GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
301,177 advisories
Filter by severity
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Rami...
Low
Unreviewed
CVE-2025-58866
was published
Sep 5, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-58871
was published
Sep 5, 2025
Cross-Site Request Forgery (CSRF) vulnerability in ablancodev Woocommerce Notify Updated Product...
Moderate
Unreviewed
CVE-2025-58856
was published
Sep 5, 2025
Insertion of Sensitive Information Into Sent Data vulnerability in premiumbizthemes Simple Price...
Moderate
Unreviewed
CVE-2025-58872
was published
Sep 5, 2025
Improper Neutralization of Formula Elements in a CSV File vulnerability in Denis V (Artprima) AP...
High
Unreviewed
CVE-2025-58855
was published
Sep 5, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2025-58857
was published
Sep 5, 2025
Cross-Site Request Forgery (CSRF) vulnerability in themelocation Custom WooCommerce Checkout...
Moderate
Unreviewed
CVE-2025-58799
was published
Sep 5, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Dsingh Purge Varnish Cache allows Stored XSS....
High
Unreviewed
CVE-2025-58807
was published
Sep 5, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-58811
was published
Sep 5, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-58826
was published
Sep 5, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-58822
was published
Sep 5, 2025
Cross-Site Request Forgery (CSRF) vulnerability in snagysandor Parallax Scrolling Enllax.js...
Moderate
Unreviewed
CVE-2025-58831
was published
Sep 5, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Steve Truman WP Email Template allows Cross...
Moderate
Unreviewed
CVE-2025-58800
was published
Sep 5, 2025
Cross-Site Request Forgery (CSRF) vulnerability in KCS Responder allows Cross Site Request...
Moderate
Unreviewed
CVE-2025-58801
was published
Sep 5, 2025
Missing Authorization vulnerability in Plugin Devs Product Carousel Slider for Elementor allows...
Low
Unreviewed
CVE-2025-58816
was published
Sep 5, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-58810
was published
Sep 5, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Nick Ciske To Lead For Salesforce allows...
High
Unreviewed
CVE-2025-58809
was published
Sep 5, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-58820
was published
Sep 5, 2025
Missing Authorization vulnerability in DesertThemes SoftMe allows Exploiting Incorrectly...
Moderate
Unreviewed
CVE-2025-58817
was published
Sep 5, 2025
Cross-Site Request Forgery (CSRF) vulnerability in SwiftNinjaPro Developer Tools Blocker allows...
Moderate
Unreviewed
CVE-2025-58818
was published
Sep 5, 2025
Cross-Site Request Forgery (CSRF) vulnerability in brijrajs WooCommerce Single Page Checkout...
Moderate
Unreviewed
CVE-2025-58804
was published
Sep 5, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-58805
was published
Sep 5, 2025
Deserialization of Untrusted Data vulnerability in Rubel Miah Aitasi Coming Soon allows Object...
High
Unreviewed
CVE-2025-58815
was published
Sep 5, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-58814
was published
Sep 5, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-58821
was published
Sep 5, 2025
ProTip!
Advisories are also available from the
GraphQL API