GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,237
Erlang
31
GitHub Actions
20
Go
2,000
Maven
5,000+
npm
3,711
NuGet
661
pip
3,383
Pub
11
RubyGems
885
Rust
849
Swift
36
Unreviewed advisories
All unreviewed
5,000+
168 advisories
Filter by severity
Hardcoded credential is found in affected products' message queue. An attacker that manages to...
Moderate
Unreviewed
CVE-2022-3928
was published
Jan 6, 2023
Use of a hard-coded cryptographic key to encrypt password data in CLI configuration in...
Moderate
Unreviewed
CVE-2020-9289
was published
May 24, 2022
The Emerson DeltaV Distributed Control System (DCS) controllers and IO cards through 2022-04-29...
Moderate
Unreviewed
CVE-2022-29963
was published
Jul 27, 2022
A vulnerability in authentication mechanism of Cisco Software-Defined Application Visibility and...
Moderate
Unreviewed
CVE-2022-20844
was published
Oct 1, 2022
This vulnerability allows remote attackers to disclose sensitive information on affected...
Moderate
Unreviewed
CVE-2020-10919
was published
May 24, 2022
The Emerson DeltaV Distributed Control System (DCS) controllers and IO cards through 2022-04-29...
Moderate
Unreviewed
CVE-2022-29962
was published
Jul 27, 2022
An issue was discovered in the IGEL Universal Management Suite (UMS) 6.07.100. A hardcoded DES...
Moderate
Unreviewed
CVE-2022-25807
was published
Jun 10, 2022
Multiple vulnerabilities in the web-based management interface of Cisco Business Process...
Moderate
Unreviewed
CVE-2021-1576
was published
May 24, 2022
In TOTOLINK EX1200T V4.1.2cu.5215, an attacker can start telnet without authorization because the...
Moderate
Unreviewed
CVE-2021-42892
was published
Jun 4, 2022
An issue was discovered in Hyland OnBase through 18.0.0.32 and 19.x through 19.8.9.1000. PKI...
Moderate
Unreviewed
CVE-2020-25256
was published
May 24, 2022
IBM QRadar 7.3.0 to 7.3.3 Patch 2 contains hard-coded credentials, such as a password or...
Moderate
Unreviewed
CVE-2020-4269
was published
May 24, 2022
Hard-coded credentials allow administrators to access the shell via the SD-WAN CLI
Moderate
Unreviewed
CVE-2022-27506
was published
Apr 14, 2022
Dell EMC PowerScale OneFS 8.1.x - 9.1.x contain hard coded credentials. This allows a local user...
Moderate
Unreviewed
CVE-2022-22560
was published
Apr 13, 2022
GE UR bootloader binary Version 7.00, 7.01 and 7.02 included unused hardcoded credentials....
Moderate
Unreviewed
CVE-2021-27430
was published
Mar 24, 2022
Rockwell Automation ISaGRAF Runtime Versions 4.x and 5.x includes the functionality of setting a...
Moderate
Unreviewed
CVE-2020-25180
was published
Mar 19, 2022
By having access to the hard-coded cryptographic key for GE Reason RT430, RT431 & RT434 GNSS...
Moderate
Unreviewed
CVE-2020-25193
was published
Mar 19, 2022
An information disclosure vulnerability exists due to the hardcoded TLS key of reolink RLC-410W...
Moderate
Unreviewed
CVE-2022-21199
was published
Jan 29, 2022
Hard-Coded Key Used For Remember-me Token in Opencast
Moderate
CVE-2020-5222
was published
for
org.opencastproject:opencast-kernel
(Maven)
Jan 30, 2020
ProTip!
Advisories are also available from the
GraphQL API