GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,779
Erlang
36
GitHub Actions
29
Go
2,338
Maven
5,000+
npm
3,972
NuGet
714
pip
3,769
Pub
12
RubyGems
923
Rust
976
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
16 advisories
Filter by severity
iDrive RemotePC before 7.6.48 on Windows allows information disclosure. A locally authenticated...
Low
Unreviewed
CVE-2021-34688
was published
May 24, 2022
A hard-coded encryption key vulnerability exists in the authentication functionality of WAGO e...
Low
Unreviewed
CVE-2019-5106
was published
May 24, 2022
An issue was discovered in Yubico libykpiv before 2.1.0. An attacker can trigger an incorrect...
Low
Unreviewed
CVE-2020-13132
was published
May 24, 2022
GigaVUE-OS (GVOS) 5.4 - 5.9 uses a weak algorithm for a hash stored in internal database.
Low
Unreviewed
CVE-2020-23250
was published
May 24, 2022
"HCL Traveler Companion is vulnerable to an iOS weak cryptographic process vulnerability via the...
Low
Unreviewed
CVE-2020-14264
was published
May 24, 2022
D-Link DSP-W215 1.26b03 devices allow information disclosure by intercepting messages on the...
Low
Unreviewed
CVE-2020-13135
was published
May 24, 2022
A vulnerability was found in NFine Rapid Development Platform 20230511. It has been classified as...
Low
Unreviewed
CVE-2023-2900
was published
May 25, 2023
A vulnerability has been identified in SiNVR 3 Central Control Server (CCS) (all versions), SiNVR...
Low
Unreviewed
CVE-2019-18340
was published
May 24, 2022
Folder Lock 5.9.5 and earlier uses weak encryption (ROT-25) for the password, which allows local...
Low
Unreviewed
CVE-2008-3775
was published
May 2, 2022
Dell Secure Connect Gateway, 5.18, contains an Inadequate Encryption Strength Vulnerability. An...
Low
Unreviewed
CVE-2024-22458
was published
Mar 1, 2024
IBM Aspera Faspex 5.0.0 through 5.0.7 could allow a local user to obtain sensitive information...
Low
Unreviewed
CVE-2023-37396
was published
Apr 19, 2024
IBM Aspera Faspex 5.0.0 through 5.0.7 could allow a local user to obtain sensitive information...
Low
Unreviewed
CVE-2023-37395
was published
Dec 11, 2024
Weak algorithm used to sign RPM package. The following products are affected: Acronis Cyber...
Low
Unreviewed
CVE-2024-55539
was published
Dec 23, 2024
Dell PowerProtect DD, versions prior to DDOS 8.3.0.0, 7.10.1.50, and 7.13.1.10 contains a use of...
Low
Unreviewed
CVE-2025-22475
was published
Feb 4, 2025
A vulnerability was found in Netis WF-2404 1.1.124EN. It has been rated as problematic. This...
Low
Unreviewed
CVE-2025-2920
was published
Mar 28, 2025
Vulnerability in Best Practical Solutions, LLC's Request Tracker v5.0.7, where the Triple DES ...
Low
Unreviewed
CVE-2025-2545
was published
May 5, 2025
ProTip!
Advisories are also available from the
GraphQL API