GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,333
Erlang
31
GitHub Actions
22
Go
2,095
Maven
5,000+
npm
3,760
NuGet
678
pip
3,446
Pub
12
RubyGems
892
Rust
882
Swift
37
Unreviewed advisories
All unreviewed
5,000+
170 advisories
Filter by severity
Weak Password Requirements in calibreweb
High
CVE-2023-2106
was published
for
calibreweb
(pip)
Apr 15, 2023
eSOMS versions 4.0 to 6.0.3 do not enforce password complexity settings, potentially resulting in...
Moderate
Unreviewed
CVE-2019-19093
was published
May 24, 2022
IBM Spectrum Copy Data Management 2.2.13 and earlier has weak authentication and password rules...
High
Unreviewed
CVE-2021-39064
was published
Dec 14, 2021
A flaw was found in Samba, all versions starting samba 4.5.0 until samba 4.9.15, samba 4.10.10,...
Moderate
Unreviewed
CVE-2019-14833
was published
May 24, 2022
Answer has Weak Password Requirements
High
CVE-2023-4125
was published
for
github.com/answerdev/answer
(Go)
Aug 3, 2023
Weak Password Requirements in GitHub repository cloudexplorer-dev/cloudexplorer-lite prior to v 1...
Moderate
Unreviewed
CVE-2023-3423
was published
Jun 27, 2023
Apache InLong has Weak Password Requirements in Apache InLong
Critical
CVE-2023-31098
was published
for
org.apache.inlong:manager-pojo
(Maven)
Jul 6, 2023
Chunghwa Telecom NOKIA G-040W-Q has a vulnerability of weak password requirements. A remote...
High
Unreviewed
CVE-2023-41353
was published
Nov 3, 2023
A vulnerability was found in PHPGurukul Online Notes Sharing System 1.0. It has been declared as...
Low
Unreviewed
CVE-2023-7053
was published
Dec 22, 2023
A vulnerability, which was classified as problematic, was found in RRJ Nueva Ecija Engineer...
Low
Unreviewed
CVE-2024-0188
was published
Jan 2, 2024
A vulnerability was found in SourceCodester Engineers Online Portal 1.0 and classified as...
Low
Unreviewed
CVE-2024-0347
was published
Jan 10, 2024
Weak password requirement vulnerability
in Lamassu Bitcoin ATM Douro machines, in its 7.1...
Moderate
Unreviewed
CVE-2024-0676
was published
Jan 30, 2024
IBM Security Access Manager Container (IBM Security Verify Access Appliance 10.0.0.0 through 10.0...
High
Unreviewed
CVE-2023-43016
was published
Feb 3, 2024
IBM Security Access Manager Container 10.0.0.0 through 10.0.6.1 does not require that docker...
Moderate
Unreviewed
CVE-2023-38369
was published
Feb 7, 2024
IBM Tivoli Key Lifecycle Manager does not require that users should have strong passwords by...
Moderate
Unreviewed
CVE-2020-4574
was published
May 24, 2022
In Gradle Enterprise before 2023.1, a remote attacker may be able to gain access to a new...
Critical
Unreviewed
CVE-2023-49238
was published
Jan 9, 2024
Weak MySQL database root password in LaborOfficeFree affects version 19.10. This vulnerability...
Moderate
Unreviewed
CVE-2024-1345
was published
Feb 19, 2024
Weak MySQL database root password in LaborOfficeFree affects version 19.10. This vulnerability...
Moderate
Unreviewed
CVE-2024-1346
was published
Feb 19, 2024
IBM Engineering Requirements Management DOORS 9.7.2.7 does not require that users should have...
Moderate
Unreviewed
CVE-2023-50305
was published
Mar 1, 2024
IBM QRadar Suite Products 1.10.12.0 through 1.10.18.0 and IBM Cloud Pak for Security 1.10.0.0...
Moderate
Unreviewed
CVE-2024-22355
was published
Mar 3, 2024
** DISPUTED ** An issue was discovered in SMA Solar Technology products. All inverters have a...
Critical
Unreviewed
CVE-2017-9853
was published
May 13, 2022
In IQrouter through 3.3.1, the Lua function reset_password in the web-panel allows remote...
High
Unreviewed
CVE-2020-11966
was published
May 24, 2022
gpw generates shorter passwords than required
High
Unreviewed
CVE-2011-4931
was published
Apr 22, 2022
Western Digital My Cloud, My Cloud Mirror Gen2, My Cloud EX2 Ultra, My Cloud EX2100, My Cloud...
Critical
Unreviewed
CVE-2019-9950
was published
May 24, 2022
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V2.0 SP1)....
Critical
Unreviewed
CVE-2019-13918
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API