GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,750
Maven
5,000+
npm
4,353
NuGet
765
pip
4,114
Pub
12
RubyGems
960
Rust
1,069
Swift
45
Unreviewed advisories
All unreviewed
5,000+
145,500 advisories
Filter by severity
Mattermost Missing Authentication for Critical Function
Moderate
CVE-2025-6226
was published
for
github.com/mattermost/mattermost-server
(Go)
Jul 18, 2025
An insufficient session expiration vulnerability [CWE-613] in FortiSandbox FortiSandbox version 4...
Moderate
Unreviewed
CVE-2024-27779
was published
Jul 18, 2025
The Malcure Malware Scanner — #1 Toolset for WordPress Malware Removal plugin for WordPress is...
Moderate
Unreviewed
CVE-2025-7772
was published
Jul 18, 2025
An open redirect vulnerability has been identified in Grafana OSS organization switching...
Moderate
Unreviewed
CVE-2025-6197
was published
Jul 18, 2025
An improper access control vulnerability [CWE-284] in FortiIsolator version 2.4.4, version 2.4.3,...
Moderate
Unreviewed
CVE-2024-32124
was published
Jul 18, 2025
The Block Editor Gallery Slider plugin for WordPress is vulnerable to unauthorized modification...
Moderate
Unreviewed
CVE-2025-6726
was published
Jul 18, 2025
The Useful Tab Block – Responsive & AMP-Compatible plugin for WordPress is vulnerable to Stored...
Moderate
Unreviewed
CVE-2025-5754
was published
Jul 18, 2025
The Listly: Listicles For WordPress plugin for WordPress is vulnerable to unauthorized...
Moderate
Unreviewed
CVE-2025-5811
was published
Jul 18, 2025
The Forminator Forms – Contact Form, Payment Form & Custom Form Builder plugin for WordPress is...
Moderate
Unreviewed
CVE-2025-7638
was published
Jul 18, 2025
The Crowdfunding for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site...
Moderate
Unreviewed
CVE-2025-5767
was published
Jul 18, 2025
The Copymatic – AI Content Writer & Generator plugin for WordPress is vulnerable to Cross-Site...
Moderate
Unreviewed
CVE-2025-6781
was published
Jul 18, 2025
The Terms descriptions plugin for WordPress is vulnerable to Stored Cross-Site Scripting via...
Moderate
Unreviewed
CVE-2025-6719
was published
Jul 18, 2025
The Plugin Pengiriman WooCommerce Kurir Reguler, Instan, Kargo – Biteship plugin for WordPress is...
Moderate
Unreviewed
CVE-2025-5816
was published
Jul 18, 2025
The Map My Locations plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
Moderate
Unreviewed
CVE-2025-7660
was published
Jul 18, 2025
The Vertical scroll image slideshow gallery plugin for WordPress is vulnerable to Stored Cross...
Moderate
Unreviewed
CVE-2025-5752
was published
Jul 18, 2025
The Ruven Themes: Shortcodes plugin for WordPress is vulnerable to Stored Cross-Site Scripting...
Moderate
Unreviewed
CVE-2025-7648
was published
Jul 18, 2025
The Testimonial Post type plugin for WordPress is vulnerable to Stored Cross-Site Scripting via...
Moderate
Unreviewed
CVE-2025-5800
was published
Jul 18, 2025
The B1.lt plugin for WordPress is vulnerable to SQL Injection via the 'id' parameter in all...
Moderate
Unreviewed
CVE-2025-6717
was published
Jul 18, 2025
The Zuppler Online Ordering plugin for WordPress is vulnerable to Cross-Site Request Forgery in...
Moderate
Unreviewed
CVE-2025-6053
was published
Jul 18, 2025
The Knowledge Base plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
Moderate
Unreviewed
CVE-2025-7431
was published
Jul 18, 2025
A vulnerability, which was classified as problematic, has been found in PHPGurukul Art Gallery...
Moderate
Unreviewed
CVE-2025-7767
was published
Jul 18, 2025
A vulnerability classified as critical was found in code-projects Online Appointment Booking...
Moderate
Unreviewed
CVE-2025-7765
was published
Jul 18, 2025
A vulnerability classified as critical has been found in code-projects Online Appointment Booking...
Moderate
Unreviewed
CVE-2025-7764
was published
Jul 18, 2025
A vulnerability, which was classified as problematic, was found in thinkgem JeeSite up to 5.12.0....
Moderate
Unreviewed
CVE-2025-7763
was published
Jul 18, 2025
A vulnerability in the ascgshell, of
Brocade ASCG before 3.3.0 stores any command executed in...
Moderate
Unreviewed
CVE-2025-7397
was published
Jul 18, 2025
ProTip!
Advisories are also available from the
GraphQL API