GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,700
Maven
5,000+
npm
4,327
NuGet
761
pip
4,099
Pub
12
RubyGems
958
Rust
1,064
Swift
45
Unreviewed advisories
All unreviewed
5,000+
2,886 advisories
Filter by severity
phpMyAdmin remote variable manipulation
Moderate
CVE-2011-2505
was published
for
phpmyadmin/phpmyadmin
(Composer)
May 14, 2022
Elgg Reflected XSS Vulnerability
Moderate
CVE-2011-2935
was published
for
elgg/elgg
(Composer)
Apr 22, 2022
WWBN AVideo recovery notification bypass vulnerability
Moderate
CVE-2023-50172
was published
for
wwbn/avideo
(Composer)
Jan 10, 2024
Typo3 XSS Vulnerabilities
Moderate
CVE-2011-4632
was published
for
typo3/cms
(Composer)
Apr 22, 2022
Typo3 Information Disclosure
Moderate
CVE-2011-4900
was published
for
typo3/cms
(Composer)
Apr 22, 2022
Typo3 Arbitrary Information Disclosure
Moderate
CVE-2011-4901
was published
for
typo3/cms
(Composer)
Apr 22, 2022
Typo3 Arbitrary File Delete
Moderate
CVE-2011-4902
was published
for
typo3/cms
(Composer)
Apr 22, 2022
Typo3 Improper Access Control
Moderate
CVE-2011-4904
was published
for
typo3/cms
(Composer)
Apr 22, 2022
Typo3 Information Disclosure
Moderate
CVE-2011-4627
was published
for
typo3/cms
(Composer)
Apr 22, 2022
Typo3 XSS in RemoveXSS function
Moderate
CVE-2011-4903
was published
for
typo3/cms
(Composer)
Apr 22, 2022
Silverstripe XSS Vulnerabilities
Moderate
CVE-2012-4968
was published
for
silverstripe/framework
(Composer)
May 17, 2022
Zend Framework XEE Vulnerability
Moderate
CVE-2012-6531
was published
for
zendframework/zendframework1
(Composer)
May 17, 2022
Zend Framework XXE Vulnerability
Moderate
CVE-2012-5657
was published
for
zendframework/zendframework1
(Composer)
May 17, 2022
Zend Framework XEE Vulnerability
Moderate
CVE-2012-6532
was published
for
zendframework/zendframework1
(Composer)
May 17, 2022
Typo3 Backend History Module Vulnerable to XSS
Moderate
CVE-2012-6146
was published
for
typo3/cms
(Composer)
May 17, 2022
Typo3 Install Tool XSS Vulnerability
Moderate
CVE-2012-3531
was published
for
typo3/cms
(Composer)
May 17, 2022
Typo3 API XSS Vulnerability
Moderate
CVE-2012-3530
was published
for
typo3/cms
(Composer)
May 17, 2022
ForkCMS Directory Traversal vulnerability
Moderate
CVE-2012-1207
was published
for
forkcms/forkcms
(Composer)
May 17, 2022
Typo3 Exception Handler XSS
Moderate
CVE-2012-2112
was published
for
typo3/cms
(Composer)
May 17, 2022
Typo3 Backend History Module Vulnerable to SQL Injection
Moderate
CVE-2012-6144
was published
for
typo3/cms
(Composer)
May 17, 2022
Fork CMS Multiple XSS Vulnerabilities
Moderate
CVE-2012-1188
was published
for
forkcms/forkcms
(Composer)
May 17, 2022
Elefant CMS Multiple XSS Vulnerabilities
Moderate
CVE-2012-1296
was published
for
elefant/cms
(Composer)
May 17, 2022
Fork CMS XSS via Highlight Parameter
Moderate
CVE-2012-1209
was published
for
forkcms/forkcms
(Composer)
May 14, 2022
Moodle Exposes Sensitive User Information
Moderate
CVE-2012-2353
was published
for
moodle/moodle
(Composer)
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API