GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
40
GitHub Actions
38
Go
2,831
Maven
5,000+
npm
4,462
NuGet
775
pip
4,226
Pub
12
RubyGems
972
Rust
1,093
Swift
47
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
35,519 advisories
Filter by severity
A vulnerability was detected in pbrong hrms 1.0.1. The affected element is the function...
Moderate
Unreviewed
CVE-2026-1161
was published
Jan 19, 2026
A stored cross-site scripting (XSS) vulnerability exists in the Altium Forum due to missing...
Critical
Unreviewed
CVE-2026-1181
was published
Jan 19, 2026
A vulnerability was found in SourceCodester/Patrick Mvuma Patients Waiting Area Queue Management...
Moderate
Unreviewed
CVE-2026-1147
was published
Jan 19, 2026
A weakness has been identified in technical-laohu mpay up to 1.2.4. The affected element is an...
Moderate
Unreviewed
CVE-2026-1151
was published
Jan 19, 2026
A vulnerability has been found in SourceCodester/Patrick Mvuma Patients Waiting Area Queue...
Moderate
Unreviewed
CVE-2026-1146
was published
Jan 19, 2026
A security flaw has been discovered in itsourcecode Society Management System 1.0. This impacts...
Moderate
Unreviewed
CVE-2026-1135
was published
Jan 19, 2026
A weakness has been identified in lcg0124 BootDo up to e93dd428ef6f5c881aa74d49a2099ab0cf1e0fcb....
Moderate
Unreviewed
CVE-2026-1136
was published
Jan 19, 2026
A vulnerability was identified in itsourcecode Society Management System 1.0. This affects an...
Moderate
Unreviewed
CVE-2026-1134
was published
Jan 19, 2026
A security vulnerability has been detected in LigeroSmart up to 6.1.26. The affected element is...
Moderate
Unreviewed
CVE-2026-1049
was published
Jan 17, 2026
A weakness has been identified in LigeroSmart up to 6.1.26. Impacted is an unknown function of...
Moderate
Unreviewed
CVE-2026-1048
was published
Jan 17, 2026
The Integrate Dynamics 365 CRM plugin for WordPress is vulnerable to Stored Cross-Site Scripting...
Moderate
Unreviewed
CVE-2026-0725
was published
Jan 17, 2026
The CubeWP plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's...
Moderate
Unreviewed
CVE-2025-8615
was published
Jan 17, 2026
The CM E-Mail Blacklist – Simple email filtering for safer registration plugin for WordPress is...
Moderate
Unreviewed
CVE-2026-0691
was published
Jan 17, 2026
The Team Section Block plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
Moderate
Unreviewed
CVE-2026-0833
was published
Jan 17, 2026
Cross site scripting vulnerability in seeyon Zhiyuan A8+ Collaborative Management Software 7.0...
Moderate
Unreviewed
CVE-2025-56451
was published
Jan 17, 2026
Poll, Survey & Quiz Maker Plugin by Opinion Stage Wordpress plugin versions prior to 19.6.25...
Moderate
Unreviewed
CVE-2019-25297
was published
Jan 16, 2026
Markdownify 1.2.0 contains a persistent cross-site scripting vulnerability that allows attackers...
Moderate
Unreviewed
CVE-2021-47837
was published
Jan 16, 2026
Marky 0.0.1 contains a persistent cross-site scripting vulnerability that allows attackers to...
Moderate
Unreviewed
CVE-2021-47839
was published
Jan 16, 2026
Markright 1.0 contains a persistent cross-site scripting vulnerability that allows attackers to...
Moderate
Unreviewed
CVE-2021-47838
was published
Jan 16, 2026
SnipCommand 0.1.0 contains a cross-site scripting vulnerability that allows attackers to inject...
Moderate
Unreviewed
CVE-2021-47841
was published
Jan 16, 2026
Schlix CMS 2.2.6-6 contains a persistent cross-site scripting vulnerability that allows...
Moderate
Unreviewed
CVE-2021-47834
was published
Jan 16, 2026
Freeter 1.2.1 contains a persistent cross-site scripting vulnerability that allows attackers to...
Moderate
Unreviewed
CVE-2021-47835
was published
Jan 16, 2026
Moeditor 0.2.0 contains a persistent cross-site scripting vulnerability that allows attackers to...
Moderate
Unreviewed
CVE-2021-47840
was published
Jan 16, 2026
Xmind 2020 contains a cross-site scripting vulnerability that allows attackers to inject...
Moderate
Unreviewed
CVE-2021-47844
was published
Jan 16, 2026
StudyMD 0.3.2 contains a persistent cross-site scripting vulnerability that allows attackers to...
Moderate
Unreviewed
CVE-2021-47842
was published
Jan 16, 2026
ProTip!
Advisories are also available from the
GraphQL API