GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
102
GitHub Actions
54
Go
4,347
Maven
5,000+
npm
5,000+
NuGet
1,042
pip
5,000+
Pub
13
RubyGems
1,122
Rust
1,498
Swift
61
Unreviewed advisories
All unreviewed
5,000+
132,034 advisories
Filter by severity
Missing Authorization vulnerability in PenciDesign Soledad.This issue affects Soledad: from n/a...
High
Unreviewed
CVE-2024-31367
was published
Apr 9, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2024-31091
was published
Mar 31, 2024
Missing Authorization vulnerability in Themify Post Type Builder (PTB).This issue affects Post...
High
Unreviewed
CVE-2024-31366
was published
Apr 9, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2024-31092
was published
Mar 31, 2024
Deserialization of Untrusted Data vulnerability in Master Slider Master Slider Pro.This issue...
High
Unreviewed
CVE-2023-47507
was published
Dec 20, 2023
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2024-31085
was published
Mar 31, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2024-30561
was published
Mar 31, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2024-31090
was published
Mar 31, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2024-31084
was published
Mar 31, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2024-31103
was published
Mar 31, 2024
Deserialization of Untrusted Data vulnerability in UX-themes Flatsome | Multi-Purpose Responsive...
High
Unreviewed
CVE-2023-40555
was published
Dec 20, 2023
Deserialization of Untrusted Data vulnerability in Rocketgenius Inc. Gravity Forms.This issue...
High
Unreviewed
CVE-2023-28782
was published
Dec 20, 2023
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2023-48327
was published
Dec 19, 2023
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2024-30535
was published
Mar 31, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2024-31106
was published
Mar 31, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2024-31112
was published
Mar 31, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2024-30551
was published
Mar 31, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2023-48764
was published
Dec 19, 2023
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2023-49764
was published
Dec 19, 2023
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2023-47558
was published
Dec 19, 2023
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2023-48741
was published
Dec 19, 2023
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2023-47506
was published
Dec 19, 2023
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2023-47530
was published
Dec 19, 2023
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2023-50376
was published
Dec 19, 2023
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2023-34168
was published
Dec 19, 2023
ProTip!
Advisories are also available from the
GraphQL API