Skip to content

GitHub Advisory Database

Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.

2,886 advisories

Loading
Information exposure in microweber Moderate
CVE-2023-2239 was published for microweber/microweber (Composer) Apr 22, 2023
Cross-site Scripting in thorsten/phpmyfaq Moderate
CVE-2023-1875 was published for thorsten/phpmyfaq (Composer) Apr 22, 2023
Pimcore Cross-site Scripting vulnerability Moderate
CVE-2023-2730 was published for pimcore/pimcore (Composer) May 16, 2023
ReactPHP's HTTP server continues parsing unused multipart parts after reaching input field and file upload limits Moderate
CVE-2023-26044 was published for react/http (Composer) May 17, 2023
WyriHaximus
Credited to WyriHaximus
Insecure header validation in slim/psr7 Moderate
CVE-2023-30536 was published for slim/psr7 (Composer) Apr 18, 2023
GrahamCampbell akrabat
williamdes
Credited to GrahamCampbell, akrabat, and williamdes
nilsteampassnet/teampass vulnerable to cross-site scripting Moderate
CVE-2023-3009 was published for nilsteampassnet/teampass (Composer) May 31, 2023
Dcat-Admin vulnerable to Stored Cross-site Scripting Moderate
CVE-2023-33736 was published for dcat/laravel-admin (Composer) May 31, 2023
Cross-site Scripting (XSS) in froxlor/froxlor Moderate
CVE-2023-5564 was published for froxlor/froxlor (Composer) Oct 13, 2023
Cross-site Scripting (XSS) in froxlor/froxlor Moderate
CVE-2023-4829 was published for froxlor/froxlor (Composer) Oct 13, 2023
phpMyAdmin XSS Vulnerability Moderate
CVE-2016-5732 was published for phpmyadmin/phpmyadmin (Composer) May 17, 2022
phpMyAdmin XSS Vulnerability Moderate
CVE-2016-5704 was published for phpmyadmin/phpmyadmin (Composer) May 17, 2022
phpMyAdmin DoS Vulnerability Moderate
CVE-2016-6623 was published for phpmyadmin/phpmyadmin (Composer) May 17, 2022
phpMyAdmin path disclosure Moderate
CVE-2016-9853 was published for phpmyadmin/phpmyadmin (Composer) May 17, 2022
Moodle Unauthenticated Access Moderate
CVE-2016-8642 was published for moodle/moodle (Composer) May 13, 2022
Moodle sensitive information disclosure Moderate
CVE-2016-5014 was published for moodle/moodle (Composer) May 13, 2022
Moodle sensitive information disclosure Moderate
CVE-2016-3732 was published for moodle/moodle (Composer) May 13, 2022
Craft CMS XSS Vulnerability Moderate
CVE-2017-8052 was published for craftcms/cms (Composer) May 17, 2022
Craft CMS XSS Vulnerability Moderate
CVE-2017-8384 was published for craftcms/cms (Composer) May 17, 2022
Craft CMS XSS Vulnerability Moderate
CVE-2017-9516 was published for craftcms/cms (Composer) May 17, 2022
Craft CMS Unauthorized View Moderate
CVE-2017-8383 was published for craftcms/cms (Composer) May 13, 2022
GeniXCMS XSS Vulnerability Moderate
CVE-2017-17431 was published for genix/cms (Composer) May 17, 2022
Dolibarr ERP and CRM contain XSS Vulnerability Moderate
CVE-2017-17971 was published for dolibarr/dolibarr (Composer) May 14, 2022
Dolibarr ERP and CRM contain XSS Vulnerability Moderate
CVE-2017-1000509 was published for dolibarr/dolibarr (Composer) May 14, 2022
Dolibarr ERP and CRM contain XSS Vulnerability Moderate
CVE-2017-18259 was published for dolibarr/dolibarr (Composer) May 14, 2022
Yii Framework Reflected XSS Moderate
CVE-2017-7271 was published for yiisoft/yii2 (Composer) May 17, 2022
ProTip! Advisories are also available from the GraphQL API