GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
45
GitHub Actions
47
Go
3,309
Maven
5,000+
npm
5,000+
NuGet
876
pip
4,530
Pub
12
RubyGems
1,009
Rust
1,195
Swift
51
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
111,771 advisories
Filter by severity
A Cross-Site Request Forgery (CSRF) vulnerability has been identified in the Web management...
High
Unreviewed
CVE-2025-15101
was published
Mar 26, 2026
The WP Job Portal plugin for WordPress is vulnerable to arbitrary file deletion due to...
High
Unreviewed
CVE-2026-4758
was published
Mar 26, 2026
A vulnerability has been found in Enter Software Iperius Backup up to 8.7.3. Affected by this...
High
Unreviewed
CVE-2026-4824
was published
Mar 26, 2026
A vulnerability was detected in Enter Software Iperius Backup bis 8.7.3. Affected is an unknown...
High
Unreviewed
CVE-2026-4822
was published
Mar 25, 2026
IBM InfoSphere Information Server 11.7.0.0 through 11.7.1.6 product stores user credentials and...
High
Unreviewed
CVE-2025-36258
was published
Mar 25, 2026
GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.5 before 18.8.7, 18...
High
Unreviewed
CVE-2026-3988
was published
Mar 25, 2026
GitLab has remediated an issue in GitLab CE/EE affecting all versions from 17.10 before 18.8.7,...
High
Unreviewed
CVE-2026-3857
was published
Mar 25, 2026
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2026-32545
was published
Mar 25, 2026
Missing Authorization vulnerability in StellarWP Restrict Content restrict-content allows...
High
Unreviewed
CVE-2026-32546
was published
Mar 25, 2026
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2026-32544
was published
Mar 25, 2026
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2026-32517
was published
Mar 25, 2026
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2026-32518
was published
Mar 25, 2026
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2026-32526
was published
Mar 25, 2026
Insertion of Sensitive Information Into Sent Data vulnerability in Noor Alam SMTP Mailer smtp...
High
Unreviewed
CVE-2026-32538
was published
Mar 25, 2026
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2026-32532
was published
Mar 25, 2026
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2026-32531
was published
Mar 25, 2026
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2026-32529
was published
Mar 25, 2026
Deserialization of Untrusted Data vulnerability in Miguel Useche JS Archive List jquery-archive...
High
Unreviewed
CVE-2026-32513
was published
Mar 25, 2026
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2026-32534
was published
Mar 25, 2026
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2026-32542
was published
Mar 25, 2026
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2026-32537
was published
Mar 25, 2026
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2026-32528
was published
Mar 25, 2026
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2026-32540
was published
Mar 25, 2026
GitLab has remediated an issue in GitLab EE affecting all versions from 15.4 before 18.8.7, 18.9...
High
Unreviewed
CVE-2026-2995
was published
Mar 25, 2026
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2026-27087
was published
Mar 25, 2026
ProTip!
Advisories are also available from the
GraphQL API