Skip to content

GitHub Advisory Database

Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.

2,781 advisories

Loading
PayPal PHP Merchant SDK Cross-site scripting (XSS) vulnerability Moderate
CVE-2017-6099 was published for paypal/merchant-sdk-php (Composer) May 14, 2022
Symfony Open Redirect Moderate
CVE-2018-11408 was published for symfony/security-bundle (Composer) May 14, 2022
Craft CMS Cross-site Scripting (XSS) Vulnerability Moderate
CVE-2018-20418 was published for craftcms/cms (Composer) May 14, 2022
Silverstripe CMS XSS Vulnerability Moderate
CVE-2017-5197 was published for silverstripe/cms (Composer) May 14, 2022
phpMyAdmin Open Redirect Moderate
CVE-2017-1000013 was published for phpmyadmin/phpmyadmin (Composer) May 14, 2022
phpMyAdmin CSS Injection Vulnerability Moderate
CVE-2017-1000015 was published for phpmyadmin/phpmyadmin (Composer) May 14, 2022
Snipe-IT XSS Vulnerability Moderate
CVE-2019-10118 was published for snipe/snipe-it (Composer) May 14, 2022
Symfony DoS Moderate
CVE-2018-11386 was published for symfony/http-foundation (Composer) May 14, 2022
Elgg open redirect Moderate
CVE-2019-11016 was published for elgg/elgg (Composer) May 14, 2022
phpMyAdmin Cross-site Scripting (XSS) vulnerability Moderate
CVE-2018-19970 was published for phpmyadmin/phpmyadmin (Composer) May 14, 2022
phpMyAdmin Local file inclusion through transformation feature Moderate
CVE-2018-19968 was published for phpmyadmin/phpmyadmin (Composer) May 14, 2022
Microweber XSS Vulnerability Moderate
CVE-2018-19917 was published for microweber/microweber (Composer) May 14, 2022
Symfony Path Disclosure Moderate
CVE-2018-19789 was published for symfony/form (Composer) May 14, 2022
Symfony Open Redirect Moderate
CVE-2018-19790 was published for symfony/security (Composer) May 14, 2022
SimpleSAMLphp XSS Vulnerability Moderate
CVE-2017-18121 was published for simplesamlphp/simplesamlphp (Composer) May 14, 2022
SimpleSAMLphp allows timing side-channel attacks Moderate
CVE-2017-12872 was published for simplesamlphp/simplesamlphp (Composer) May 14, 2022
Shopware XXE Vulnerability Moderate
CVE-2017-18357 was published for shopware/shopware (Composer) May 14, 2022
Several Zend Products Vulnerable to XXE and XEE attacks Moderate
CVE-2014-2682 was published for zendframework/zendframework1 (Composer) May 14, 2022
Several Zend Products Vulnerable to XXE and XEE attacks Moderate
CVE-2014-2683 was published for zendframework/zendframework1 (Composer) May 14, 2022
Several Zend Products Vulnerable to XXE and XEE attacks Moderate
CVE-2014-2681 was published for zendframework/zendframework1 (Composer) May 14, 2022
Enhanced Image plugin for CKEditor is vulnerable to Cross-site scripting (XSS) Moderate
CVE-2018-9861 was published for ckeditor-dev (Composer) May 14, 2022
Moodle SSRF Vulnerability Moderate
CVE-2018-1042 was published for moodle/moodle (Composer) May 14, 2022
Centreon Cross-site Scripting Vulnerability Moderate
CVE-2015-7672 was published for centreon/centreon (Composer) May 14, 2022
Centreon XSS Vulnerability Moderate
CVE-2018-19280 was published for centreon/centreon (Composer) May 14, 2022
Centreon XSS Vulnerability Moderate
CVE-2018-19311 was published for centreon/centreon (Composer) May 14, 2022
ProTip! Advisories are also available from the GraphQL API