GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,871
Erlang
37
GitHub Actions
36
Go
2,517
Maven
5,000+
npm
4,154
NuGet
736
pip
3,953
Pub
12
RubyGems
946
Rust
1,026
Swift
39
Unreviewed advisories
All unreviewed
5,000+
1,563 advisories
Filter by severity
Server-Side Request Forgery (SSRF) vulnerability in Pik Online Yazılım Çözümleri A.Ş. Pik Online...
High
Unreviewed
CVE-2025-5260
was published
Aug 20, 2025
Apache EventMesh Vulnerable to Server-Side Request Forgery in WebhookUtil.java
Moderate
CVE-2024-39954
was published
for
org.apache.eventmesh:eventmesh-runtime
(Maven)
Aug 20, 2025
WP Crontrol Authenticated (Administrator+) plugin vulnerable to Blind Server-Side Request Forgery
Moderate
CVE-2025-8678
was published
for
johnbillion/wp-crontrol
(Composer)
Aug 19, 2025
ColdFusion versions 2025.1, 2023.13, 2021.19 and earlier are affected by a Server-Side Request...
Low
Unreviewed
CVE-2025-54234
was published
Aug 18, 2025
Server-Side Request Forgery (SSRF) vulnerability in Drupal AI SEO Link Advisor allows Server Side...
Moderate
Unreviewed
CVE-2025-8675
was published
Aug 15, 2025
The Quttera Web Malware Scanner plugin for WordPress is vulnerable to Server-Side Request Forgery...
Low
Unreviewed
CVE-2025-8013
was published
Aug 15, 2025
The B Slider- Gutenberg Slider Block for WP plugin for WordPress is vulnerable to Server-Side...
Moderate
Unreviewed
CVE-2025-8680
was published
Aug 15, 2025
Server-Side Request Forgery (SSRF) vulnerability in kodeshpa Simplified allows Server Side...
Moderate
Unreviewed
CVE-2025-53241
was published
Aug 14, 2025
Server-Side Request Forgery (SSRF) vulnerability in PressForward PressForward allows Server Side...
Moderate
Unreviewed
CVE-2025-28987
was published
Aug 14, 2025
Server side request forgery (SSRF) vulnerability in makeplane plane 0.23.1 via the password...
Critical
Unreviewed
CVE-2025-50251
was published
Aug 13, 2025
Server-side request forgery (ssrf) in Microsoft Office SharePoint allows an authorized attacker...
High
Unreviewed
CVE-2025-53760
was published
Aug 12, 2025
During an internal security assessment, a Server-Side Request Forgery (SSRF) vulnerability that...
Moderate
Unreviewed
CVE-2025-7622
was published
Aug 12, 2025
Server-Side Request Forgery (SSRF) in Omnissa Secure Email Gateway (SEG) in SEG prior to 2.32...
High
Unreviewed
CVE-2025-25235
was published
Aug 12, 2025
Omnissa Workspace ONE UEM contains a Server-Side Request Forgery (SSRF) Vulnerability. A...
Moderate
Unreviewed
CVE-2025-25229
was published
Aug 11, 2025
A vulnerability, which was classified as problematic, has been found in Vinades NukeViet up to 4...
Moderate
Unreviewed
CVE-2025-8772
was published
Aug 9, 2025
Liferay Portal and Liferay DXP vulnerable to Server-Side Request Forgery
Moderate
CVE-2025-4581
was published
for
com.liferay.portal:release.dxp.bom
(Maven)
Aug 9, 2025
Liferay Portal and Liferay DXP vulnerable to Server-Side Request Forgery
Moderate
CVE-2025-4655
was published
for
com.liferay.portal:release.dxp.bom
(Maven)
Aug 9, 2025
Azure OpenAI Elevation of Privilege Vulnerability
Critical
Unreviewed
CVE-2025-53767
was published
Aug 7, 2025
Bottinelli Informatical Vedo Suite 2024.17 is vulnerable to Server-side Request Forgery (SSRF) in...
Moderate
Unreviewed
CVE-2025-51058
was published
Aug 6, 2025
4C Strategies Exonaut before v21.6.2.1-1 was discovered to contain a Server-Side Request Forgery ...
Moderate
Unreviewed
CVE-2024-55399
was published
Aug 6, 2025
MCCMS v2.7.0 has an SSRF vulnerability located in the index() method of the sys\apps\controllers...
Moderate
Unreviewed
CVE-2025-50234
was published
Aug 6, 2025
A vulnerability was found in Exrick xboot up to 3.3.4. It has been rated as critical. This issue...
Moderate
Unreviewed
CVE-2025-8527
was published
Aug 5, 2025
A vulnerability classified as critical was found in cloudfavorites favorites-web up to 1.3.0....
Moderate
Unreviewed
CVE-2025-8529
was published
Aug 5, 2025
A vulnerability classified as critical was found in givanz Vvveb up to 1.0.5. This vulnerability...
Moderate
Unreviewed
CVE-2025-8520
was published
Aug 4, 2025
Grafana Infinity Datasource Plugin SSRF Vulnerability
Moderate
CVE-2025-8341
was published
for
github.com/grafana/grafana-infinity-datasource
(Go)
Aug 4, 2025
ProTip!
Advisories are also available from the
GraphQL API