GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Malware advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
116
GitHub Actions
55
Go
4,701
Maven
5,000+
npm
5,000+
NuGet
1,104
pip
5,000+
Pub
13
RubyGems
1,150
Rust
1,566
Swift
62
Unreviewed advisories
All unreviewed
5,000+
Malware advisories
All malware
5,000+
Composer
2
Go
18
Maven
2
npm
5,000+
NuGet
264
pip
5,000+
RubyGems
3,510
Rust
19
166 advisories
Filter by severity
XING CPTrans-ME-X contains a Use of Hard-coded Password (CWE-259). Anyone with the knowledge of...
Critical
Unreviewed
CVE-2026-70403
was published
Sep 4, 2026
A vulnerability was identified in Inbox Foundry ActiveInbox Extension up to 7.10.24 on Chrome....
Moderate
Unreviewed
CVE-2026-82808
was published
Aug 31, 2026
A vulnerability was identified in vas3k TaxHacker up to 0.8.2. The affected element is the...
Moderate
Unreviewed
CVE-2026-78062
was published
Aug 23, 2026
In Zabbix 7.4 the cryptographic key used for signing Frontend sessions has been erroneously...
High
Unreviewed
CVE-2026-23933
was published
Aug 18, 2026
A security flaw has been discovered in LB-LINK X-PRO 1.0.22-20231206. This affects an unknown...
High
Unreviewed
CVE-2026-19901
was published
Aug 15, 2026
A vulnerability was identified in LB-LINK X-PRO 1.0.22-20231206. The impacted element is an...
High
Unreviewed
CVE-2026-19900
was published
Aug 15, 2026
A vulnerability in the web interface of Cisco Secure Firewall Management Center (FMC) Software...
Moderate
Unreviewed
CVE-2026-20316
was published
Jul 29, 2026
T3 Technology CPE models T625Pro v1.0.07, T6825G v1.0.03, and T7281 v1.0.03 were discovered to...
Critical
Unreviewed
CVE-2026-35905
was published
Jun 4, 2026
Active IQ OneCollect version 2.7.3 contains hard-coded credentials that could allow an...
Moderate
Unreviewed
CVE-2026-22055
was published
Jun 4, 2026
Active IQ Config Advisor version 6.7.3 contains hard-coded credentials that could allow an...
Moderate
Unreviewed
CVE-2026-22054
was published
Jun 4, 2026
Eppendorf BioFlo 320 is vulnerable to due to VNC server using a hard-coded password. If a remote...
Critical
Unreviewed
CVE-2026-7251
was published
May 26, 2026
A flaw has been found in PicoTronica e-Clinic Healthcare System ECHS 5.7. The impacted element is...
Moderate
Unreviewed
CVE-2026-8032
was published
May 6, 2026
AstrBot Makes Use of Hard-coded Password
Moderate
CVE-2026-7579
was published
for
AstrBot
(pip)
May 1, 2026
A vulnerability has been found in liangliangyy DjangoBlog up to 2.1.0.0. The impacted element is...
Moderate
Unreviewed
CVE-2026-6610
was published
Apr 20, 2026
A security flaw has been discovered in liangliangyy DjangoBlog up to 2.1.0.0. This affects an...
Moderate
Unreviewed
CVE-2026-6578
was published
Apr 20, 2026
A vulnerability has been found in osuuu LightPicture up to 1.2.2. This issue affects some unknown...
Moderate
Unreviewed
CVE-2026-6574
was published
Apr 19, 2026
Siklu EtherHaul 8010 siklu-uimage-nxp-enc-10_6_2-18707-ea552dc00b devices have a static root...
Moderate
Unreviewed
CVE-2025-57175
was published
Apr 8, 2026
Hardcoded Password Vulnerability have been found in CENTUM. Affected products contain a hardcoded...
Low
Unreviewed
CVE-2025-7741
was published
Mar 30, 2026
A vulnerability has been found in wandb OpenUI up to 0.0.0.0/1.0. This impacts an unknown...
Low
Unreviewed
CVE-2026-4993
was published
Mar 28, 2026
A vulnerability has been found in Yi Technology YI Home Camera 2 2.1.1_20171024151200. The...
High
Unreviewed
CVE-2026-4475
was published
Mar 20, 2026
A flaw has been found in INDEX Conferences & Exhibitions Organization YWF BPOF APGCS App up to 1...
Low
Unreviewed
CVE-2026-4219
was published
Mar 16, 2026
A weakness has been identified in i-SENS SmartLog App up to 2.6.8 on Android. This affects an...
Moderate
Unreviewed
CVE-2026-4216
was published
Mar 16, 2026
A use of hard-coded password vulnerability has been reported to affect Hyper Data Protector. The...
Moderate
Unreviewed
CVE-2025-59388
was published
Mar 12, 2026
An issue pertaining to CWE-259: Use of Hard-coded Password was discovered in oslabs-beta...
Critical
Unreviewed
CVE-2025-70041
was published
Mar 11, 2026
Tenda G1V3.1si V16.01.7.8 Firmware V16.01.7.8 was discovered to contain a hardcoded password...
High
Unreviewed
CVE-2025-70802
was published
Mar 10, 2026
ProTip!
Advisories are also available from the
GraphQL API