GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Malware advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
108
GitHub Actions
54
Go
4,475
Maven
5,000+
npm
5,000+
NuGet
1,091
pip
5,000+
Pub
13
RubyGems
1,144
Rust
1,510
Swift
62
Unreviewed advisories
All unreviewed
5,000+
Malware advisories
All malware
5,000+
Composer
1
Go
18
Maven
2
npm
5,000+
NuGet
264
pip
5,000+
RubyGems
3,510
Rust
10
743 advisories
Filter by severity
IBM Planning Analytics Advanced Certified Containers 3.1.0 through 3.1.4 could allow a local...
Moderate
Unreviewed
CVE-2025-36105
was published
Mar 10, 2026
The SAP Customer Checkout application exhibits certain design characteristics that involve...
Moderate
Unreviewed
CVE-2026-24311
was published
Mar 10, 2026
An issue pertaining to CWE-312: Cleartext Storage of Sensitive Information was discovered in...
Moderate
Unreviewed
CVE-2025-70050
was published
Mar 9, 2026
Weintek cMT-3072XH2 easyweb v2.1.53, OS v20231011 was discovered to stroe credentials in...
High
Unreviewed
CVE-2024-55027
was published
Mar 3, 2026
Rancher doesn't properly sanitize credentials in cluster template answers
Critical
CVE-2021-36783
was published
for
github.com/rancher/rancher
(Go)
Mar 3, 2026
Cleartext Storage of Sensitive Information (CWE-312) in the Command Centre Mobile Client on...
Moderate
Unreviewed
CVE-2025-47147
was published
Mar 3, 2026
The OpenID Connect (OIDC) authentication configuration in PowerShell
Universal before 2026.1.3...
Moderate
Unreviewed
CVE-2026-3277
was published
Feb 27, 2026
Sensitive
user account information is not encrypted in the database in Devolutions Server 2025.3...
Moderate
Unreviewed
CVE-2026-3221
was published
Feb 25, 2026
Binardat 10G08-0800GSM network switch firmware versions prior to V300SP10260209 store a user...
High
Unreviewed
CVE-2026-27520
was published
Feb 24, 2026
Cleartext storage of sensitive information in Azure Compute Gallery allows an authorized attacker...
Moderate
Unreviewed
CVE-2026-23655
was published
Feb 10, 2026
In SAP Business One, sensitive information is written to the application�s memory dump files...
Moderate
Unreviewed
CVE-2026-24319
was published
Feb 10, 2026
Insecure Storage of Sensitive Information vulnerability in Birtech Information Technologies...
Moderate
Unreviewed
CVE-2025-10464
was published
Feb 9, 2026
FUXA Unauthenticated Exposure of Plaintext Database Credentials
Critical
CVE-2026-25751
was published
for
fuxa-server
(npm)
Feb 5, 2026
IBM Concert 1.0.0 through 2.1.0 stores potentially sensitive information in log files that could...
Moderate
Unreviewed
CVE-2025-33081
was published
Feb 4, 2026
A vulnerability in the migration script for Brocade SANnav before 3.0 could allow the collection...
Moderate
Unreviewed
CVE-2025-12774
was published
Feb 3, 2026
A vulnerability in Brocade SANnav before 2.4.0b prints the
Password-Based Encryption (PBE) key...
High
Unreviewed
CVE-2025-12679
was published
Feb 3, 2026
Brocade SANnav before 2.4.0b logs the Brocade Fabric OS Switch admin password on the SANnav...
High
Unreviewed
CVE-2025-12772
was published
Feb 3, 2026
Cleartext Storage of Sensitive Information vulnerability in OpenText™ Vertica allows Retrieve...
Moderate
Unreviewed
CVE-2024-9432
was published
Jan 30, 2026
With physical access to the device and enough time an attacker can desolder the flash memory,...
High
Unreviewed
CVE-2025-59105
was published
Jan 26, 2026
The web server of the Access Manager offers a functionality to download a backup of the local...
Moderate
Unreviewed
CVE-2025-59102
was published
Jan 26, 2026
Dell ECS, versions 3.8.1.0 through 3.8.1.7, and Dell ObjectScale versions prior to 4.2.0.0,...
Moderate
Unreviewed
CVE-2026-22276
was published
Jan 23, 2026
A security issue was discovered within the legacy Ansible playbook component of Verve Asset...
High
Unreviewed
CVE-2025-14377
was published
Jan 20, 2026
FaceSentry Access Control System 6.4.8 contains a cleartext password storage vulnerability that...
Moderate
Unreviewed
CVE-2019-25279
was published
Jan 8, 2026
A flaw has been found in ZZCMS 2025. Affected by this vulnerability is an unknown functionality...
Moderate
Unreviewed
CVE-2025-14836
was published
Dec 18, 2025
Cleartext Storage of Sensitive Information vulnerability in Mitsubishi Electric GT Designer3...
Moderate
Unreviewed
CVE-2025-11009
was published
Dec 17, 2025
ProTip!
Advisories are also available from the
GraphQL API