GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,826
Erlang
36
GitHub Actions
32
Go
2,430
Maven
5,000+
npm
4,058
NuGet
723
pip
3,851
Pub
12
RubyGems
941
Rust
1,007
Swift
38
Unreviewed advisories
All unreviewed
5,000+
1,500 advisories
Filter by severity
Omnissa Workspace ONE UEM contains a Server-Side Request Forgery (SSRF) Vulnerability. A...
Moderate
Unreviewed
CVE-2025-25229
was published
Aug 11, 2025
A vulnerability, which was classified as problematic, has been found in Vinades NukeViet up to 4...
Moderate
Unreviewed
CVE-2025-8772
was published
Aug 9, 2025
SSRF vulnerability in FreeMarker templates in Liferay Portal 7.4.0 through 7.4.3.132, and Liferay...
Low
Unreviewed
CVE-2025-4655
was published
Aug 9, 2025
Liferay Portal and Liferay DXP vulnerable to Server-Side Request Forgery
Moderate
CVE-2025-4581
was published
for
com.liferay.portal:release.dxp.bom
(Maven)
Aug 9, 2025
Azure OpenAI Elevation of Privilege Vulnerability
Critical
Unreviewed
CVE-2025-53767
was published
Aug 7, 2025
Bottinelli Informatical Vedo Suite 2024.17 is vulnerable to Server-side Request Forgery (SSRF) in...
Moderate
Unreviewed
CVE-2025-51058
was published
Aug 6, 2025
4C Strategies Exonaut before v21.6.2.1-1 was discovered to contain a Server-Side Request Forgery ...
Moderate
Unreviewed
CVE-2024-55399
was published
Aug 6, 2025
MCCMS v2.7.0 has an SSRF vulnerability located in the index() method of the sys\apps\controllers...
Moderate
Unreviewed
CVE-2025-50234
was published
Aug 6, 2025
A vulnerability was found in Exrick xboot up to 3.3.4. It has been rated as critical. This issue...
Moderate
Unreviewed
CVE-2025-8527
was published
Aug 5, 2025
A vulnerability classified as critical was found in cloudfavorites favorites-web up to 1.3.0....
Moderate
Unreviewed
CVE-2025-8529
was published
Aug 5, 2025
A vulnerability classified as critical was found in givanz Vvveb up to 1.0.5. This vulnerability...
Moderate
Unreviewed
CVE-2025-8520
was published
Aug 4, 2025
Grafana Infinity Datasource Plugin SSRF Vulnerability
Moderate
CVE-2025-8341
was published
for
github.com/grafana/grafana-infinity-datasource
(Go)
Aug 4, 2025
BentoML SSRF Vulnerability in File Upload Processing
Critical
CVE-2025-54381
was published
for
bentoml
(pip)
Jul 29, 2025
webfinger.js Blind SSRF Vulnerability
Moderate
CVE-2025-54590
was published
for
webfinger.js
(npm)
Jul 28, 2025
A server-side request forgery vulnerability exists in the cecho.php functionality of MedDream...
Moderate
Unreviewed
CVE-2025-24485
was published
Jul 28, 2025
ssrfcheck has Incomplete IP Address Deny List that leads to Server-Side Request Forgery Vulnerability
High
CVE-2025-8267
was published
for
ssrfcheck
(npm)
Jul 28, 2025
A vulnerability was found in yanyutao0402 ChanCMS up to 3.1.2. It has been rated as critical....
Moderate
Unreviewed
CVE-2025-8228
was published
Jul 27, 2025
Server-Side Request Forgery (SSRF) vulnerability in Salesforce Tableau Server on Windows, Linux ...
Moderate
Unreviewed
CVE-2025-52455
was published
Jul 25, 2025
Server-Side Request Forgery (SSRF) vulnerability in Salesforce Tableau Server on Windows, Linux ...
Moderate
Unreviewed
CVE-2025-52454
was published
Jul 25, 2025
Server-Side Request Forgery (SSRF) vulnerability in Salesforce Tableau Server on Windows, Linux ...
High
Unreviewed
CVE-2025-52453
was published
Jul 25, 2025
Apwide Golive 10.2.0 Jira plugin allows Server-Side Request Forgery (SSRF) via the test webhook...
Moderate
Unreviewed
CVE-2025-45939
was published
Jul 25, 2025
A vulnerability classified as critical has been found in yanyutao0402 ChanCMS up to 3.1.2. This...
Moderate
Unreviewed
CVE-2025-8133
was published
Jul 25, 2025
private-ip vulnerable to Server-Side Request Forgery
High
CVE-2025-8020
was published
for
private-ip
(npm)
Jul 23, 2025
The Featured Image Plus – Quick & Bulk Edit with Unsplash plugin for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2025-5818
was published
Jul 23, 2025
Server-Side Request Forgery (SSRF) vulnerability exists in the URL processing functionality of...
Critical
Unreviewed
CVE-2025-52362
was published
Jul 21, 2025
ProTip!
Advisories are also available from the
GraphQL API