Skip to content

GitHub Advisory Database

Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.

39,018 advisories

Loading
nopCommerce 4.90.0 is vulnerable to Cross Site Scripting (XSS) in the product management... Moderate Unreviewed
CVE-2025-65592 was published Dec 16, 2025
Libredesk has Improper Neutralization of HTML Tags in a Web Page High
GHSA-wh6m-h6f4-rjf4 was published for github.com/abhinavxd/libredesk (Go) Dec 16, 2025
PlayerIUnknown
Credited to PlayerIUnknown
Parse Server has a Cross-Site Scripting (XSS) vulnerability via Unescaped Mustache Template Variables Moderate
CVE-2025-68115 was published for parse-server (npm) Dec 16, 2025
yueyueL mtrezza
Credited to yueyueL and mtrezza
WebsiteBaker 2.13.3 contains a stored cross-site scripting vulnerability that allows... Moderate Unreviewed
CVE-2023-53903 was published Dec 16, 2025
In JetBrains TeamCity before 2025.11 reflected XSS was possible on VCS Root setup Moderate Unreviewed
CVE-2025-68165 was published Dec 16, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')... Moderate Unreviewed
CVE-2025-68080 was published Dec 16, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')... Moderate Unreviewed
CVE-2025-67986 was published Dec 16, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')... Moderate Unreviewed
CVE-2025-68076 was published Dec 16, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')... Moderate Unreviewed
CVE-2025-68078 was published Dec 16, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')... Moderate Unreviewed
CVE-2025-68070 was published Dec 16, 2025
ProTip! Advisories are also available from the GraphQL API