GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,904
Erlang
38
GitHub Actions
38
Go
2,566
Maven
5,000+
npm
4,237
NuGet
753
pip
4,001
Pub
12
RubyGems
953
Rust
1,042
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
129,421 advisories
Filter by severity
Missing Authorization vulnerability in Dotstore Advanced Linked Variations for Woocommerce allows...
Moderate
Unreviewed
CVE-2025-46244
was published
Apr 22, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-46240
was published
Apr 22, 2025
Cross-Site Request Forgery (CSRF) vulnerability in CreativeMindsSolutions CM Ad Changer allows...
Moderate
Unreviewed
CVE-2025-46245
was published
Apr 22, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-46239
was published
Apr 22, 2025
Missing Authorization vulnerability in codepeople Appointment Booking Calendar allows Accessing...
Moderate
Unreviewed
CVE-2025-46247
was published
Apr 22, 2025
Cross-Site Request Forgery (CSRF) vulnerability in sonalsinha21 Recover abandoned cart for...
Moderate
Unreviewed
CVE-2025-46243
was published
Apr 22, 2025
Cross-Site Request Forgery (CSRF) vulnerability in CreativeMindsSolutions CM Answers allows Cross...
Moderate
Unreviewed
CVE-2025-46246
was published
Apr 22, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-46236
was published
Apr 22, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-46233
was published
Apr 22, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-46253
was published
Apr 22, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-46238
was published
Apr 22, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-46254
was published
Apr 22, 2025
Cross-Site Request Forgery (CSRF) vulnerability in SERVIT Software Solutions affiliate-toolkit...
Moderate
Unreviewed
CVE-2025-46231
was published
Apr 22, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-46235
was published
Apr 22, 2025
Missing Authorization vulnerability in alttextai Download Alt Text AI allows Exploiting...
Moderate
Unreviewed
CVE-2025-46232
was published
Apr 22, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Michael Simple calendar for Elementor allows...
Moderate
Unreviewed
CVE-2025-46249
was published
Apr 22, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-46228
was published
Apr 22, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-46237
was published
Apr 22, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-46250
was published
Apr 22, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-46229
was published
Apr 22, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-46227
was published
Apr 22, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-46225
was published
Apr 22, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-46226
was published
Apr 22, 2025
It technically possible for a user to upload a file to a conversation despite the file upload...
Moderate
Unreviewed
CVE-2025-3518
was published
Apr 22, 2025
Hitachi Ops Center Common Services within Hitachi Ops Center OVA contains an information exposure...
Moderate
Unreviewed
CVE-2025-2300
was published
Apr 22, 2025
ProTip!
Advisories are also available from the
GraphQL API