GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,701
Maven
5,000+
npm
4,328
NuGet
761
pip
4,103
Pub
12
RubyGems
958
Rust
1,064
Swift
45
Unreviewed advisories
All unreviewed
5,000+
2,886 advisories
Filter by severity
Insufficient Entropy in PHPServerMon PRNG
Moderate
CVE-2021-4240
was published
for
phpservermon/phpservermon
(Composer)
Nov 16, 2022
Shopware vulnerable to Cross-site Scripting
Moderate
CVE-2020-13971
was published
for
shopware/platform
(Composer)
May 24, 2022
Logic error in dolibarr
Moderate
CVE-2022-0174
was published
for
dolibarr/dolibarr
(Composer)
Jan 12, 2022
Improper Access Control in snipe-it
Moderate
CVE-2022-0178
was published
for
snipe/snipe-it
(Composer)
Jan 26, 2022
Improper Privilege Management in Snipe-IT
Moderate
CVE-2022-0579
was published
for
snipe/snipe-it
(Composer)
Feb 15, 2022
Exposure of Sensitive Information in snipe/snipe-it
Moderate
CVE-2022-0569
was published
for
snipe/snipe-it
(Composer)
Feb 15, 2022
Exposure of Sensitive Information to an Unauthorized Actor in librenms
Moderate
CVE-2022-0588
was published
for
librenms/librenms
(Composer)
Feb 16, 2022
Moodle sensitive information disclosure
Moderate
CVE-2018-10889
was published
for
moodle/moodle
(Composer)
May 13, 2022
Insertion of Sensitive Information into Log File in typo3/cms-core
Moderate
CVE-2022-31047
was published
for
typo3/cms
(Composer)
Jun 17, 2022
Flarum Core Leaks PII
Moderate
CVE-2018-19133
was published
for
flarum/framework
(Composer)
May 14, 2022
LibreNMS XSS Vulnerability
Moderate
CVE-2018-18478
was published
for
librenms/librenms
(Composer)
May 14, 2022
Dolibarr ERP and CRM contain XSS Vulnerability
Moderate
CVE-2018-19799
was published
for
dolibarr/dolibarr
(Composer)
May 14, 2022
Pimcore SQLi Vulnerability
Moderate
CVE-2018-14058
was published
for
pimcore/pimcore
(Composer)
May 14, 2022
Pimcore XSS Vulnerability
Moderate
CVE-2018-14059
was published
for
pimcore/pimcore
(Composer)
May 14, 2022
Tiki Wiki CMS XSS Vulnerability
Moderate
CVE-2018-7302
was published
for
tikiwiki/tiki-manager
(Composer)
May 14, 2022
Moodle XSS Vulnerability
Moderate
CVE-2018-1045
was published
for
moodle/moodle
(Composer)
May 14, 2022
phpMyAdmin XSS Vulnerability
Moderate
CVE-2018-12581
was published
for
phpmyadmin/phpmyadmin
(Composer)
May 14, 2022
LibreNMS Arbitrary File Read
Moderate
CVE-2017-16759
was published
for
librenms/librenms
(Composer)
May 13, 2022
Kirby XSS Vulnerability
Moderate
CVE-2017-16807
was published
for
getkirby/cms
(Composer)
May 14, 2022
Shopware XXE Vulnerability
Moderate
CVE-2017-18357
was published
for
shopware/shopware
(Composer)
May 14, 2022
Shopware XSS Vulnerability
Moderate
CVE-2017-15374
was published
for
shopware/shopware
(Composer)
May 14, 2022
Cross-Site Scripting in CKEditor4 WordCount Plugin
Moderate
GHSA-m8fw-p3cr-6jqc
was published
for
typo3/cms-rte-ckeditor
(Composer)
Jul 25, 2023
Silverstripe CMS User Enumeration
Moderate
CVE-2017-12849
was published
for
silverstripe/cms
(Composer)
May 17, 2022
Silverstripe CMS XSS Vulnerability
Moderate
CVE-2017-14498
was published
for
silverstripe/cms
(Composer)
May 17, 2022
Dolibarr ERP and CRM contain XSS Vulnerability
Moderate
CVE-2017-7887
was published
for
dolibarr/dolibarr
(Composer)
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API