GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,472
Erlang
33
GitHub Actions
24
Go
2,195
Maven
5,000+
npm
3,841
NuGet
696
pip
3,632
Pub
12
RubyGems
911
Rust
910
Swift
38
Unreviewed advisories
All unreviewed
5,000+
2,198 advisories
Filter by severity
Improper neutralization of input during web page generation vulnerability in MagnusSolution...
High
Unreviewed
CVE-2025-2609
was published
Mar 22, 2025
Improper neutralization of input during web page generation vulnerability in MagnusSolution...
High
Unreviewed
CVE-2025-2610
was published
Mar 22, 2025
Improper Neutralization of Input During Web Page Generation Cross-site Scripting vulnerability in...
High
Unreviewed
CVE-2025-25035
was published
Mar 21, 2025
Horde IMP through 6.2.27, as used with Horde Application Framework through 5.2.23, allows XSS...
High
Unreviewed
CVE-2025-30349
was published
Mar 21, 2025
A stored cross-site scripting (XSS) vulnerability exists in lunary-ai/lunary versions 1.6.7 and...
High
Unreviewed
CVE-2025-0281
was published
Mar 20, 2025
A vulnerability in the file upload functionality of the FlatPress CMS admin panel (version latest...
High
Unreviewed
CVE-2024-9699
was published
Mar 20, 2025
Open WebUI stored cross-site scripting (XSS) vulnerability
High
CVE-2024-7990
was published
for
open-webui
(pip)
Mar 20, 2025
A stored cross-site scripting (XSS) vulnerability exists in the Text Explorer component of...
High
Unreviewed
CVE-2024-8101
was published
Mar 20, 2025
Open WebUI Vulnerable to a Session Fixation Attack
High
CVE-2024-7053
was published
for
open-webui
(pip)
Mar 20, 2025
A stored cross-site scripting (XSS) vulnerability exists in flatpressblog/flatpress version 1.3....
High
Unreviewed
CVE-2024-4023
was published
Mar 20, 2025
A stored cross-site scripting (XSS) vulnerability exists in phpipam/phpipam version 1.5.2. The...
High
Unreviewed
CVE-2024-10720
was published
Mar 20, 2025
Jenkins AnchorChain Plugin Has a Cross-Site Scripting (XSS) Vulnerability
High
CVE-2025-30196
was published
for
org.jenkins-ci.plugins:anchorchain
(Maven)
Mar 19, 2025
FS Inc S3150-8T2F prior to version S3150-8T2F_2.2.0D_135103 is vulnerable to Cross Site Scripting...
High
Unreviewed
CVE-2025-25612
was published
Mar 17, 2025
A stored Cross-site Scripting (XSS) vulnerability affecting 3D Navigate in ENOVIA Collaborative...
High
Unreviewed
CVE-2025-0826
was published
Mar 17, 2025
A stored Cross-site Scripting (XSS) vulnerability affecting Project Gantt in ENOVIA Collaborative...
High
Unreviewed
CVE-2025-0832
was published
Mar 17, 2025
A stored Cross-site Scripting (XSS) vulnerability affecting Route Management in ENOVIA...
High
Unreviewed
CVE-2025-0833
was published
Mar 17, 2025
A stored Cross-site Scripting (XSS) vulnerability affecting 3DPlay in 3DSwymer from Release...
High
Unreviewed
CVE-2025-0827
was published
Mar 17, 2025
A stored Cross-site Scripting (XSS) vulnerability affecting Meeting Management in ENOVIA Change...
High
Unreviewed
CVE-2025-0830
was published
Mar 17, 2025
A stored Cross-site Scripting (XSS) vulnerability affecting 3D Markup in ENOVIA Collaborative...
High
Unreviewed
CVE-2025-0829
was published
Mar 17, 2025
A stored Cross-site Scripting (XSS) vulnerability affecting Relations in ENOVIA Collaborative...
High
Unreviewed
CVE-2025-0598
was published
Mar 17, 2025
A stored Cross-site Scripting (XSS) vulnerability affecting Product Explorer in ENOVIA...
High
Unreviewed
CVE-2025-0600
was published
Mar 17, 2025
A stored Cross-site Scripting (XSS) vulnerability affecting Document Management in ENOVIA...
High
Unreviewed
CVE-2025-0599
was published
Mar 17, 2025
A stored Cross-site Scripting (XSS) vulnerability affecting Issue Management in ENOVIA...
High
Unreviewed
CVE-2025-0601
was published
Mar 17, 2025
A stored Cross-site Scripting (XSS) vulnerability affecting Engineering Release in ENOVIA Product...
High
Unreviewed
CVE-2025-0828
was published
Mar 17, 2025
A stored Cross-site Scripting (XSS) vulnerability affecting 3DDashboard in 3DSwymer from Release...
High
Unreviewed
CVE-2025-0595
was published
Mar 17, 2025
ProTip!
Advisories are also available from the
GraphQL API