GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,871
Erlang
37
GitHub Actions
36
Go
2,517
Maven
5,000+
npm
4,154
NuGet
736
pip
3,953
Pub
12
RubyGems
946
Rust
1,026
Swift
39
Unreviewed advisories
All unreviewed
5,000+
37,069 advisories
Filter by severity
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-58612
was published
Sep 3, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-58623
was published
Sep 3, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-58626
was published
Sep 3, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-58602
was published
Sep 3, 2025
phpgurukul Complaint Management System 2.0 is vulnerable to Cross Site Scripting (XSS) in admin...
High
Unreviewed
CVE-2025-57151
was published
Sep 3, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-58596
was published
Sep 3, 2025
phpgurukul Complaint Management System in PHP 2.0 is vulnerable to Cross Site Scripting (XSS) in...
High
Unreviewed
CVE-2025-57150
was published
Sep 3, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-58593
was published
Sep 3, 2025
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-0878
was published
Sep 3, 2025
An Cross-Site Scripting (XSS) vulnerability in DeepSeek R1 through V3.1 allows a remote attacker...
Critical
Unreviewed
CVE-2025-26210
was published
Sep 3, 2025
A flaw has been found in PHPGurukul Small CRM 4.0. Affected by this issue is some unknown...
Moderate
Unreviewed
CVE-2025-9834
was published
Sep 2, 2025
Many Notes 0.10.1 is vulnerable to Cross Site Scripting (XSS), which allows malicious Markdown...
Moderate
Unreviewed
CVE-2025-55474
was published
Sep 2, 2025
A cross-site scripting (XSS) vulnerability exists in the PDF preview functionality of uTools thru...
Moderate
Unreviewed
CVE-2025-51966
was published
Sep 2, 2025
Asian Arts Talents Foundation (AATF) Website v5.1.x and Docker version 2024.12.8.1 are vulnerable...
Moderate
Unreviewed
CVE-2025-55473
was published
Sep 2, 2025
Cross Site Scripting vulnerability in Infor Global HR GHR v.11.23.03.00.21 and before allows a...
Moderate
Unreviewed
CVE-2024-51423
was published
Sep 2, 2025
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-12974
was published
Sep 2, 2025
A vulnerability was found in thinkgem JeeSite up to 5.12.1. This affects the function decodeUrl2...
Moderate
Unreviewed
CVE-2025-9796
was published
Sep 2, 2025
A security flaw has been discovered in O2OA up to 10.0-410. The impacted element is an unknown...
Moderate
Unreviewed
CVE-2025-9734
was published
Aug 31, 2025
The Amministrazione Trasparente plugin for WordPress is vulnerable to Stored Cross-Site Scripting...
Moderate
Unreviewed
CVE-2025-5083
was published
Aug 31, 2025
A security flaw has been discovered in O2OA up to 10.0-410. This affects an unknown part of the...
Moderate
Unreviewed
CVE-2025-9718
was published
Aug 31, 2025
A vulnerability was determined in O2OA up to 10.0-410. Affected by this vulnerability is an...
Moderate
Unreviewed
CVE-2025-9716
was published
Aug 31, 2025
A vulnerability was identified in O2OA up to 10.0-410. Affected by this issue is some unknown...
Moderate
Unreviewed
CVE-2025-9717
was published
Aug 31, 2025
A weakness has been identified in O2OA up to 10.0-410. This vulnerability affects unknown code of...
Moderate
Unreviewed
CVE-2025-9719
was published
Aug 31, 2025
A vulnerability has been found in O2OA up to 10.0-410. Affected by this vulnerability is an...
Moderate
Unreviewed
CVE-2025-9682
was published
Aug 30, 2025
A vulnerability was found in O2OA up to 10.0-410. Affected by this issue is some unknown...
Moderate
Unreviewed
CVE-2025-9683
was published
Aug 30, 2025
ProTip!
Advisories are also available from the
GraphQL API