GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,324
Erlang
31
GitHub Actions
21
Go
2,087
Maven
5,000+
npm
3,751
NuGet
674
pip
3,437
Pub
12
RubyGems
892
Rust
881
Swift
37
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
94,871 advisories
Filter by severity
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2025-23826
was published
Jan 16, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2025-23827
was published
Jan 16, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2025-23828
was published
Jan 16, 2025
Cross-Site Request Forgery (CSRF) vulnerability in jprintf CNZZ&51LA for WordPress allows Cross...
High
Unreviewed
CVE-2025-23823
was published
Jan 16, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-23780
was published
Jan 16, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-23779
was published
Jan 16, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Benjamin Guy Style Admin allows Stored XSS...
High
Unreviewed
CVE-2025-23801
was published
Jan 16, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Turcu Ciprian Auto FTP allows Stored XSS. This...
High
Unreviewed
CVE-2025-23793
was published
Jan 16, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Don Kukral Email on Publish allows Stored XSS...
High
Unreviewed
CVE-2025-23673
was published
Jan 16, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2025-23689
was published
Jan 16, 2025
Cross-Site Request Forgery (CSRF) vulnerability in SandyIN Import Users to MailChimp allows...
High
Unreviewed
CVE-2025-23675
was published
Jan 16, 2025
Cross-Site Request Forgery (CSRF) vulnerability in DSmidgy HTTP to HTTPS link changer by Eyga.net...
High
Unreviewed
CVE-2025-23677
was published
Jan 16, 2025
Cross-Site Request Forgery (CSRF) vulnerability in ArtkanMedia Book a Place allows Stored XSS...
High
Unreviewed
CVE-2025-23690
was published
Jan 16, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Shabbos Commerce Shabbos and Yom Tov allows...
High
Unreviewed
CVE-2025-23694
was published
Jan 16, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Artem Anikeev Slider for Writers allows Stored...
High
Unreviewed
CVE-2025-23692
was published
Jan 16, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Stanisław Skonieczny Secure CAPTCHA allows...
High
Unreviewed
CVE-2025-23693
was published
Jan 16, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Braulio Aquino García Send to Twitter allows...
High
Unreviewed
CVE-2025-23691
was published
Jan 16, 2025
Cross-Site Request Forgery (CSRF) vulnerability in CS : ABS-Hosting.nl / Walchum.net Free...
High
Unreviewed
CVE-2025-23703
was published
Jan 16, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Dominic Fallows DF Draggable allows Stored XSS...
High
Unreviewed
CVE-2025-23708
was published
Jan 16, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Schalk Burger Anonymize Links allows Stored...
High
Unreviewed
CVE-2025-23702
was published
Jan 16, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Iván R. Delgado Martínez WP Custom Google...
High
Unreviewed
CVE-2025-23698
was published
Jan 16, 2025
Cross-Site Request Forgery (CSRF) vulnerability in ITMOOTI Theme My Ontraport Smartform allows...
High
Unreviewed
CVE-2025-23717
was published
Jan 16, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2025-23699
was published
Jan 16, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Mozilla Web Push allows Stored XSS.This issue...
High
Unreviewed
CVE-2025-23720
was published
Jan 16, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Kapost Kapost allows Stored XSS.This issue...
High
Unreviewed
CVE-2025-23712
was published
Jan 16, 2025
ProTip!
Advisories are also available from the
GraphQL API