GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,126
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,021
Swift
39
Unreviewed advisories
All unreviewed
5,000+
137,189 advisories
Filter by severity
A type confusion vulnerability in lib/NSSAuthenticator.php in ZendTo before v5.04-7 allows remote...
Moderate
Unreviewed
CVE-2025-32352
was published
Apr 5, 2025
The Simple Membership plugin for WordPress is vulnerable to Sensitive Information Exposure in all...
Moderate
Unreviewed
CVE-2024-11088
was published
Apr 5, 2025
The Link Library plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Link...
Moderate
Unreviewed
CVE-2025-2889
was published
Apr 5, 2025
A vulnerability has been found in qinguoyi TinyWebServer up to 1.0 and classified as critical....
Moderate
Unreviewed
CVE-2025-3268
was published
Apr 4, 2025
A vulnerability, which was classified as critical, was found in qinguoyi TinyWebServer up to 1.0....
Moderate
Unreviewed
CVE-2025-3267
was published
Apr 4, 2025
A vulnerability, which was classified as critical, has been found in qinguoyi TinyWebServer up to...
Moderate
Unreviewed
CVE-2025-3266
was published
Apr 4, 2025
A vulnerability classified as critical was found in PHPGurukul e-Diary Management System 1.0....
Moderate
Unreviewed
CVE-2025-3265
was published
Apr 4, 2025
rust-openssl Use-After-Free in `Md::fetch` and `Cipher::fetch`
Moderate
GHSA-4fcv-w3qc-ppgg
was published
for
openssl
(Rust)
Apr 4, 2025
Buffer Overflow vulnerability in compress_chunk_fuzzer with oss-fuzz on commit...
Moderate
Unreviewed
CVE-2025-29476
was published
Apr 4, 2025
An issue in fluent-bit v.3.7.2 allows a local attacker to cause a denial of service via the...
Moderate
Unreviewed
CVE-2025-29477
was published
Apr 4, 2025
Missing Authorization vulnerability in Ateeq Rafeeq RepairBuddy allows Exploiting Incorrectly...
Moderate
Unreviewed
CVE-2025-32277
was published
Apr 4, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Quý Lê 91 Administrator Z allows Cross Site...
Moderate
Unreviewed
CVE-2025-32276
was published
Apr 4, 2025
Cross-Site Request Forgery (CSRF) vulnerability in wprio Table Block by RioVizual allows Cross...
Moderate
Unreviewed
CVE-2025-32278
was published
Apr 4, 2025
A vulnerability has been found in xujiangfei admintwo 1.0 and classified as problematic. This...
Moderate
Unreviewed
CVE-2025-3252
was published
Apr 4, 2025
A vulnerability was found in xujiangfei admintwo 1.0 and classified as problematic. This issue...
Moderate
Unreviewed
CVE-2025-3253
was published
Apr 4, 2025
A vulnerability was found in xujiangfei admintwo 1.0. It has been rated as critical. Affected by...
Moderate
Unreviewed
CVE-2025-3256
was published
Apr 4, 2025
A vulnerability was found in xujiangfei admintwo 1.0. It has been classified as critical....
Moderate
Unreviewed
CVE-2025-3254
was published
Apr 4, 2025
A vulnerability was found in xujiangfei admintwo 1.0. It has been declared as problematic....
Moderate
Unreviewed
CVE-2025-3255
was published
Apr 4, 2025
A vulnerability classified as critical was found in PHPGurukul Old Age Home Management System 1.0...
Moderate
Unreviewed
CVE-2025-3258
was published
Apr 4, 2025
A vulnerability classified as problematic has been found in xujiangfei admintwo 1.0. This affects...
Moderate
Unreviewed
CVE-2025-3257
was published
Apr 4, 2025
Cross-Site Request Forgery (CSRF) vulnerability in ablancodev Woocommerce Role Pricing allows...
Moderate
Unreviewed
CVE-2025-32271
was published
Apr 4, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Broadstreet Broadstreet allows Cross Site...
Moderate
Unreviewed
CVE-2025-32270
was published
Apr 4, 2025
Cross-Site Request Forgery (CSRF) vulnerability in freetobook Freetobook Responsive Widget allows...
Moderate
Unreviewed
CVE-2025-32273
was published
Apr 4, 2025
Cross-Site Request Forgery (CSRF) vulnerability in PickPlugins Wishlist allows Cross Site Request...
Moderate
Unreviewed
CVE-2025-32272
was published
Apr 4, 2025
Cross-Site Request Forgery (CSRF) vulnerability in axew3 WP w3all phpBB allows Cross Site Request...
Moderate
Unreviewed
CVE-2025-32274
was published
Apr 4, 2025
ProTip!
Advisories are also available from the
GraphQL API