GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,633
Erlang
34
GitHub Actions
25
Go
2,239
Maven
5,000+
npm
3,900
NuGet
701
pip
3,667
Pub
12
RubyGems
914
Rust
943
Swift
38
Unreviewed advisories
All unreviewed
5,000+
33,847 advisories
Filter by severity
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-22664
was published
Feb 4, 2025
The Login Manager – Design Login Page, View Login Activity, Limit Login Attempts plugin for...
Moderate
Unreviewed
CVE-2025-2613
was published
Apr 18, 2025
The Piotnet Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site...
Moderate
Unreviewed
CVE-2024-13650
was published
Apr 18, 2025
A Stored cross-site scripting (XSS)
vulnerability in upnp page of the web Interface in TP-Link...
High
Unreviewed
CVE-2025-25427
was published
Apr 18, 2025
An improper neutralization of input vulnerability was identified in GitHub Enterprise Server that...
High
Unreviewed
CVE-2025-3246
was published
Apr 18, 2025
Sourcecodester Online ID Generator System 1.0 was discovered to contain Stored Cross Site...
Moderate
Unreviewed
CVE-2024-40069
was published
Apr 16, 2025
The web interface of the 1734-AENTR communication module is vulnerable to stored XSS. A remote,...
Moderate
Unreviewed
CVE-2020-14502
was published
Feb 25, 2022
Softr v2.0 was discovered to be vulnerable to HTML injection via the Name field of the Account page.
Critical
Unreviewed
CVE-2022-40434
was published
Dec 20, 2022
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2025-39594
was published
Apr 17, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2025-39521
was published
Apr 17, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2025-39464
was published
Apr 17, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2025-32578
was published
Apr 17, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2025-32608
was published
Apr 17, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2025-32634
was published
Apr 17, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2025-32625
was published
Apr 17, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2025-32628
was published
Apr 17, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2025-32637
was published
Apr 17, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2025-32646
was published
Apr 17, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2025-32638
was published
Apr 17, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2025-32526
was published
Apr 17, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2025-32504
was published
Apr 17, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2025-32531
was published
Apr 17, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2025-32533
was published
Apr 17, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2025-32560
was published
Apr 17, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2025-32566
was published
Apr 17, 2025
ProTip!
Advisories are also available from the
GraphQL API