GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,869
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,122
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,020
Swift
39
Unreviewed advisories
All unreviewed
5,000+
2,781 advisories
Filter by severity
PayPal PHP Merchant SDK Cross-site scripting (XSS) vulnerability
Moderate
CVE-2017-6099
was published
for
paypal/merchant-sdk-php
(Composer)
May 14, 2022
Symfony Open Redirect
Moderate
CVE-2018-11408
was published
for
symfony/security-bundle
(Composer)
May 14, 2022
Craft CMS Cross-site Scripting (XSS) Vulnerability
Moderate
CVE-2018-20418
was published
for
craftcms/cms
(Composer)
May 14, 2022
Silverstripe CMS XSS Vulnerability
Moderate
CVE-2017-5197
was published
for
silverstripe/cms
(Composer)
May 14, 2022
phpMyAdmin Open Redirect
Moderate
CVE-2017-1000013
was published
for
phpmyadmin/phpmyadmin
(Composer)
May 14, 2022
phpMyAdmin CSS Injection Vulnerability
Moderate
CVE-2017-1000015
was published
for
phpmyadmin/phpmyadmin
(Composer)
May 14, 2022
Snipe-IT XSS Vulnerability
Moderate
CVE-2019-10118
was published
for
snipe/snipe-it
(Composer)
May 14, 2022
Symfony DoS
Moderate
CVE-2018-11386
was published
for
symfony/http-foundation
(Composer)
May 14, 2022
phpMyAdmin Cross-site Scripting (XSS) vulnerability
Moderate
CVE-2018-19970
was published
for
phpmyadmin/phpmyadmin
(Composer)
May 14, 2022
phpMyAdmin Local file inclusion through transformation feature
Moderate
CVE-2018-19968
was published
for
phpmyadmin/phpmyadmin
(Composer)
May 14, 2022
Microweber XSS Vulnerability
Moderate
CVE-2018-19917
was published
for
microweber/microweber
(Composer)
May 14, 2022
Symfony Path Disclosure
Moderate
CVE-2018-19789
was published
for
symfony/form
(Composer)
May 14, 2022
Symfony Open Redirect
Moderate
CVE-2018-19790
was published
for
symfony/security
(Composer)
May 14, 2022
SimpleSAMLphp XSS Vulnerability
Moderate
CVE-2017-18121
was published
for
simplesamlphp/simplesamlphp
(Composer)
May 14, 2022
SimpleSAMLphp allows timing side-channel attacks
Moderate
CVE-2017-12872
was published
for
simplesamlphp/simplesamlphp
(Composer)
May 14, 2022
Shopware XXE Vulnerability
Moderate
CVE-2017-18357
was published
for
shopware/shopware
(Composer)
May 14, 2022
Several Zend Products Vulnerable to XXE and XEE attacks
Moderate
CVE-2014-2682
was published
for
zendframework/zendframework1
(Composer)
May 14, 2022
Several Zend Products Vulnerable to XXE and XEE attacks
Moderate
CVE-2014-2683
was published
for
zendframework/zendframework1
(Composer)
May 14, 2022
Several Zend Products Vulnerable to XXE and XEE attacks
Moderate
CVE-2014-2681
was published
for
zendframework/zendframework1
(Composer)
May 14, 2022
Enhanced Image plugin for CKEditor is vulnerable to Cross-site scripting (XSS)
Moderate
CVE-2018-9861
was published
for
ckeditor-dev
(Composer)
May 14, 2022
Moodle SSRF Vulnerability
Moderate
CVE-2018-1042
was published
for
moodle/moodle
(Composer)
May 14, 2022
Centreon Cross-site Scripting Vulnerability
Moderate
CVE-2015-7672
was published
for
centreon/centreon
(Composer)
May 14, 2022
Centreon XSS Vulnerability
Moderate
CVE-2018-19280
was published
for
centreon/centreon
(Composer)
May 14, 2022
Centreon XSS Vulnerability
Moderate
CVE-2018-19311
was published
for
centreon/centreon
(Composer)
May 14, 2022
ProTip!
Advisories are also available from the
GraphQL API