Skip to content

GitHub Advisory Database

Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.

2,886 advisories

Loading
Insufficient Entropy in PHPServerMon PRNG Moderate
CVE-2021-4240 was published for phpservermon/phpservermon (Composer) Nov 16, 2022
Shopware vulnerable to Cross-site Scripting Moderate
CVE-2020-13971 was published for shopware/platform (Composer) May 24, 2022
Logic error in dolibarr Moderate
CVE-2022-0174 was published for dolibarr/dolibarr (Composer) Jan 12, 2022
Improper Access Control in snipe-it Moderate
CVE-2022-0178 was published for snipe/snipe-it (Composer) Jan 26, 2022
Improper Privilege Management in Snipe-IT Moderate
CVE-2022-0579 was published for snipe/snipe-it (Composer) Feb 15, 2022
Exposure of Sensitive Information in snipe/snipe-it Moderate
CVE-2022-0569 was published for snipe/snipe-it (Composer) Feb 15, 2022
Exposure of Sensitive Information to an Unauthorized Actor in librenms Moderate
CVE-2022-0588 was published for librenms/librenms (Composer) Feb 16, 2022
Moodle sensitive information disclosure Moderate
CVE-2018-10889 was published for moodle/moodle (Composer) May 13, 2022
Insertion of Sensitive Information into Log File in typo3/cms-core Moderate
CVE-2022-31047 was published for typo3/cms (Composer) Jun 17, 2022
mhuber84 derhansen
Credited to mhuber84 and derhansen
Flarum Core Leaks PII Moderate
CVE-2018-19133 was published for flarum/framework (Composer) May 14, 2022
LibreNMS XSS Vulnerability Moderate
CVE-2018-18478 was published for librenms/librenms (Composer) May 14, 2022
Dolibarr ERP and CRM contain XSS Vulnerability Moderate
CVE-2018-19799 was published for dolibarr/dolibarr (Composer) May 14, 2022
Pimcore SQLi Vulnerability Moderate
CVE-2018-14058 was published for pimcore/pimcore (Composer) May 14, 2022
Pimcore XSS Vulnerability Moderate
CVE-2018-14059 was published for pimcore/pimcore (Composer) May 14, 2022
Tiki Wiki CMS XSS Vulnerability Moderate
CVE-2018-7302 was published for tikiwiki/tiki-manager (Composer) May 14, 2022
Moodle XSS Vulnerability Moderate
CVE-2018-1045 was published for moodle/moodle (Composer) May 14, 2022
phpMyAdmin XSS Vulnerability Moderate
CVE-2018-12581 was published for phpmyadmin/phpmyadmin (Composer) May 14, 2022
LibreNMS Arbitrary File Read Moderate
CVE-2017-16759 was published for librenms/librenms (Composer) May 13, 2022
Kirby XSS Vulnerability Moderate
CVE-2017-16807 was published for getkirby/cms (Composer) May 14, 2022
Shopware XXE Vulnerability Moderate
CVE-2017-18357 was published for shopware/shopware (Composer) May 14, 2022
Shopware XSS Vulnerability Moderate
CVE-2017-15374 was published for shopware/shopware (Composer) May 14, 2022
Cross-Site Scripting in CKEditor4 WordCount Plugin Moderate
GHSA-m8fw-p3cr-6jqc was published for typo3/cms-rte-ckeditor (Composer) Jul 25, 2023
sypets ohader
bnf
Credited to sypets, ohader, and bnf
Silverstripe CMS User Enumeration Moderate
CVE-2017-12849 was published for silverstripe/cms (Composer) May 17, 2022
Silverstripe CMS XSS Vulnerability Moderate
CVE-2017-14498 was published for silverstripe/cms (Composer) May 17, 2022
Dolibarr ERP and CRM contain XSS Vulnerability Moderate
CVE-2017-7887 was published for dolibarr/dolibarr (Composer) May 17, 2022
ProTip! Advisories are also available from the GraphQL API