GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,205
Erlang
31
GitHub Actions
19
Go
1,988
Maven
5,000+
npm
3,704
NuGet
661
pip
3,332
Pub
11
RubyGems
884
Rust
845
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
130 advisories
Filter by severity
A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE)...
Moderate
Unreviewed
CVE-2024-20515
was published
Oct 2, 2024
Missing encryption of sensitive data vulnerability in settings functionality in Synology Active...
Moderate
Unreviewed
CVE-2023-52948
was published
Sep 26, 2024
Missing encryption of sensitive data vulnerability in login component in Synology Active Backup...
Moderate
Unreviewed
CVE-2023-52950
was published
Sep 26, 2024
A vulnerability in Cisco Duo Epic for Hyperdrive could allow an authenticated, local attacker to...
Moderate
Unreviewed
CVE-2024-20503
was published
Sep 4, 2024
IBM Sterling Connect:Direct Web Services 6.0, 6.1, 6.2, and 6.3 could allow a remote attacker to...
Moderate
Unreviewed
CVE-2024-39746
was published
Aug 22, 2024
IBM QRadar Network Packet Capture 7.5 could allow a remote attacker to obtain sensitive...
Moderate
Unreviewed
CVE-2024-31905
was published
Aug 15, 2024
CVE-2024-40620 IMPACT
A vulnerability exists in the affected product due to lack of encryption...
Moderate
Unreviewed
CVE-2024-40620
was published
Aug 14, 2024
Dell Data Lakehouse, version(s) 1.0.0.0, contain(s) a Missing Encryption of Sensitive Data...
Moderate
Unreviewed
CVE-2024-38302
was published
Jul 18, 2024
A vulnerability in the IPS Manager, Central Manager, and Local Manager communication workflow...
Moderate
Unreviewed
CVE-2024-5731
was published
Jun 14, 2024
An issue was discovered in Samsung Mobile Processor, Automotive Processor, Wearable Processor,...
Moderate
Unreviewed
CVE-2023-49927
was published
Jun 5, 2024
Vulnerable data in transit in GE HealthCare EchoPAC products
Moderate
Unreviewed
CVE-2024-27106
was published
May 14, 2024
IBM Security Verify Access 10.0.6 could disclose sensitive snapshot information due to missing...
Moderate
Unreviewed
CVE-2024-25027
was published
Mar 31, 2024
IBM Security Verify Governance 10.0.2 could allow a remote attacker to obtain sensitive...
Moderate
Unreviewed
CVE-2023-35888
was published
Mar 20, 2024
IBM Watson CP4D Data Stores 4.6.0, 4.6.1, 4.6.2, and 4.6.3 does not encrypt sensitive or critical...
Moderate
Unreviewed
CVE-2023-27291
was published
Mar 3, 2024
IBM Cloud Pak for Security (CP4S) 1.10.0.0 through 1.10.6.0 could allow a remote attacker to...
Moderate
Unreviewed
CVE-2021-39090
was published
Feb 29, 2024
Missing encryption in the NFC tags of the Flient Smart Door Lock v1.0 allows attackers to create...
Moderate
Unreviewed
CVE-2023-50129
was published
Jan 11, 2024
Missing encryption in the RFID tags of the Hozard alarm system (Alarmsysteem) v1.0 allow...
Moderate
Unreviewed
CVE-2023-50126
was published
Jan 11, 2024
IBM Security Access Manager Appliance (IBM Security Verify Access Appliance 10.0.0.0 through 10.0...
Moderate
Unreviewed
CVE-2023-38267
was published
Jan 11, 2024
When saving HSTS data to an excessively long file name, curl could end up
removing all contents,...
Moderate
Unreviewed
CVE-2023-46219
was published
Dec 12, 2023
IBM InfoSphere Information Server 11.7 could allow a remote attacker to cause a denial of...
Moderate
Unreviewed
CVE-2023-42019
was published
Dec 1, 2023
The SolarWinds Network Configuration Manager was susceptible to the Exposure of Sensitive...
Moderate
Unreviewed
CVE-2023-33228
was published
Nov 1, 2023
Missing Encryption of Security Keys vulnerability in Silicon Labs Ember ZNet SDK on 32 bit, ARM ...
Moderate
Unreviewed
CVE-2023-41096
was published
Oct 26, 2023
IBM Security Verify Privilege On-Premises 11.5 could allow a remote attacker to obtain sensitive...
Moderate
Unreviewed
CVE-2022-22386
was published
Oct 17, 2023
IBM Security Verify Privilege On-Premises 11.5 could allow a remote attacker to obtain sensitive...
Moderate
Unreviewed
CVE-2022-22377
was published
Oct 17, 2023
IBM Security Directory Server 6.4.0 could allow a remote attacker to obtain sensitive information...
Moderate
Unreviewed
CVE-2022-33161
was published
Oct 14, 2023
ProTip!
Advisories are also available from the
GraphQL API