GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,324
Erlang
31
GitHub Actions
21
Go
2,087
Maven
5,000+
npm
3,751
NuGet
674
pip
3,437
Pub
12
RubyGems
892
Rust
881
Swift
37
Unreviewed advisories
All unreviewed
5,000+
102,407 advisories
Filter by severity
Cross-Site Request Forgery (CSRF) vulnerability in Kreg Steppe Auphonic Importer allows Stored...
High
Unreviewed
CVE-2025-23649
was published
Jan 16, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Mukesh Dak MD Custom content after or before...
High
Unreviewed
CVE-2025-23463
was published
Jan 16, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Scott Swezey Easy Tynt allows Cross Site...
High
Unreviewed
CVE-2025-23445
was published
Jan 16, 2025
Cross-Site Request Forgery (CSRF) vulnerability in mastersoftwaresolutions WP VTiger...
High
Unreviewed
CVE-2025-23455
was published
Jan 16, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Andy Chapman ECT Add to Cart Button allows...
High
Unreviewed
CVE-2025-23471
was published
Jan 16, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Somethinkodd.com Development Team EmailShroud...
High
Unreviewed
CVE-2025-23456
was published
Jan 16, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Vimal Ghorecha RSS News Scroller allows Stored...
High
Unreviewed
CVE-2025-23467
was published
Jan 16, 2025
Cross-Site Request Forgery (CSRF) vulnerability in isnowfy my-related-posts allows Stored XSS...
High
Unreviewed
CVE-2025-23476
was published
Jan 16, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2025-23452
was published
Jan 16, 2025
Cross-Site Request Forgery (CSRF) vulnerability in X Villamuera Visit Site Link enhanced allows...
High
Unreviewed
CVE-2025-23470
was published
Jan 16, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2025-23453
was published
Jan 16, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Oren Yomtov Mass Custom Fields Manager allows...
High
Unreviewed
CVE-2025-23430
was published
Jan 16, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2025-23438
was published
Jan 16, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Brian Novotny – Creative Software Design...
High
Unreviewed
CVE-2025-23424
was published
Jan 16, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2025-23429
was published
Jan 16, 2025
Cross-Site Request Forgery (CSRF) vulnerability in David Marcucci Password Protect Plugin for...
High
Unreviewed
CVE-2025-23435
was published
Jan 16, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Capa Wp-Scribd-List allows Stored XSS.This...
High
Unreviewed
CVE-2025-23436
was published
Jan 16, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Wizcrew Technologies go Social allows Stored...
High
Unreviewed
CVE-2025-23426
was published
Jan 16, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2025-23432
was published
Jan 16, 2025
Cross-Site Request Forgery (CSRF) vulnerability in matias s Shockingly Big IE6 Warning allows...
High
Unreviewed
CVE-2025-23442
was published
Jan 16, 2025
IBM CICS TX Advanced 10.1, 11.1, and Standard 11.1 is vulnerable to stored cross-site scripting....
High
Unreviewed
CVE-2024-41746
was published
Jan 16, 2025
Campcodes Cybercafe Management System v1.0 is vulnerable to SQL Injection in /ccms/view-user...
High
Unreviewed
CVE-2024-57162
was published
Jan 16, 2025
Information exposure in the PMB platform affecting versions 4.2.13 and earlier. This...
High
Unreviewed
CVE-2025-0472
was published
Jan 16, 2025
An unauthenticated remote attacker can cause a DoS in the controller due to uncontrolled resource...
High
Unreviewed
CVE-2018-25108
was published
Jan 16, 2025
A weak authentication in Fortinet FortiManager Cloud, FortiAnalyzer versions 7.6.0 through 7.6.1,...
High
Unreviewed
CVE-2024-50563
was published
Jan 16, 2025
ProTip!
Advisories are also available from the
GraphQL API