GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
                  
                    
                      
                      All reviewed
                    
                    
                      5,000+
                    
                  
                  
                    
                      
                      Composer
                    
                    
                      4,963
                    
                  
                  
                    
                      
                      Erlang
                    
                    
                      39
                    
                  
                  
                    
                      
                      GitHub Actions
                    
                    
                      38
                    
                  
                  
                    
                      
                      Go
                    
                    
                      2,614
                    
                  
                  
                    
                      
                      Maven
                    
                    
                      5,000+
                    
                  
                  
                    
                      
                      npm
                    
                    
                      4,254
                    
                  
                  
                    
                      
                      NuGet
                    
                    
                      760
                    
                  
                  
                    
                      
                      pip
                    
                    
                      4,031
                    
                  
                  
                    
                      
                      Pub
                    
                    
                      12
                    
                  
                  
                    
                      
                      RubyGems
                    
                    
                      953
                    
                  
                  
                    
                      
                      Rust
                    
                    
                      1,049
                    
                  
                  
                    
                      
                      Swift
                    
                    
                      45
                    
                  
                  Unreviewed advisories
                  
                    
                      
                      All unreviewed
                    
                    
                      5,000+
                    
                  
            385 advisories
        Filter by severity
        
      
      
    
                    
                      Plone Cross-site scripting Vulnerability
                    
                      
  Moderate
                    
                
                      
                        CVE-2012-5494
                      
                      was published
                        for
                        
                          Plone
                        
                        (pip)
                      May 17, 2022 
                    
                  
                    
                      Plone Cross-site scripting Vulnerability
                    
                      
  Moderate
                    
                
                      
                        CVE-2012-5490
                      
                      was published
                        for
                        
                          Plone
                        
                        (pip)
                      May 17, 2022 
                    
                  
                    
                      Plone Cross-site scripting Vulnerability
                    
                      
  Moderate
                    
                
                      
                        CVE-2012-5504
                      
                      was published
                        for
                        
                          Plone
                        
                        (pip)
                      May 17, 2022 
                    
                  
                    
                      OpenStack Swift Cross-site Scriping vulnerability
                    
                      
  Moderate
                    
                
                      
                        CVE-2014-3497
                      
                      was published
                        for
                        
                          swift
                        
                        (pip)
                      May 17, 2022 
                    
                  
                    
                      Djiblets Cross-site scripting Vulnerability via JSON Objects
                    
                      
  Moderate
                    
                
                      
                        CVE-2014-3994
                      
                      was published
                        for
                        
                          Djblets
                        
                        (pip)
                      May 17, 2022 
                    
                  
                    
                      Eugene Pankov Ajenti Cross-site scripting Vulnerabilities
                    
                      
  Moderate
                    
                
                      
                        CVE-2014-4301
                      
                      was published
                        for
                        
                          ajenti
                        
                        (pip)
                      May 17, 2022 
                    
                  
                    
                      Django Cross-site Scripting Vulnerability
                    
                      
  Moderate
                    
                
                      
                        CVE-2015-2241
                      
                      was published
                        for
                        
                          django
                        
                        (pip)
                      May 17, 2022 
                    
                  
                    
                      Django Cross-site Scripting Vulnerability
                    
                      
  Moderate
                    
                
                      
                        CVE-2015-0220
                      
                      was published
                        for
                        
                          Django
                        
                        (pip)
                      May 17, 2022 
                    
                  
                    
                      OpenStack Dashboard (Horizon) Cross-site scripting (XSS) vulnerability
                    
                      
  Moderate
                    
                
                      
                        CVE-2015-3219
                      
                      was published
                        for
                        
                          horizon
                        
                        (pip)
                      May 17, 2022 
                    
                  
                    
                      Web2py Reflected XSS vulnerability
                    
                      
  Moderate
                    
                
                      
                        CVE-2016-4807
                      
                      was published
                        for
                        
                          web2py
                        
                        (pip)
                      May 17, 2022 
                    
                  
                    
                      MoinMoin Cross-site Scripting (XSS) vulnerability
                    
                      
  Moderate
                    
                
                      
                        CVE-2016-7146
                      
                      was published
                        for
                        
                          moin
                        
                        (pip)
                      May 17, 2022 
                    
                  
                    
                      MoinMoin Cross-site Scripting (XSS) vulnerability
                    
                      
  Moderate
                    
                
                      
                        CVE-2016-7148
                      
                      was published
                        for
                        
                          moin
                        
                        (pip)
                      May 17, 2022 
                    
                  
                    
                      MoinMoin Cross-site Scripting (XSS) vulnerability
                    
                      
  Moderate
                    
                
                      
                        CVE-2016-9119
                      
                      was published
                        for
                        
                          moin
                        
                        (pip)
                      May 17, 2022 
                    
                  
                    
                      Improper Neutralization of Input During Web Page Generation in html5lib
                    
                      
  Moderate
                    
                
                      
                        CVE-2016-9909
                      
                      was published
                        for
                        
                          html5lib
                        
                        (pip)
                      May 17, 2022 
                    
                  
                    
                      Cross-site Scripting in html5lib
                    
                      
  Moderate
                    
                
                      
                        CVE-2016-9910
                      
                      was published
                        for
                        
                          html5lib
                        
                        (pip)
                      May 17, 2022 
                    
                  
                    
                      Cherry Music Cross-site Scripting (XSS) vulnerability
                    
                      
  Moderate
                    
                
                      
                        CVE-2015-8310
                      
                      was published
                        for
                        
                          CherryMusic
                        
                        (pip)
                      May 17, 2022 
                    
                  
                    
                      MoinMoin Cross-site Scripting (XSS) vulnerability
                    
                      
  Moderate
                    
                
                      
                        CVE-2011-1058
                      
                      was published
                        for
                        
                          moin
                        
                        (pip)
                      May 17, 2022 
                    
                  
                    
                      OpenStack Horizon Cross-site scripting (XSS) vulnerability
                    
                      
  Moderate
                    
                
                      
                        CVE-2012-2094
                      
                      was published
                        for
                        
                          horizon
                        
                        (pip)
                      May 17, 2022 
                    
                  
                    
                      Roundup Cross-site Scripting (XSS) vulnerability
                    
                      
  Moderate
                    
                
                      
                        CVE-2012-6130
                      
                      was published
                        for
                        
                          roundup
                        
                        (pip)
                      May 17, 2022 
                    
                  
                    
                      Roundup Cross-site Scripting (XSS) vulnerability
                    
                      
  Moderate
                    
                
                      
                        CVE-2012-6132
                      
                      was published
                        for
                        
                          roundup
                        
                        (pip)
                      May 17, 2022 
                    
                  
                    
                      Roundup Cross-site scripting (XSS) vulnerability
                    
                      
  Moderate
                    
                
                      
                        CVE-2012-6131
                      
                      was published
                        for
                        
                          roundup
                        
                        (pip)
                      May 17, 2022 
                    
                  
                    
                      Django cross-site scripting (XSS) vulnerability in the AdminURLFieldWidget widget
                    
                      
  Moderate
                    
                
                      
                        CVE-2013-4249
                      
                      was published
                        for
                        
                          django
                        
                        (pip)
                      May 17, 2022 
                    
                  
        
        ProTip!
        Advisories are also available from the 
        GraphQL API