GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,750
Maven
5,000+
npm
4,353
NuGet
765
pip
4,114
Pub
12
RubyGems
960
Rust
1,069
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
280,602 advisories
Filter by severity
The Kingcabs theme for WordPress is vulnerable to Stored Cross-Site Scripting via the ...
Moderate
Unreviewed
CVE-2025-7058
was published
Dec 13, 2025
A security vulnerability has been detected in code-projects Prison Management System 2.0....
Moderate
Unreviewed
CVE-2025-14590
was published
Dec 13, 2025
A vulnerability was found in code-projects Student File Management System 1.0. Affected by this...
Moderate
Unreviewed
CVE-2025-14619
was published
Dec 13, 2025
A vulnerability has been found in Jehovahs Witnesses JW Library App up to 15.5.1 on Android....
Moderate
Unreviewed
CVE-2025-14617
was published
Dec 13, 2025
A security vulnerability has been detected in tiny-rdm Tiny RDM up to 1.2.5. Affected by this...
Low
Unreviewed
CVE-2025-14606
was published
Dec 13, 2025
ShineLan-X contains a set of credentials for an FTP server was found within the firmware,...
Critical
Unreviewed
CVE-2025-36747
was published
Dec 13, 2025
The Easy Theme Options plugin for WordPress is vulnerable to Missing Authorization in all...
Moderate
Unreviewed
CVE-2025-14367
was published
Dec 13, 2025
The JAY Login & Register plugin for WordPress is vulnerable to authentication bypass in versions...
Critical
Unreviewed
CVE-2025-14440
was published
Dec 13, 2025
The Popover Windows plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions...
Moderate
Unreviewed
CVE-2025-14394
was published
Dec 13, 2025
The Quick Testimonials plugin for WordPress is vulnerable to Stored Cross-Site Scripting via...
Moderate
Unreviewed
CVE-2025-14378
was published
Dec 13, 2025
The 404 Solution plugin for WordPress is vulnerable to SQL Injection in all versions up to, and...
Moderate
Unreviewed
CVE-2025-14477
was published
Dec 13, 2025
The Image Slider by Ays- Responsive Slider and Carousel plugin for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2025-14454
was published
Dec 13, 2025
The Popover Windows plugin for WordPress is vulnerable to unauthorized modification of data due...
Moderate
Unreviewed
CVE-2025-14395
was published
Dec 13, 2025
The Popup Builder (Easy Notify Lite) plugin for WordPress is vulnerable to unauthorized...
Moderate
Unreviewed
CVE-2025-14446
was published
Dec 13, 2025
The Extensive VC Addons for WPBakery page builder plugin for WordPress is vulnerable to Local...
High
Unreviewed
CVE-2025-14475
was published
Dec 13, 2025
The Lucky Draw Contests plugin for WordPress is vulnerable to Cross-Site Request Forgery in all...
Moderate
Unreviewed
CVE-2025-14462
was published
Dec 13, 2025
The Doubly – Cross Domain Copy Paste for WordPress plugin for WordPress is vulnerable to PHP...
High
Unreviewed
CVE-2025-14476
was published
Dec 13, 2025
The Solutions Ad Manager plugin for WordPress is vulnerable to Open Redirect in all versions up...
Moderate
Unreviewed
CVE-2025-14451
was published
Dec 13, 2025
The Userback plugin for WordPress is vulnerable to unauthorized access of data due to a missing...
Moderate
Unreviewed
CVE-2025-14540
was published
Dec 13, 2025
A security flaw has been discovered in itsourcecode Student Management System 1.0. This...
Moderate
Unreviewed
CVE-2025-14588
was published
Dec 13, 2025
A vulnerability was identified in itsourcecode Online Pet Shop Management System 1.0. This...
Moderate
Unreviewed
CVE-2025-14587
was published
Dec 13, 2025
A weakness has been identified in code-projects Prison Management System 2.0. This issue affects...
Moderate
Unreviewed
CVE-2025-14589
was published
Dec 13, 2025
The Postem Ipsum plugin for WordPress is vulnerable to unauthorized modification of data to...
High
Unreviewed
CVE-2025-14397
was published
Dec 13, 2025
The AnnunciFunebri Impresa plugin for WordPress is vulnerable to unauthorized modification of...
Moderate
Unreviewed
CVE-2025-14447
was published
Dec 13, 2025
The Eyewear prescription form plugin for WordPress is vulnerable to Missing Authorization in all...
Moderate
Unreviewed
CVE-2025-14366
was published
Dec 13, 2025
ProTip!
Advisories are also available from the
GraphQL API