GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,293
Erlang
31
GitHub Actions
21
Go
2,061
Maven
5,000+
npm
3,744
NuGet
668
pip
3,423
Pub
12
RubyGems
892
Rust
875
Swift
36
Unreviewed advisories
All unreviewed
5,000+
175 advisories
Filter by severity
Sony Bravia Smart TV devices allow remote attackers to retrieve the static Wi-Fi password (used...
High
Unreviewed
CVE-2019-11336
was published
May 24, 2022
Northern.tech CFEngine Enterprise 3.12.1 has Insecure Permissions.
High
Unreviewed
CVE-2019-9929
was published
May 24, 2022
Cloud Foundry BOSH 267.x versions prior to v267.14.0, and BOSH 270.x versions prior to v270.1.1,...
High
Unreviewed
CVE-2019-11271
was published
May 24, 2022
BIG-IP APM Edge Client before version 7.1.8 (7180.2019.508.705) logs the full apm session ID in...
High
Unreviewed
CVE-2019-6656
was published
May 24, 2022
An issue was discovered on TerraMaster FS-210 4.0.19 devices. An unauthenticated attacker can...
High
Unreviewed
CVE-2019-18385
was published
May 24, 2022
A vulnerability in the audit logging component of Cisco Digital Network Architecture (DNA) Center...
High
Unreviewed
CVE-2020-3281
was published
May 24, 2022
Mattermost Sever fails to redact the DB username and password before emitting an application log...
High
Unreviewed
CVE-2023-2514
was published
Jul 6, 2023
Planning Analytics Cartridge for Cloud Pak for Data 4.0 exposes sensitive information in logs...
High
Unreviewed
CVE-2023-26026
was published
Jul 19, 2023
Planning Analytics Cartridge for Cloud Pak for Data 4.0 exposes sensitive information in logs...
High
Unreviewed
CVE-2023-26023
was published
Jul 19, 2023
Information exposure vulnerability in IBERMATICA RPS 2019, which exploitation could allow an...
High
Unreviewed
CVE-2023-3349
was published
Oct 3, 2023
The affected versions of MongoDB Atlas Kubernetes Operator may print sensitive information like...
High
Unreviewed
CVE-2023-0436
was published
Nov 14, 2023
Insertion of Sensitive Information into Log File vulnerability in Searchiq SearchIQ.This issue...
High
Unreviewed
CVE-2024-31259
was published
Apr 10, 2024
A remote attacker could leverage a vulnerability in Trend Micro Mobile Security (Enterprise) 9.8...
High
Unreviewed
CVE-2023-35695
was published
Jun 27, 2023
A vulnerability in Brocade SANnav before v2.3.1 and v2.3.0a prints Brocade Fabric OS switch...
High
Unreviewed
CVE-2024-29959
was published
Apr 19, 2024
When Brocade SANnav before v2.3.1 and v2.3.0a servers are configured in Disaster Recovery mode,...
High
Unreviewed
CVE-2024-29957
was published
Apr 19, 2024
A vulnerability in Brocade SANnav before v2.3.1 and v2.3.0a prints the encryption key in the...
High
Unreviewed
CVE-2024-29958
was published
Apr 19, 2024
Insertion of Sensitive Information into Log File vulnerability in Patrick Posner Simply Static...
High
Unreviewed
CVE-2024-32825
was published
Apr 24, 2024
Insertion of Sensitive Information into Log File vulnerability in Newsletters.This issue affects...
High
Unreviewed
CVE-2024-32953
was published
Apr 24, 2024
Insertion of Sensitive Information into Log File vulnerability in Solid Plugins Solid Affiliate...
High
Unreviewed
CVE-2024-33637
was published
Apr 29, 2024
Insertion of Sensitive Information into Log File vulnerability in Ghost Foundation Ghost.This...
High
Unreviewed
CVE-2024-34559
was published
May 14, 2024
HashiCorp Consul Template could reveal Vault secret contents in error messages
High
CVE-2022-38149
was published
for
github.com/hashicorp/consul-template
(Go)
Aug 18, 2022
apko Exposure of HTTP basic auth credentials in log output
High
CVE-2024-36127
was published
for
chainguard.dev/apko
(Go)
Jun 4, 2024
Insertion of Sensitive Information into Log File vulnerability in Code Parrots Easy Forms for...
High
Unreviewed
CVE-2024-25095
was published
Jun 4, 2024
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.1). A...
High
Unreviewed
CVE-2022-32254
was published
Jun 15, 2022
ProTip!
Advisories are also available from the
GraphQL API