GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
47
GitHub Actions
48
Go
3,378
Maven
5,000+
npm
5,000+
NuGet
881
pip
4,573
Pub
13
RubyGems
1,013
Rust
1,205
Swift
51
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
141,575 advisories
Filter by severity
A vulnerability has been found in code-projects Simple Laundry System 1.0. This issue affects...
Moderate
Unreviewed
CVE-2026-5257
was published
Apr 1, 2026
A vulnerability was detected in code-projects Simple Laundry System 1.0. This affects an unknown...
Moderate
Unreviewed
CVE-2026-5255
was published
Apr 1, 2026
A flaw has been found in code-projects Simple Laundry System 1.0. This vulnerability affects...
Moderate
Unreviewed
CVE-2026-5256
was published
Apr 1, 2026
A security vulnerability has been detected in welovemedia FFmate up to 2.0.15. Affected by this...
Moderate
Unreviewed
CVE-2026-5254
was published
Apr 1, 2026
A security flaw has been discovered in z-9527 admin 1.0/2.0. Affected is an unknown function of...
Moderate
Unreviewed
CVE-2026-5252
was published
Apr 1, 2026
A weakness has been identified in bufanyun HotGo 1.0/2.0. Affected by this vulnerability is an...
Moderate
Unreviewed
CVE-2026-5253
was published
Apr 1, 2026
The application does not detect or guard against cyclic PDF object references while handling...
Moderate
Unreviewed
CVE-2026-3778
was published
Apr 1, 2026
XenForo before 2.3.9 and before 2.2.18 is vulnerable to cross-site scripting (XSS) related to...
Moderate
Unreviewed
CVE-2026-35055
was published
Apr 1, 2026
XenForo before 2.3.9 is vulnerable to stored cross-site scripting (XSS) related to BB code...
Moderate
Unreviewed
CVE-2026-35054
was published
Apr 1, 2026
The Database for Contact Form 7, WPforms, Elementor forms plugin for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2026-3831
was published
Apr 1, 2026
The application allows PDF JavaScript and document/print actions (such as WillPrint/DidPrint) to...
Moderate
Unreviewed
CVE-2026-3774
was published
Apr 1, 2026
The application does not properly validate the lifetime and validity of internal view cache...
Moderate
Unreviewed
CVE-2026-3777
was published
Apr 1, 2026
A vulnerability was identified in z-9527 admin 1.0/2.0. This impacts an unknown function of the...
Moderate
Unreviewed
CVE-2026-5251
was published
Apr 1, 2026
A vulnerability was found in gougucms 4.08.18. This impacts an unknown function of the file ...
Moderate
Unreviewed
CVE-2026-5249
was published
Apr 1, 2026
Buffer Over-read vulnerability in RTI Connext Professional (Core Libraries) allows Overread...
Moderate
Unreviewed
CVE-2026-2394
was published
Apr 1, 2026
XenForo before 2.3.7 allows information disclosure via local account page caching on shared...
Moderate
Unreviewed
CVE-2025-71280
was published
Apr 1, 2026
The application does not validate the presence of required appearance (AP) data before accessing...
Moderate
Unreviewed
CVE-2026-3776
was published
Apr 1, 2026
A vulnerability has been found in gougucms 4.08.18. This affects the function reg_submit of the...
Moderate
Unreviewed
CVE-2026-5248
was published
Apr 1, 2026
XenForo before 2.3.10 and before 2.2.19 is vulnerable to stored cross-site scripting (XSS) in...
Moderate
Unreviewed
CVE-2026-35057
was published
Apr 1, 2026
XenForo before 2.2.17 and 2.3.1 allows open redirect via a specially crafted URL. The...
Moderate
Unreviewed
CVE-2024-58342
was published
Apr 1, 2026
The WP Shortcodes Plugin — Shortcodes Ultimate plugin for WordPress is vulnerable to Stored Cross...
Moderate
Unreviewed
CVE-2026-2480
was published
Apr 1, 2026
A security vulnerability has been detected in code-projects BloodBank Managing System 1.0. This...
Moderate
Unreviewed
CVE-2026-5240
was published
Apr 1, 2026
A weakness has been identified in itsourcecode Payroll Management System 1.0. Affected by this...
Moderate
Unreviewed
CVE-2026-5238
was published
Apr 1, 2026
A security flaw has been discovered in itsourcecode Payroll Management System 1.0. Affected by...
Moderate
Unreviewed
CVE-2026-5237
was published
Apr 1, 2026
A vulnerability was identified in Axiomatic Bento4 up to 1.6.0-641. Affected is the function...
Moderate
Unreviewed
CVE-2026-5236
was published
Apr 1, 2026
ProTip!
Advisories are also available from the
GraphQL API