GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,757
Erlang
35
GitHub Actions
29
Go
2,328
Maven
5,000+
npm
3,965
NuGet
712
pip
3,745
Pub
12
RubyGems
921
Rust
974
Swift
38
Unreviewed advisories
All unreviewed
5,000+
51 advisories
Filter by severity
The SIMCom SIM7600G modem supports an undocumented AT command, which allows an attacker to...
Unknown
Unreviewed
CVE-2025-26412
was published
Jun 11, 2025
An OpenSSH daemon listens on TCP port 22. There is a hard-coded entry in the "/etc/shadow" file...
High
Unreviewed
CVE-2025-48416
was published
May 21, 2025
The TeleMessage archiving backend through 2025-05-05 holds cleartext copies of messages from TM...
Low
Unreviewed
CVE-2025-47729
was published
May 8, 2025
Kentico Xperience before 13.0.178 has a specific set of allowed ContentUploader file extensions...
High
Unreviewed
CVE-2025-32370
was published
Apr 6, 2025
The Go1 also known as "The World's First Intelligence Bionic Quadruped Robot Companion of...
Moderate
Unreviewed
CVE-2025-2894
was published
Mar 28, 2025
Espressif ESP32 chips allow 29 hidden HCI commands, such as 0xFC02 (Write memory).
Moderate
Unreviewed
CVE-2025-27840
was published
Mar 8, 2025
The "update" binary in the firmware of the affected product sends attempts to mount to a hard...
High
Unreviewed
CVE-2025-1204
was published
Feb 25, 2025
Multiple Elber products suffer from an unauthenticated device configuration and client-side...
High
Unreviewed
CVE-2025-0675
was published
Feb 7, 2025
The affected product sends out remote access requests to a hard-coded IP address, bypassing...
High
Unreviewed
CVE-2025-0626
was published
Jan 30, 2025
A static login vulnerability exists in the wctrls functionality of Wavlink AC3000 M33A8.V5030...
Critical
Unreviewed
CVE-2024-39754
was published
Jan 14, 2025
The product is vulnerable to pass-the-hash attacks in combination with hardcoded credentials of...
Critical
Unreviewed
CVE-2024-10773
was published
Dec 6, 2024
Hidden functionality issue in multiple digital video recorders provided by TAKENAKA ENGINEERING...
High
Unreviewed
CVE-2024-47001
was published
Sep 18, 2024
Certain models of D-Link wireless routers have a hidden functionality where the telnet service is...
Critical
Unreviewed
CVE-2024-45697
was published
Sep 16, 2024
Certain models of D-Link wireless routers contain hidden functionality. By sending specific...
High
Unreviewed
CVE-2024-45696
was published
Sep 16, 2024
A vulnerability has been identified in SIMATIC Reader RF610R CMIIT (6GT2811-6BC10-2AA0) (All...
High
Unreviewed
CVE-2024-37990
was published
Sep 10, 2024
A vulnerability has been identified in SIMATIC Reader RF610R CMIIT (6GT2811-6BC10-2AA0) (All...
Moderate
Unreviewed
CVE-2024-37994
was published
Sep 10, 2024
A vulnerability in Cisco Smart Licensing Utility could allow an unauthenticated, remote attacker...
Critical
Unreviewed
CVE-2024-20439
was published
Sep 4, 2024
Longse model LBH30FE200W cameras, as well as products based on this device, provide an...
High
Unreviewed
CVE-2024-5633
was published
Jul 9, 2024
A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All...
Low
Unreviewed
CVE-2024-33583
was published
May 14, 2024
NEC Platforms DT900 and DT900S Series 5.0.0.0 – v5.3.4.4, v5.4.0.0 – v5.6.0.20 allows an attacker...
Critical
Unreviewed
CVE-2024-3016
was published
May 14, 2024
Hidden Functionality vulnerability in NEC Corporation Aterm WG1800HP4, WG1200HS3, WG1900HP2,...
Critical
Unreviewed
CVE-2024-28011
was published
Mar 28, 2024
A vulnerability has been identified in SENTRON 3KC ATC6 Expansion Module Ethernet (3KC9000-8TL75)...
High
Unreviewed
CVE-2024-22044
was published
Mar 12, 2024
PAX Android based POS devices with PayDroid_8.1.0_Sagittarius_V11.1.45_20230314 or earlier can...
Moderate
Unreviewed
CVE-2023-42134
was published
Jan 15, 2024
A vulnerability was found in Poly Trio 8800 7.2.6.0019 and classified as critical. Affected by...
Moderate
Unreviewed
CVE-2023-4467
was published
Dec 29, 2023
A vulnerability classified as problematic was found in Typecho 1.2.1. Affected by this...
Low
Unreviewed
CVE-2023-6614
was published
Dec 8, 2023
ProTip!
Advisories are also available from the
GraphQL API