GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,750
Erlang
35
GitHub Actions
29
Go
2,323
Maven
5,000+
npm
3,956
NuGet
712
pip
3,739
Pub
12
RubyGems
921
Rust
973
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
121,659 advisories
Filter by severity
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-49298
was published
Jun 6, 2025
Insertion of Sensitive Information Into Sent Data vulnerability in CodeRevolution Crawlomatic...
Moderate
Unreviewed
CVE-2025-49294
was published
Jun 6, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-49306
was published
Jun 6, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-49304
was published
Jun 6, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-31025
was published
Jun 6, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-30991
was published
Jun 6, 2025
Missing Authorization vulnerability in Miguel Fuentes Payment QR WooCommerce allows Exploiting...
Moderate
Unreviewed
CVE-2025-31000
was published
Jun 6, 2025
Server-Side Request Forgery (SSRF) vulnerability in SmartDataSoft Car Repair Services allows...
Moderate
Unreviewed
CVE-2025-30997
was published
Jun 6, 2025
Cross-Site Request Forgery (CSRF) vulnerability in everestthemes Everest Backup allows Cross Site...
Moderate
Unreviewed
CVE-2025-49238
was published
Jun 6, 2025
Missing Authorization vulnerability in raychat Raychat allows Accessing Functionality Not...
Moderate
Unreviewed
CVE-2025-49236
was published
Jun 6, 2025
Missing Authorization vulnerability in Soft8Soft LLC Verge3D allows Exploiting Incorrectly...
Moderate
Unreviewed
CVE-2025-49268
was published
Jun 6, 2025
Missing Authorization vulnerability in nK DocsPress allows Exploiting Incorrectly Configured...
Moderate
Unreviewed
CVE-2025-49240
was published
Jun 6, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-49235
was published
Jun 6, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-49243
was published
Jun 6, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-49244
was published
Jun 6, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-49242
was published
Jun 6, 2025
Cross-Site Request Forgery (CSRF) vulnerability in tychesoftwares Print Invoice & Delivery Notes...
Moderate
Unreviewed
CVE-2025-49239
was published
Jun 6, 2025
Improper Control of Generation of Code ('Code Injection') vulnerability in cmoreira Team Showcase...
Moderate
Unreviewed
CVE-2025-49250
was published
Jun 6, 2025
Missing Authorization vulnerability in bobbingwide oik allows Exploiting Incorrectly Configured...
Moderate
Unreviewed
CVE-2025-49241
was published
Jun 6, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-30940
was published
Jun 6, 2025
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in CRM Perks WP Gravity Forms...
Moderate
Unreviewed
CVE-2025-30954
was published
Jun 6, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Michael Cannon Custom Bulk/Quick Edit allows...
Moderate
Unreviewed
CVE-2025-30946
was published
Jun 6, 2025
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in CRM Perks WP Gravity Forms...
Moderate
Unreviewed
CVE-2025-30953
was published
Jun 6, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-30941
was published
Jun 6, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-30942
was published
Jun 6, 2025
ProTip!
Advisories are also available from the
GraphQL API