GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
40
GitHub Actions
38
Go
2,831
Maven
5,000+
npm
4,462
NuGet
775
pip
4,226
Pub
12
RubyGems
972
Rust
1,093
Swift
47
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
285,947 advisories
Filter by severity
A weakness has been identified in EyouCMS up to 1.7.1/5.0. Impacted is the function...
Moderate
Unreviewed
CVE-2026-1107
was published
Jan 18, 2026
A security vulnerability has been detected in cijliu librtsp up to...
Moderate
Unreviewed
CVE-2026-1108
was published
Jan 18, 2026
A security flaw has been discovered in Chamilo LMS up to 2.0.0 Beta 1. This issue affects the...
Moderate
Unreviewed
CVE-2026-1106
was published
Jan 18, 2026
A vulnerability was identified in EasyCMS up to 1.6. This vulnerability affects unknown code of...
Moderate
Unreviewed
CVE-2026-1105
was published
Jan 18, 2026
A vulnerability has been found in bastillion-io Bastillion up to 4.0.1. This vulnerability...
Moderate
Unreviewed
CVE-2026-1063
was published
Jan 17, 2026
A vulnerability was detected in kalcaddle kodbox up to 1.61.10. This issue affects some unknown...
Moderate
Unreviewed
CVE-2026-1066
was published
Jan 17, 2026
A vulnerability was found in bastillion-io Bastillion up to 4.0.1. This issue affects some...
Moderate
Unreviewed
CVE-2026-1064
was published
Jan 17, 2026
A security vulnerability has been detected in FeMiner wms up to...
Moderate
Unreviewed
CVE-2026-1059
was published
Jan 17, 2026
A vulnerability was detected in xiweicheng TMS up to 2.28.0. Affected by this issue is the...
Moderate
Unreviewed
CVE-2026-1061
was published
Jan 17, 2026
A flaw has been found in xiweicheng TMS up to 2.28.0. This affects the function Summary of the...
Moderate
Unreviewed
CVE-2026-1062
was published
Jan 17, 2026
A flaw has been found in risesoft-y9 Digital-Infrastructure up to 9.6.7. This affects an unknown...
Moderate
Unreviewed
CVE-2026-1050
was published
Jan 17, 2026
A security vulnerability has been detected in LigeroSmart up to 6.1.26. The affected element is...
Moderate
Unreviewed
CVE-2026-1049
was published
Jan 17, 2026
A weakness has been identified in LigeroSmart up to 6.1.26. Impacted is an unknown function of...
Moderate
Unreviewed
CVE-2026-1048
was published
Jan 17, 2026
A vulnerability was identified in Open5GS up to 2.7.5. This vulnerability affects the function...
Moderate
Unreviewed
CVE-2025-15531
was published
Jan 17, 2026
A security flaw has been discovered in Open5GS up to 2.7.5. This issue affects some unknown...
Moderate
Unreviewed
CVE-2025-15532
was published
Jan 17, 2026
A vulnerability was determined in Open5GS up to 2.7.6. This affects the function...
Moderate
Unreviewed
CVE-2025-15530
was published
Jan 17, 2026
The CubeWP plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's...
Moderate
Unreviewed
CVE-2025-8615
was published
Jan 17, 2026
The Integrate Dynamics 365 CRM plugin for WordPress is vulnerable to Stored Cross-Site Scripting...
Moderate
Unreviewed
CVE-2026-0725
was published
Jan 17, 2026
The Registration & Login with Mobile Phone Number for WooCommerce plugin for WordPress is...
Critical
Unreviewed
CVE-2025-10484
was published
Jan 17, 2026
The PAYGENT for WooCommerce plugin for WordPress is vulnerable to Missing Authorization in all...
Moderate
Unreviewed
CVE-2025-14078
was published
Jan 17, 2026
The CM E-Mail Blacklist – Simple email filtering for safer registration plugin for WordPress is...
Moderate
Unreviewed
CVE-2026-0691
was published
Jan 17, 2026
The Spin Wheel plugin for WordPress is vulnerable to client-side prize manipulation in all...
Moderate
Unreviewed
CVE-2026-0808
was published
Jan 17, 2026
The Team Section Block plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
Moderate
Unreviewed
CVE-2026-0833
was published
Jan 17, 2026
The CubeWP – All-in-One Dynamic Content Framework plugin for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2025-12129
was published
Jan 17, 2026
The Advanced Ads – Ad Manager & AdSense plugin for WordPress is vulnerable to SQL Injection via...
Moderate
Unreviewed
CVE-2025-12984
was published
Jan 17, 2026
ProTip!
Advisories are also available from the
GraphQL API