GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,856
Erlang
36
GitHub Actions
36
Go
2,488
Maven
5,000+
npm
4,104
NuGet
735
pip
3,923
Pub
12
RubyGems
945
Rust
1,017
Swift
39
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
162 advisories
Filter by severity
Ubee DVW2108 6.28.1017 and DVW2110 6.28.2012 devices allow remote attackers to discover...
Critical
Unreviewed
CVE-2018-20400
was published
May 13, 2022
TEKNOTEL CBW700N 81.447.392110.729.024 devices allow remote attackers to discover credentials via...
Critical
Unreviewed
CVE-2018-20391
was published
May 13, 2022
Thomson DWG849 STC0.01.16, DWG850-4 ST9C.05.25, DWG855 ST80.20.26, and TWG870 STB2.01.36 devices...
Critical
Unreviewed
CVE-2018-20394
was published
May 13, 2022
mplus CBC383Z CBC383Z_mplus_MDr026 devices allow remote attackers to discover credentials via iso...
Critical
Unreviewed
CVE-2018-20397
was published
May 13, 2022
Skyworth CM5100 V1.1.0, CM5100-440 V1.2.1, CM5100-511 4.1.0.14, CM5100-GHD00 V1.2.2, and CM5100...
Critical
Unreviewed
CVE-2018-20398
was published
May 13, 2022
Kaonmedia CG2001-AN22A 1.2.1, CG2001-UDBNA 3.0.8, and CG2001-UN2NA 3.0.8 devices allow remote...
Critical
Unreviewed
CVE-2018-20390
was published
May 13, 2022
NETWAVE MNG6200 C4835805jrc12FU121413.cpr devices allow remote attackers to discover credentials...
Critical
Unreviewed
CVE-2018-20395
was published
May 13, 2022
NET&SYS MNG2120J 5.76.1006c and MNG6300 5.83.6305jrc2 devices allow remote attackers to discover...
Critical
Unreviewed
CVE-2018-20396
was published
May 13, 2022
Motorola SBG901 SBG901-2.10.1.1-GA-00-581-NOSH, SBG941 SBG941-2.11.0.0-GA-07-624-NOSH, and...
Critical
Unreviewed
CVE-2018-20399
was published
May 13, 2022
S-A WebSTAR DPC2100 v2.0.2r1256-060303 devices allow remote attackers to discover credentials via...
Critical
Unreviewed
CVE-2018-20392
was published
May 13, 2022
iNovo Broadband IB-8120-W21 139.4410mp1.004200.002 and IB-8120-W21E1 139.4410mp1.3921132mp1.899...
Critical
Unreviewed
CVE-2018-20384
was published
May 13, 2022
Bnmux BCW700J 5.20.7, BCW710J 5.30.6a, and BCW710J2 5.30.16 devices allow remote attackers to...
Critical
Unreviewed
CVE-2018-20387
was published
May 13, 2022
Jiuzhou BCM93383WRG 139.4410mp1.3921132mp1.899.004404.004 devices allow remote attackers to...
Critical
Unreviewed
CVE-2018-20382
was published
May 13, 2022
Comtrend CM-6200un 123.447.007 and CM-6300n 123.553mp1.005 devices allow remote attackers to...
Critical
Unreviewed
CVE-2018-20388
was published
May 13, 2022
An issue was discovered on Foscam Opticam i5 devices with System Firmware 1.5.2.11 and...
Critical
Unreviewed
CVE-2018-19078
was published
May 13, 2022
ZyXEL VMG3312-B10B 1.00(AAPP.7) devices have a backdoor root account with the tTn3+Z@!Sr0O+...
Critical
Unreviewed
CVE-2018-18754
was published
May 13, 2022
Samsung SCX-6545X V2.00.03.01 03-23-2012 devices allows remote attackers to discover cleartext...
Critical
Unreviewed
CVE-2018-17969
was published
May 13, 2022
Telegram Desktop (aka tdesktop) 1.3.16 alpha, when "Use proxy" is enabled, sends credentials and...
Critical
Unreviewed
CVE-2018-17613
was published
May 13, 2022
In SolarWinds SFTP/SCP Server through 2018-09-10, the configuration file is world readable and...
Critical
Unreviewed
CVE-2018-16791
was published
May 13, 2022
An issue was discovered in CIRCONTROL Open Charge Point Protocol (OCPP) before 1.5.0, as used in...
Critical
Unreviewed
CVE-2018-16669
was published
May 13, 2022
Insecure Cryptographic Storage of credentials in com.vestiacom.qbeecamera_preferences.xml in the...
Critical
Unreviewed
CVE-2018-16223
was published
May 13, 2022
An issue was discovered on D-Link DIR-809 A1 through 1.09, A2 through 1.11, and Guest Zone...
Critical
Unreviewed
CVE-2018-14081
was published
May 13, 2022
ubiQuoss Switch VP5208A creates a bcm_password file at /cgi-bin/ with the user credentials in...
Critical
Unreviewed
CVE-2018-10024
was published
May 13, 2022
Battelle V2I Hub 2.5.1 could allow a remote attacker to obtain sensitive information, caused by...
Critical
Unreviewed
CVE-2018-1000627
was published
May 13, 2022
Telerik.Web.UI.dll in Progress Telerik UI for ASP.NET AJAX before R2 2017 SP1 and Sitefinity...
Critical
Unreviewed
CVE-2017-9248
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API