GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,750
Maven
5,000+
npm
4,353
NuGet
765
pip
4,114
Pub
12
RubyGems
960
Rust
1,069
Swift
45
Unreviewed advisories
All unreviewed
5,000+
2,887 advisories
Filter by severity
Cross-site Scripting pimcore
Moderate
CVE-2022-0510
was published
for
pimcore/pimcore
(Composer)
Feb 9, 2022
Cross-site scripting (XSS) and Server side request forgery (SSRF) in moodle
Moderate
CVE-2021-20280
was published
for
moodle/moodle
(Composer)
Mar 29, 2021
Cross-site Scripting in pimcore
Moderate
CVE-2022-0509
was published
for
pimcore/pimcore
(Composer)
Feb 9, 2022
Moodle XSS Vulnerability
Moderate
CVE-2016-9188
was published
for
moodle/moodle
(Composer)
May 17, 2022
Moodle Does Not Escape Characters In Email Headers
Moderate
CVE-2016-5013
was published
for
moodle/moodle
(Composer)
May 13, 2022
Improper Authentication in moodle
Moderate
CVE-2022-0985
was published
for
moodle/moodle
(Composer)
Apr 30, 2022
Cross-site Scripting in moodle
Moderate
CVE-2022-30596
was published
for
moodle/moodle
(Composer)
May 19, 2022
External Control of Assumed-Immutable Web Parameter in moodle
Moderate
CVE-2022-30597
was published
for
moodle/moodle
(Composer)
May 19, 2022
Exposure of Sensitive Information in moodle
Moderate
CVE-2022-30598
was published
for
moodle/moodle
(Composer)
May 19, 2022
Moodle SSRF Vulnerability
Moderate
CVE-2018-1042
was published
for
moodle/moodle
(Composer)
May 14, 2022
Cross site-scripting (XSS) moodle
Moderate
CVE-2020-25628
was published
for
moodle/moodle
(Composer)
Mar 29, 2021
Privilage Escalation in moodle
Moderate
CVE-2020-25701
was published
for
moodle/moodle
(Composer)
Mar 29, 2021
Moodle Vulnerable to Reflected Cross-site Scripting
Moderate
CVE-2021-20183
was published
for
moodle/moodle
(Composer)
May 24, 2022
SQL Injection in moodle
Moderate
CVE-2020-25700
was published
for
moodle/moodle
(Composer)
Mar 29, 2021
Cross-site Scripting in Bolt
Moderate
CVE-2019-15485
was published
for
bolt/bolt
(Composer)
Nov 8, 2019
XSS vulnerability in theme config file in Mautic
Moderate
CVE-2018-8071
was published
for
mautic/core
(Composer)
Jan 19, 2021
XSS vulnerability in Author URL of themes in Mautic
Moderate
CVE-2018-11198
was published
for
mautic/core
(Composer)
Jan 19, 2021
Mautic users able to download any files from server using filemanager
Moderate
CVE-2017-1000490
was published
for
mautic/core
(Composer)
Jan 19, 2021
OpenCart SQL injection vulnerability
Moderate
CVE-2021-37823
was published
for
opencart/opencart
(Composer)
Nov 3, 2022
Magento 2 Community Edition XSS Vulnerability
Moderate
CVE-2020-24408
was published
for
magento/community-edition
(Composer)
May 24, 2022
Cross-site Scripting in OpenCart
Moderate
CVE-2020-10596
was published
for
opencart/opencart
(Composer)
May 6, 2021
Composer JavaScript injection possible via html comments
Moderate
CVE-2019-8233
was published
for
magento/community-edition
(Composer)
Nov 12, 2019
Cross-site Scripting in Froala WYSIWYG Editor
Moderate
CVE-2021-28114
was published
for
froala/wysiwyg-editor
(Composer)
Jul 19, 2021
Typo3 Extbase Framework Unsafe Deserialization
Moderate
CVE-2012-1605
was published
for
typo3/cms
(Composer)
May 17, 2022
Typo3 API XSS Vulnerabilities
Moderate
CVE-2012-1608
was published
for
typo3/cms
(Composer)
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API