
High
Unreviewed
CVE-2025-2908
was published
Mar 28, 2025
Exposure of password in web-based SSH authentication component in Devolutions Server 2024.3.13...
High
Unreviewed
CVE-2025-2277
was published
Mar 13, 2025
Pass-Back vulnerability in versions prior to 2025.35.000 of Sage 200 Spain. This vulnerability...
High
Unreviewed
CVE-2025-1886
was published
Mar 7, 2025
IBM Engineering Requirements Management DOORS Next 7.0.2, 7.0.3, and 7.1 could allow a remote...
High
Unreviewed
CVE-2024-41771
was published
Mar 3, 2025
IBM Engineering Requirements Management DOORS Next 7.0.2, 7.0.3, and 7.1 could allow a remote...
High
Unreviewed
CVE-2024-41770
was published
Mar 3, 2025
In JetBrains TeamCity before 2024.12.2 improper Kubernetes connection settings could expose...
High
Unreviewed
CVE-2025-26492
was published
Feb 11, 2025
ProTip!
Advisories are also available from the
GraphQL API