GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,360
Erlang
33
GitHub Actions
22
Go
2,127
Maven
5,000+
npm
3,793
NuGet
683
pip
3,471
Pub
12
RubyGems
894
Rust
894
Swift
38
Unreviewed advisories
All unreviewed
5,000+
93 advisories
Filter by severity
Password stored in plain text by Jenkins VMware Lab Manager Slaves Plugin
Low
CVE-2020-2319
was published
for
org.jenkins-ci.plugins:labmanager
(Maven)
May 24, 2022
Password stored in plain text by Jenkins AppSpider Plugin
Low
CVE-2020-2314
was published
for
com.rapid7:jenkinsci-appspider-plugin
(Maven)
May 24, 2022
Access token stored in plain text by Jenkins SMS Notification Plugin
Low
CVE-2020-2297
was published
for
com.hoiio.jenkins:sms
(Maven)
May 24, 2022
Password stored in plain text by Jenkins couchdb-statistics Plugin
Low
CVE-2020-2291
was published
for
org.jenkins-ci.plugins:couchdb-statistics
(Maven)
May 24, 2022
An issue was discovered in the Login Password feature of the Password Manager component in Avast...
Low
Unreviewed
CVE-2020-15024
was published
May 24, 2022
A vulnerability has been identified in SIMATIC S7-300 CPU family (incl. related ET200 CPUs and...
Low
Unreviewed
CVE-2020-15791
was published
May 24, 2022
Unprotected Storage of Credentials vulnerability in McAfee Data Loss Prevention (DLP) for Mac...
Low
Unreviewed
CVE-2020-7307
was published
May 24, 2022
Unprotected Storage of Credentials vulnerability in McAfee Data Loss Prevention (DLP) for Mac...
Low
Unreviewed
CVE-2020-7306
was published
May 24, 2022
An issue was discovered in certain configurations of GNOME gnome-shell through 3.36.4. When...
Low
Unreviewed
CVE-2020-17489
was published
May 24, 2022
DIGITUS DA-70254 4-Port Gigabit Network Hub 2.073.000.E0008 devices allow an attacker on the same...
Low
Unreviewed
CVE-2020-15062
was published
May 24, 2022
TP-Link USB Network Server TL-PS310U devices before 2.079.000.t0210 allow an attacker on the same...
Low
Unreviewed
CVE-2020-15054
was published
May 24, 2022
Lindy 42633 4-Port USB 2.0 Gigabit Network Server 2.078.000 devices allow an attacker on the same...
Low
Unreviewed
CVE-2020-15058
was published
May 24, 2022
"BigFix Platform is storing clear text credentials within the system's memory. An attacker who is...
Low
Unreviewed
CVE-2020-4095
was published
May 24, 2022
Password stored in plain text by Jenkins HP ALM Quality Center Plugin
Low
CVE-2020-2218
was published
for
org.jenkins-ci.plugins:hp-quality-center
(Maven)
May 24, 2022
BIOTRONIK CardioMessenger II, The affected products use individual per-device credentials that...
Low
Unreviewed
CVE-2019-18256
was published
May 24, 2022
Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects...
Low
Unreviewed
CVE-2020-14426
was published
May 24, 2022
Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects...
Low
Unreviewed
CVE-2020-14428
was published
May 24, 2022
Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects...
Low
Unreviewed
CVE-2020-14427
was published
May 24, 2022
Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects...
Low
Unreviewed
CVE-2020-14431
was published
May 24, 2022
Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects...
Low
Unreviewed
CVE-2020-14430
was published
May 24, 2022
** DISPUTED ** Avira Free Antivirus through 15.0.2005.1866 allows local users to discover user...
Low
Unreviewed
CVE-2020-12680
was published
May 24, 2022
Improper masking of some secrets in Jenkins Credentials Binding Plugin
Low
CVE-2020-2182
was published
for
org.jenkins-ci.plugins:credentials-binding
(Maven)
May 24, 2022
NCH Express Invoice 7.25 allows local users to discover the cleartext password by reading the...
Low
Unreviewed
CVE-2020-11560
was published
May 24, 2022
The Redis data structure component used in ABB eSOMS versions 6.0 to 6.0.2 stores credentials in...
Low
Unreviewed
CVE-2019-19096
was published
May 24, 2022
Passwords stored in plain text by Jenkins Artifactory Plugin
Low
CVE-2020-2164
was published
for
org.jenkins-ci.plugins:artifactory
(Maven)
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API