GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,749
Erlang
35
GitHub Actions
29
Go
2,321
Maven
5,000+
npm
3,955
NuGet
712
pip
3,738
Pub
12
RubyGems
921
Rust
972
Swift
38
Unreviewed advisories
All unreviewed
5,000+
35,028 advisories
Filter by severity
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-30942
was published
Jun 6, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-27334
was published
Jun 6, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2023-26000
was published
Jun 6, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2023-26001
was published
Jun 6, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-49075
was published
Jun 6, 2025
Stored Cross-Site Scripting (XSS) vulnerability in IDF v0.10.0-0C03-03 and ZLF v0.10.0-0C03-04....
Moderate
Unreviewed
CVE-2025-41364
was published
Jun 6, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-49068
was published
Jun 6, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-49074
was published
Jun 6, 2025
Stored Cross-Site Scripting (XSS) vulnerability in IDF v0.10.0-0C03-03 and ZLF v0.10.0-0C03-04....
Moderate
Unreviewed
CVE-2025-41367
was published
Jun 6, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-49076
was published
Jun 6, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
High
Unreviewed
CVE-2025-48329
was published
Jun 6, 2025
The Domain For Sale plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ...
Moderate
Unreviewed
CVE-2025-5239
was published
Jun 6, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-49067
was published
Jun 6, 2025
A vulnerability was found in code-projects Traffic Offense Reporting System 1.0. It has been...
Moderate
Unreviewed
CVE-2025-5757
was published
Jun 6, 2025
The Knowledge Base plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
Moderate
Unreviewed
CVE-2025-5533
was published
Jun 6, 2025
A vulnerability classified as problematic has been found in SourceCodester Student Result...
Moderate
Unreviewed
CVE-2025-5727
was published
Jun 6, 2025
The StageShow plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘anchor’...
Moderate
Unreviewed
CVE-2025-5703
was published
Jun 6, 2025
The WordPress Ajax Load More and Infinite Scroll plugin for WordPress is vulnerable to Stored...
Moderate
Unreviewed
CVE-2025-5586
was published
Jun 6, 2025
The ESV Bible Shortcode for WordPress plugin for WordPress is vulnerable to Stored Cross-Site...
Moderate
Unreviewed
CVE-2025-5534
was published
Jun 6, 2025
The Developer Formatter plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
Moderate
Unreviewed
CVE-2025-5699
was published
Jun 6, 2025
The Runners Log plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin...
Moderate
Unreviewed
CVE-2025-5541
was published
Jun 6, 2025
The Freemind Viewer plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
Moderate
Unreviewed
CVE-2025-5536
was published
Jun 6, 2025
The Hide It plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's ...
Moderate
Unreviewed
CVE-2025-5565
was published
Jun 6, 2025
The BNS Featured Category plugin for WordPress is vulnerable to Stored Cross-Site Scripting via...
Moderate
Unreviewed
CVE-2025-5538
was published
Jun 6, 2025
A vulnerability, which was classified as problematic, was found in SourceCodester Student Result...
Moderate
Unreviewed
CVE-2025-5721
was published
Jun 6, 2025
ProTip!
Advisories are also available from the
GraphQL API