GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
301,177 advisories
Filter by severity
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-58825
was published
Sep 5, 2025
Improper Control of Generation of Code ('Code Injection') vulnerability in PickPlugins Job Board...
Low
Unreviewed
CVE-2025-58827
was published
Sep 5, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-58836
was published
Sep 5, 2025
Cross-Site Request Forgery (CSRF) vulnerability in brijrajs WooCommerce Single Page Checkout...
Moderate
Unreviewed
CVE-2025-58804
was published
Sep 5, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-58805
was published
Sep 5, 2025
Deserialization of Untrusted Data vulnerability in Rubel Miah Aitasi Coming Soon allows Object...
High
Unreviewed
CVE-2025-58815
was published
Sep 5, 2025
Cross-Site Request Forgery (CSRF) vulnerability in themelocation Custom WooCommerce Checkout...
Moderate
Unreviewed
CVE-2025-58799
was published
Sep 5, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Dsingh Purge Varnish Cache allows Stored XSS....
High
Unreviewed
CVE-2025-58807
was published
Sep 5, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-58811
was published
Sep 5, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-58826
was published
Sep 5, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-58822
was published
Sep 5, 2025
Cross-Site Request Forgery (CSRF) vulnerability in snagysandor Parallax Scrolling Enllax.js...
Moderate
Unreviewed
CVE-2025-58831
was published
Sep 5, 2025
Server-Side Request Forgery (SSRF) vulnerability in aitool Ai Auto Tool Content Writing Assistant...
Moderate
Unreviewed
CVE-2025-58829
was published
Sep 5, 2025
Unrestricted Upload of File with Dangerous Type vulnerability in CreedAlly Bulk Featured Image...
Critical
Unreviewed
CVE-2025-58819
was published
Sep 5, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2025-58797
was published
Sep 5, 2025
Missing Authorization vulnerability in Payoneer Checkout Payoneer Checkout allows Content...
Moderate
Unreviewed
CVE-2025-58795
was published
Sep 5, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-58793
was published
Sep 5, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-58788
was published
Sep 5, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-58791
was published
Sep 5, 2025
Missing Authorization vulnerability in gutentor Gutentor allows Exploiting Incorrectly Configured...
Moderate
Unreviewed
CVE-2025-58783
was published
Sep 5, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-58789
was published
Sep 5, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Bjorn Manintveld BCM Duplicate Menu allows...
Moderate
Unreviewed
CVE-2025-58798
was published
Sep 5, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-58786
was published
Sep 5, 2025
Missing Authorization vulnerability in jbhovik Ray Enterprise Translation allows Exploiting...
Moderate
Unreviewed
CVE-2025-58785
was published
Sep 5, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-58790
was published
Sep 5, 2025
ProTip!
Advisories are also available from the
GraphQL API