GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,476
Erlang
33
GitHub Actions
24
Go
2,207
Maven
5,000+
npm
3,858
NuGet
696
pip
3,639
Pub
12
RubyGems
913
Rust
918
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
249,572 advisories
Filter by severity
Reflected Cross-Site Scripting (XSS) vulnerability in version 1.0 of the Clinic Queuing System....
Moderate
Unreviewed
CVE-2025-2870
was published
Mar 28, 2025
The Administrator Z plugin for WordPress is vulnerable to unauthorized modification of data that...
High
Unreviewed
CVE-2025-2815
was published
Mar 28, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-31432
was published
Mar 28, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-31093
was published
Mar 28, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-31096
was published
Mar 28, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-31099
was published
Mar 28, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2025-31102
was published
Mar 28, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-31090
was published
Mar 28, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-31434
was published
Mar 28, 2025
Cross-Site Request Forgery (CSRF) vulnerability in nertworks NertWorks All in One Social Share...
Moderate
Unreviewed
CVE-2025-31447
was published
Mar 28, 2025
Cross-Site Request Forgery (CSRF) vulnerability in tobias_.MerZ Browser Caching with .htaccess...
Moderate
Unreviewed
CVE-2025-31439
was published
Mar 28, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-31437
was published
Mar 28, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-31433
was published
Mar 28, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Krzysztof Furtak KK I Like It allows Stored...
High
Unreviewed
CVE-2025-31443
was published
Mar 28, 2025
Cross-Site Request Forgery (CSRF) vulnerability in youtag ShowTime Slideshow allows Stored XSS....
High
Unreviewed
CVE-2025-31444
was published
Mar 28, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Strategy11 Team Terms of Use allows Stored XSS...
High
Unreviewed
CVE-2025-31440
was published
Mar 28, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Efficient Scripts Microblog Poster allows...
High
Unreviewed
CVE-2025-31435
was published
Mar 28, 2025
Cross-Site Request Forgery (CSRF) vulnerability in misteraon Simple Trackback Disabler allows...
Moderate
Unreviewed
CVE-2025-31448
was published
Mar 28, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Benoit De Boeck WP Supersized allows Cross...
Moderate
Unreviewed
CVE-2025-31438
was published
Mar 28, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-31450
was published
Mar 28, 2025
Cross-Site Request Forgery (CSRF) vulnerability in EricH The Visitor Counter allows Stored XSS....
High
Unreviewed
CVE-2025-31449
was published
Mar 28, 2025
Insertion of Sensitive Information Into Sent Data vulnerability in Shipmondo Shipmondo – A...
Moderate
Unreviewed
CVE-2025-27001
was published
Mar 28, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-31077
was published
Mar 28, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-31094
was published
Mar 28, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-31073
was published
Mar 28, 2025
ProTip!
Advisories are also available from the
GraphQL API