GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,717
Maven
5,000+
npm
4,328
NuGet
761
pip
4,105
Pub
12
RubyGems
958
Rust
1,065
Swift
45
Unreviewed advisories
All unreviewed
5,000+
2,886 advisories
Filter by severity
Information exposure in microweber
Moderate
CVE-2023-2239
was published
for
microweber/microweber
(Composer)
Apr 22, 2023
Cross-site Scripting in thorsten/phpmyfaq
Moderate
CVE-2023-1875
was published
for
thorsten/phpmyfaq
(Composer)
Apr 22, 2023
Pimcore Cross-site Scripting vulnerability
Moderate
CVE-2023-2730
was published
for
pimcore/pimcore
(Composer)
May 16, 2023
ReactPHP's HTTP server continues parsing unused multipart parts after reaching input field and file upload limits
Moderate
CVE-2023-26044
was published
for
react/http
(Composer)
May 17, 2023
Insecure header validation in slim/psr7
Moderate
CVE-2023-30536
was published
for
slim/psr7
(Composer)
Apr 18, 2023
nilsteampassnet/teampass vulnerable to cross-site scripting
Moderate
CVE-2023-3009
was published
for
nilsteampassnet/teampass
(Composer)
May 31, 2023
Dcat-Admin vulnerable to Stored Cross-site Scripting
Moderate
CVE-2023-33736
was published
for
dcat/laravel-admin
(Composer)
May 31, 2023
Cross-site Scripting (XSS) in froxlor/froxlor
Moderate
CVE-2023-5564
was published
for
froxlor/froxlor
(Composer)
Oct 13, 2023
Cross-site Scripting (XSS) in froxlor/froxlor
Moderate
CVE-2023-4829
was published
for
froxlor/froxlor
(Composer)
Oct 13, 2023
phpMyAdmin XSS Vulnerability
Moderate
CVE-2016-5732
was published
for
phpmyadmin/phpmyadmin
(Composer)
May 17, 2022
phpMyAdmin XSS Vulnerability
Moderate
CVE-2016-5704
was published
for
phpmyadmin/phpmyadmin
(Composer)
May 17, 2022
phpMyAdmin DoS Vulnerability
Moderate
CVE-2016-6623
was published
for
phpmyadmin/phpmyadmin
(Composer)
May 17, 2022
phpMyAdmin path disclosure
Moderate
CVE-2016-9853
was published
for
phpmyadmin/phpmyadmin
(Composer)
May 17, 2022
Moodle Unauthenticated Access
Moderate
CVE-2016-8642
was published
for
moodle/moodle
(Composer)
May 13, 2022
Moodle sensitive information disclosure
Moderate
CVE-2016-5014
was published
for
moodle/moodle
(Composer)
May 13, 2022
Moodle sensitive information disclosure
Moderate
CVE-2016-3732
was published
for
moodle/moodle
(Composer)
May 13, 2022
Craft CMS XSS Vulnerability
Moderate
CVE-2017-8052
was published
for
craftcms/cms
(Composer)
May 17, 2022
Craft CMS XSS Vulnerability
Moderate
CVE-2017-8384
was published
for
craftcms/cms
(Composer)
May 17, 2022
Craft CMS XSS Vulnerability
Moderate
CVE-2017-9516
was published
for
craftcms/cms
(Composer)
May 17, 2022
Craft CMS Unauthorized View
Moderate
CVE-2017-8383
was published
for
craftcms/cms
(Composer)
May 13, 2022
GeniXCMS XSS Vulnerability
Moderate
CVE-2017-17431
was published
for
genix/cms
(Composer)
May 17, 2022
Dolibarr ERP and CRM contain XSS Vulnerability
Moderate
CVE-2017-17971
was published
for
dolibarr/dolibarr
(Composer)
May 14, 2022
Dolibarr ERP and CRM contain XSS Vulnerability
Moderate
CVE-2017-1000509
was published
for
dolibarr/dolibarr
(Composer)
May 14, 2022
Dolibarr ERP and CRM contain XSS Vulnerability
Moderate
CVE-2017-18259
was published
for
dolibarr/dolibarr
(Composer)
May 14, 2022
Yii Framework Reflected XSS
Moderate
CVE-2017-7271
was published
for
yiisoft/yii2
(Composer)
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API