GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,826
Erlang
36
GitHub Actions
32
Go
2,426
Maven
5,000+
npm
4,058
NuGet
723
pip
3,849
Pub
12
RubyGems
941
Rust
1,006
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
40 advisories
Filter by severity
A low privileged local attacker can abuse the affected service by using a hardcoded cryptographic...
Moderate
Unreviewed
CVE-2025-2810
was published
Aug 5, 2025
A potential security vulnerability has been
identified in the Poly Clariti Manager for versions...
Moderate
Unreviewed
CVE-2025-43483
was published
Jul 23, 2025
Use of hardcoded cryptographic key in Encryption.cs in hMailServer 5.8.6 and 5.6.9-beta allows...
Moderate
Unreviewed
CVE-2025-52374
was published
Jul 21, 2025
Use of hardcoded cryptographic key in BlowFish.cpp in hMailServer 5.8.6 and 5.6.9-beta allows...
Moderate
Unreviewed
CVE-2025-52373
was published
Jul 21, 2025
Use of Hard-coded Cryptographic Key vulnerability in ABB RMC-100, ABB RMC-100 LITE.
When the...
Moderate
Unreviewed
CVE-2025-6074
was published
Jul 3, 2025
Use of Hard-coded Cryptographic Key vulnerability in ABB RMC-100, ABB RMC-100 LITE.
An attacker...
Moderate
Unreviewed
CVE-2025-6071
was published
Jul 3, 2025
Arris VIP1113 devices through 2025-05-30 with KreaTV SDK have a firmware decryption key of...
Moderate
Unreviewed
CVE-2025-49164
was published
Jun 3, 2025
The certificate and private key used for providing transport layer security for connections to...
Moderate
Unreviewed
CVE-2025-48417
was published
May 21, 2025
Use of hard-coded cryptographic key vulnerability in i-PRO Configuration Tool affects the network...
Moderate
Unreviewed
CVE-2025-32730
was published
Apr 24, 2025
A use of hard-coded cryptographic key to encrypt sensitive data vulnerability [CWE-321] in...
Moderate
Unreviewed
CVE-2024-33504
was published
Feb 11, 2025
A hardcoded key in Ivanti Connect Secure before version 22.7R2.3 and Ivanti Policy Secure before...
Moderate
Unreviewed
CVE-2024-13842
was published
Feb 11, 2025
SolarWinds Web Help Desk was found to have a hardcoded cryptographic key that could allow the...
Moderate
Unreviewed
CVE-2024-28989
was published
Feb 11, 2025
Successful exploitation of this vulnerability could allow an attacker (who needs to have Admin...
Moderate
Unreviewed
CVE-2024-47256
was published
Feb 6, 2025
ECOVACS robot lawn mowers and vacuums use a shared, static secret key to encrypt BLE GATT...
Moderate
Unreviewed
CVE-2024-12078
was published
Jan 23, 2025
Use of hard-coded cryptographic key issue exists in AIPHONE IX SYSTEM, IXG SYSTEM, and System...
Moderate
Unreviewed
CVE-2024-45837
was published
Nov 22, 2024
Use of hard-coded cryptographic key issue exists in "Kura Sushi Official App Produced by EPARK"...
Moderate
Unreviewed
CVE-2024-52614
was published
Nov 20, 2024
The DVC from TRCore encrypts files using a hardcoded key. Attackers can use this key to decrypt...
Moderate
Unreviewed
CVE-2024-11308
was published
Nov 18, 2024
A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 3). The affected...
Moderate
Unreviewed
CVE-2024-46889
was published
Nov 12, 2024
IBM Maximo Application Suite - Monitor Component 8.10, 8.11, and 9.0 could disclose information...
Moderate
Unreviewed
CVE-2024-38314
was published
Oct 24, 2024
A vulnerability in the backup feature of Cisco UCS Central Software could allow an attacker with...
Moderate
Unreviewed
CVE-2024-20280
was published
Oct 16, 2024
A hard-coded AES key vulnerability was reported in the Motorola GuideMe application, along with...
Moderate
Unreviewed
CVE-2024-3109
was published
May 3, 2024
Softing Secure Integration Server Hardcoded Cryptographic Key Information Disclosure...
Moderate
Unreviewed
CVE-2023-39482
was published
May 3, 2024
HiveOS through 0.6-102@191212 ships with SSH host keys baked into the installation image, which...
Moderate
Unreviewed
CVE-2019-19754
was published
Apr 30, 2024
Use of Hard-coded Cryptographic Key vulnerability in OpenText™ Exceed Turbo X affecting versions...
Moderate
Unreviewed
CVE-2023-38535
was published
Mar 14, 2024
A vulnerability, which was classified as critical, has been found in osuuu LightPicture up to 1.2...
Moderate
Unreviewed
CVE-2024-1920
was published
Feb 27, 2024
ProTip!
Advisories are also available from the
GraphQL API