GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,813
Erlang
36
GitHub Actions
32
Go
2,396
Maven
5,000+
npm
4,037
NuGet
721
pip
3,827
Pub
12
RubyGems
932
Rust
1,001
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
157 advisories
Filter by severity
Brocade ASCG before 3.3.0 logs JSON
Web Tokens (JWT) in log files. An attacker with access to...
High
Unreviewed
CVE-2025-6391
was published
Jul 18, 2025
Dell Smart Dock Firmware, versions prior to 01.00.08.01, contain an Insertion of Sensitive...
High
Unreviewed
CVE-2025-36573
was published
Jun 12, 2025
A logging issue was addressed with improved data redaction. This issue is fixed in iPadOS 17.7.7,...
High
Unreviewed
CVE-2025-31213
was published
May 13, 2025
Insertion of Sensitive Information into Log File in Checkmk GmbH's Checkmk versions <2.3.0p29, <2...
High
Unreviewed
CVE-2025-2092
was published
Apr 22, 2025
In Splunk Enterprise versions below 9.4.1, 9.3.3, 9.2.5, and 9.1.8, and versions below 3.8.38 and...
High
Unreviewed
CVE-2025-20231
was published
Mar 27, 2025
Insertion of Sensitive Information into Log File vulnerability in DualCube MooWoodle allows...
High
Unreviewed
CVE-2025-24556
was published
Feb 3, 2025
Dell Networking Switches running Enterprise SONiC OS, version(s) prior to 4.4.1 and 4.2.3,...
High
Unreviewed
CVE-2025-23374
was published
Jan 30, 2025
A logging issue was addressed with improved data redaction. This issue is fixed in macOS Sequoia...
High
Unreviewed
CVE-2025-24169
was published
Jan 28, 2025
Insertion of Sensitive Information into Log File (CWE-532) in the Gallagher Command Centre Alarm...
High
Unreviewed
CVE-2024-42407
was published
Dec 12, 2024
AnyDesk through 8.1.0 on Windows, when Allow Direct Connections is enabled, inadvertently exposes...
High
Unreviewed
CVE-2024-52940
was published
Nov 18, 2024
A cleartext storage of sensitive information vulnerability in Palo Alto Networks Expedition...
High
Unreviewed
CVE-2024-9466
was published
Oct 9, 2024
Insertion of Sensitive Information into Log File vulnerability in Oceanic Software ValeApp allows...
High
Unreviewed
CVE-2024-8609
was published
Sep 27, 2024
A vulnerability in Cisco Smart Licensing Utility could allow an unauthenticated, remote attacker...
High
Unreviewed
CVE-2024-20440
was published
Sep 4, 2024
Passwords of agents and customers are displayed in plain text in the OTRS admin log module if...
High
Unreviewed
CVE-2024-43444
was published
Aug 26, 2024
AI Engine < 2.4.3 is susceptible to remote-code-execution (RCE) via Log Poisoning. The AI Engine...
High
Unreviewed
CVE-2024-6451
was published
Aug 19, 2024
A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All...
High
Unreviewed
CVE-2024-41978
was published
Aug 13, 2024
Multiple Exposure of sensitive information to an unauthorized actor vulnerabilities [CWE-200] in...
High
Unreviewed
CVE-2024-27784
was published
Jul 9, 2024
Under certain circumstances the Microsoft® Internet Information Server (IIS) used to host the C...
High
Unreviewed
CVE-2024-0912
was published
Jun 6, 2024
Insertion of Sensitive Information into Log File vulnerability in Code Parrots Easy Forms for...
High
Unreviewed
CVE-2024-25095
was published
Jun 4, 2024
Insertion of Sensitive Information into Log File vulnerability in Ghost Foundation Ghost.This...
High
Unreviewed
CVE-2024-34559
was published
May 14, 2024
spaces_plugin/app.py in SolidUI 0.4.0 has an unnecessary print statement for an OpenAI key. The...
High
Unreviewed
CVE-2024-34527
was published
May 6, 2024
Insertion of Sensitive Information into Log File vulnerability in Solid Plugins Solid Affiliate...
High
Unreviewed
CVE-2024-33637
was published
Apr 29, 2024
Insertion of Sensitive Information into Log File vulnerability in Newsletters.This issue affects...
High
Unreviewed
CVE-2024-32953
was published
Apr 24, 2024
Insertion of Sensitive Information into Log File vulnerability in Patrick Posner Simply Static...
High
Unreviewed
CVE-2024-32825
was published
Apr 24, 2024
When Brocade SANnav before v2.3.1 and v2.3.0a servers are configured in Disaster Recovery mode,...
High
Unreviewed
CVE-2024-29957
was published
Apr 19, 2024
ProTip!
Advisories are also available from the
GraphQL API