GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,871
Erlang
37
GitHub Actions
36
Go
2,517
Maven
5,000+
npm
4,154
NuGet
736
pip
3,953
Pub
12
RubyGems
946
Rust
1,026
Swift
39
Unreviewed advisories
All unreviewed
5,000+
37,070 advisories
Filter by severity
A vulnerability was found in O2OA up to 10.0-410. Affected by this issue is some unknown...
Moderate
Unreviewed
CVE-2025-9683
was published
Aug 30, 2025
Cross Site Scripting vulnerability in copyparty v.1.9.1 allows a local attacker to execute...
High
Unreviewed
CVE-2023-41471
was published
Aug 29, 2025
SolidInvoice 2.3.7 and v.2.3.8 is vulnerable to Cross Site Scripting (XSS) in the client's...
Moderate
Unreviewed
CVE-2025-55580
was published
Aug 29, 2025
SolidInvoice 2.3.7 and fixed in v.2.3.8 is vulnerable to Cross Site Scripting (XSS) in the Tax...
Moderate
Unreviewed
CVE-2025-55579
was published
Aug 29, 2025
A cross-site scripting (XSS) vulnerability has been reported to affect Photo Station. If a remote...
Low
Unreviewed
CVE-2024-12923
was published
Aug 29, 2025
A cross-site scripting (XSS) vulnerability has been reported to affect several QNAP operating...
High
Unreviewed
CVE-2025-22483
was published
Aug 29, 2025
A vulnerability was detected in O2OA up to 10.0-410. This issue affects some unknown processing...
Moderate
Unreviewed
CVE-2025-9657
was published
Aug 29, 2025
A flaw has been found in O2OA up to 10.0-410. Impacted is an unknown function of the file ...
Moderate
Unreviewed
CVE-2025-9658
was published
Aug 29, 2025
A vulnerability has been found in O2OA up to 10.0-410. The affected element is an unknown...
Moderate
Unreviewed
CVE-2025-9659
was published
Aug 29, 2025
A security vulnerability has been detected in PHPGurukul Directory Management System 2.0. This...
Moderate
Unreviewed
CVE-2025-9656
was published
Aug 29, 2025
A weakness has been identified in mtons mblog up to 3.5.0. This issue affects some unknown...
Moderate
Unreviewed
CVE-2025-9647
was published
Aug 29, 2025
A vulnerability was identified in Portabilis i-Educar up to 2.10. Affected by this vulnerability...
Moderate
Unreviewed
CVE-2025-9653
was published
Aug 29, 2025
A vulnerability was determined in Portabilis i-Educar up to 2.10. Affected is an unknown function...
Moderate
Unreviewed
CVE-2025-9652
was published
Aug 29, 2025
A weakness has been identified in O2OA up to 10.0-410. This affects an unknown part of the file ...
Moderate
Unreviewed
CVE-2025-9655
was published
Aug 29, 2025
A security flaw has been discovered in O2OA up to 10.0-410. This vulnerability affects unknown...
Moderate
Unreviewed
CVE-2025-9646
was published
Aug 29, 2025
Cross-Site Scripting (XSS) vulnerability in OpenAtlas v8.9.0 from the Austrian Centre for Digital...
Moderate
Unreviewed
CVE-2025-40705
was published
Aug 29, 2025
Cross-Site Scripting (XSS) vulnerability in OpenAtlas v8.9.0 from the Austrian Centre for Digital...
Moderate
Unreviewed
CVE-2025-40706
was published
Aug 29, 2025
Cross-Site Scripting (XSS) vulnerability in OpenAtlas v8.9.0 from the Austrian Centre for Digital...
Moderate
Unreviewed
CVE-2025-40704
was published
Aug 29, 2025
Cross-Site Scripting (XSS) vulnerability in OpenAtlas v8.9.0 from the Austrian Centre for Digital...
Moderate
Unreviewed
CVE-2025-40703
was published
Aug 29, 2025
Cross-Site Scripting (XSS) vulnerability in OpenAtlas v8.9.0 from the Austrian Centre for Digital...
Moderate
Unreviewed
CVE-2025-40702
was published
Aug 29, 2025
Cross-Site Scripting (XSS) vulnerability in OpenAtlas v8.9.0 from the Austrian Centre for Digital...
Moderate
Unreviewed
CVE-2025-40708
was published
Aug 29, 2025
Cross-Site Scripting (XSS) vulnerability in OpenAtlas v8.9.0 from the Austrian Centre for Digital...
Moderate
Unreviewed
CVE-2025-40707
was published
Aug 29, 2025
Cross-Site Scripting (XSS) vulnerability in OpenAtlas v8.9.0 from the Austrian Centre for Digital...
Moderate
Unreviewed
CVE-2025-40709
was published
Aug 29, 2025
The Events Addon for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting...
Moderate
Unreviewed
CVE-2025-8150
was published
Aug 29, 2025
Improper neutralization of input during web page generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-13987
was published
Aug 29, 2025
ProTip!
Advisories are also available from the
GraphQL API