GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
46
GitHub Actions
48
Go
3,376
Maven
5,000+
npm
5,000+
NuGet
881
pip
4,570
Pub
13
RubyGems
1,013
Rust
1,205
Swift
51
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
141,547 advisories
Filter by severity
A Blind SQL Injection vulnerability exists in SourceCodester Loan Management System v1.0. The...
Moderate
Unreviewed
CVE-2026-30520
was published
Mar 31, 2026
Multiple Stored XSS vulnerabilities exist in Seafile Server version 13.0.15,13.0.16-pro,12.0.14...
Moderate
Unreviewed
CVE-2026-30587
was published
Mar 25, 2026
A vulnerability was detected in SourceCodester Leave Application System 1.0. This affects an...
Moderate
Unreviewed
CVE-2026-5210
was published
Mar 31, 2026
A stored Cross-Site Scripting (XSS) vulnerability has been identified in the SonicWall Email...
Moderate
Unreviewed
CVE-2026-3468
was published
Mar 31, 2026
A security vulnerability has been detected in SourceCodester Leave Application System 1.0....
Moderate
Unreviewed
CVE-2026-5209
was published
Mar 31, 2026
The vulnerability affecting TL-WR850N v3 allows cleartext storage of administrative and Wi-Fi...
Moderate
Unreviewed
CVE-2026-4346
was published
Mar 27, 2026
A resample query can be used to trigger out-of-memory crashes in Grafana.
Moderate
Unreviewed
CVE-2026-27879
was published
Mar 27, 2026
A Reflected Cross-Site Scripting (XSS) vulnerability exists in SourceCodester Sales and Inventory...
Moderate
Unreviewed
CVE-2026-30556
was published
Mar 30, 2026
A Reflected Cross-Site Scripting (XSS) vulnerability exists in SourceCodester Sales and Inventory...
Moderate
Unreviewed
CVE-2026-30558
was published
Mar 30, 2026
A Reflected Cross-Site Scripting (XSS) vulnerability exists in SourceCodester Sales and Inventory...
Moderate
Unreviewed
CVE-2026-30557
was published
Mar 30, 2026
A Reflected Cross-Site Scripting (XSS) vulnerability exists in SourceCodester Sales and Inventory...
Moderate
Unreviewed
CVE-2026-30559
was published
Mar 30, 2026
A Reflected Cross-Site Scripting (XSS) vulnerability exists in SourceCodester Sales and Inventory...
Moderate
Unreviewed
CVE-2026-30560
was published
Mar 30, 2026
A vulnerability was identified in chatwoot up to 4.11.2. Affected by this vulnerability is the...
Moderate
Unreviewed
CVE-2026-5205
was published
Mar 31, 2026
A security vulnerability has been detected in code-projects Simple Gym Management System 1.0....
Moderate
Unreviewed
CVE-2026-5206
was published
Mar 31, 2026
Pega Platform versions 8.1.0 through 25.1.0 are affected by a Stored Cross-site Scripting...
Moderate
Unreviewed
CVE-2025-62184
was published
Mar 31, 2026
An incorrect startup configuration of affected versions of Zscaler Client Connector on Windows...
Moderate
Unreviewed
CVE-2026-22569
was published
Mar 31, 2026
NVIDIA Jetson Linux has a vulnerability in initrd, where the nvluks trusted application is not...
Moderate
Unreviewed
CVE-2026-24153
was published
Mar 31, 2026
In Search Guard FLX versions from 3.0.0 up to 4.0.1, there exists an issue which allows users...
Moderate
Unreviewed
CVE-2026-4818
was published
Mar 31, 2026
Uncontrolled search path elements in Anthropic Claude for Windows installer (Claude Setup.exe)...
Moderate
Unreviewed
CVE-2026-22561
was published
Mar 31, 2026
In Search Guard FLX versions from 1.0.0 up to 4.0.1, the audit logging feature might log user...
Moderate
Unreviewed
CVE-2026-4819
was published
Mar 31, 2026
A vulnerability was found in CMS Made Simple up to 2.2.22. This impacts the function...
Moderate
Unreviewed
CVE-2026-5203
was published
Mar 31, 2026
The Performance Monitor WordPress plugin through 1.0.6 does not validate a parameter before...
Moderate
Unreviewed
CVE-2026-3881
was published
Mar 31, 2026
A Reflected Cross-Site Scripting (XSS) vulnerability exists in SourceCodester Sales and Inventory...
Moderate
Unreviewed
CVE-2026-30561
was published
Mar 30, 2026
A memory leak occurs in Node.js HTTP/2 servers when a client sends WINDOW_UPDATE frames on stream...
Moderate
Unreviewed
CVE-2026-21714
was published
Mar 30, 2026
A testdata data-source can be used to trigger out-of-memory crashes in Grafana.
Moderate
Unreviewed
CVE-2026-28375
was published
Mar 27, 2026
ProTip!
Advisories are also available from the
GraphQL API