Skip to content

GitHub Advisory Database

Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.

2,887 advisories

Loading
Cross-site Scripting pimcore Moderate
CVE-2022-0510 was published for pimcore/pimcore (Composer) Feb 9, 2022
Cross-site scripting (XSS) and Server side request forgery (SSRF) in moodle Moderate
CVE-2021-20280 was published for moodle/moodle (Composer) Mar 29, 2021
Cross-site Scripting in pimcore Moderate
CVE-2022-0509 was published for pimcore/pimcore (Composer) Feb 9, 2022
Moodle XSS Vulnerability Moderate
CVE-2016-9188 was published for moodle/moodle (Composer) May 17, 2022
Moodle Does Not Escape Characters In Email Headers Moderate
CVE-2016-5013 was published for moodle/moodle (Composer) May 13, 2022
Improper Authentication in moodle Moderate
CVE-2022-0985 was published for moodle/moodle (Composer) Apr 30, 2022
Cross-site Scripting in moodle Moderate
CVE-2022-30596 was published for moodle/moodle (Composer) May 19, 2022
External Control of Assumed-Immutable Web Parameter in moodle Moderate
CVE-2022-30597 was published for moodle/moodle (Composer) May 19, 2022
Exposure of Sensitive Information in moodle Moderate
CVE-2022-30598 was published for moodle/moodle (Composer) May 19, 2022
Moodle SSRF Vulnerability Moderate
CVE-2018-1042 was published for moodle/moodle (Composer) May 14, 2022
Cross site-scripting (XSS) moodle Moderate
CVE-2020-25628 was published for moodle/moodle (Composer) Mar 29, 2021
Privilage Escalation in moodle Moderate
CVE-2020-25701 was published for moodle/moodle (Composer) Mar 29, 2021
Moodle Vulnerable to Reflected Cross-site Scripting Moderate
CVE-2021-20183 was published for moodle/moodle (Composer) May 24, 2022
SQL Injection in moodle Moderate
CVE-2020-25700 was published for moodle/moodle (Composer) Mar 29, 2021
Cross-site Scripting in Bolt Moderate
CVE-2019-15485 was published for bolt/bolt (Composer) Nov 8, 2019
XSS vulnerability in theme config file in Mautic Moderate
CVE-2018-8071 was published for mautic/core (Composer) Jan 19, 2021
XSS vulnerability in Author URL of themes in Mautic Moderate
CVE-2018-11198 was published for mautic/core (Composer) Jan 19, 2021
joanbono
Credited to joanbono
Mautic users able to download any files from server using filemanager Moderate
CVE-2017-1000490 was published for mautic/core (Composer) Jan 19, 2021
OpenCart SQL injection vulnerability Moderate
CVE-2021-37823 was published for opencart/opencart (Composer) Nov 3, 2022
Magento 2 Community Edition XSS Vulnerability Moderate
CVE-2020-24408 was published for magento/community-edition (Composer) May 24, 2022
Cross-site Scripting in OpenCart Moderate
CVE-2020-10596 was published for opencart/opencart (Composer) May 6, 2021
Composer JavaScript injection possible via html comments Moderate
CVE-2019-8233 was published for magento/community-edition (Composer) Nov 12, 2019
Cross-site Scripting in Froala WYSIWYG Editor Moderate
CVE-2021-28114 was published for froala/wysiwyg-editor (Composer) Jul 19, 2021
Typo3 Extbase Framework Unsafe Deserialization Moderate
CVE-2012-1605 was published for typo3/cms (Composer) May 17, 2022
Typo3 API XSS Vulnerabilities Moderate
CVE-2012-1608 was published for typo3/cms (Composer) May 17, 2022
ProTip! Advisories are also available from the GraphQL API