GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,743
Erlang
35
GitHub Actions
29
Go
2,315
Maven
5,000+
npm
3,949
NuGet
711
pip
3,729
Pub
12
RubyGems
920
Rust
965
Swift
38
Unreviewed advisories
All unreviewed
5,000+
791 advisories
Filter by severity
Cross-site scripting in Apache JSPWiki
Moderate
CVE-2019-12404
was published
for
org.apache.jspwiki:jspwiki-war
(Maven)
Oct 11, 2019
Cross-site scripting in Apache JSPWiki
Moderate
CVE-2019-10089
was published
for
org.apache.jspwiki:jspwiki-war
(Maven)
Oct 11, 2019
Cross-site scripting in Apache JSPWiki
Moderate
CVE-2019-10087
was published
for
org.apache.jspwiki:jspwiki-war
(Maven)
Oct 11, 2019
Cross-site scripting in Apache JSPWiki
Moderate
CVE-2019-10090
was published
for
org.apache.jspwiki:jspwiki-war
(Maven)
Oct 11, 2019
Cross-site scripting in Sakai
Moderate
CVE-2019-16148
was published
for
org.sakaiproject:chat-base
(Maven)
Sep 23, 2019
Cross-site Scripting in Jooby
Moderate
CVE-2019-15477
was published
for
org.jooby:jooby
(Maven)
Aug 27, 2019
Cross-site Scripting in Ignite Realtime Openfire
Moderate
CVE-2019-15488
was published
for
org.igniterealtime.openfire:xmppserver
(Maven)
Aug 27, 2019
Cross-site scripting in Apache Ranger
Moderate
CVE-2019-12397
was published
for
org.apache.ranger:ranger
(Maven)
Aug 16, 2019
Cross-site Scripting in HAPI FHIR
Moderate
CVE-2019-12741
was published
for
ca.uhn.hapi.fhir:hapi-fhir-base
(Maven)
Jun 7, 2019
Cross-site Scriptin in JSPWiki
Moderate
CVE-2019-10078
was published
for
org.apache.jspwiki:jspwiki-main
(Maven)
Jun 6, 2019
Cross-site Scripting in JSPWiki
Moderate
CVE-2019-10077
was published
for
org.apache.jspwiki:jspwiki-main
(Maven)
Jun 6, 2019
Cross-Site Scripting in JSPWiki
Moderate
CVE-2019-10076
was published
for
org.apache.jspwiki:jspwiki-main
(Maven)
Jun 6, 2019
Cross-site scripting in Apache Tomcat
Moderate
CVE-2019-0221
was published
for
org.apache.tomcat.embed:tomcat-embed-core
(Maven)
May 30, 2019
Cross-site Scripting in Apache UIMA
Moderate
CVE-2018-8035
was published
for
org.apache.uima:uima-ducc-web
(Maven)
May 14, 2019
Cross-site scripting in Apache Archiva
Moderate
CVE-2019-0213
was published
for
org.apache.archiva:archiva
(Maven)
May 14, 2019
XSS in jQuery as used in Drupal, Backdrop CMS, and other products
Moderate
CVE-2019-11358
was published
for
django
(RubyGems)
Apr 26, 2019
Cross-site Scripting in Apache Zeppelin
Moderate
CVE-2018-1328
was published
for
org.apache.zeppelin:zeppelin
(Maven)
Apr 24, 2019
Cross-site Scripting in Eclipse Jetty
Moderate
CVE-2019-10241
was published
for
org.eclipse.jetty:jetty-server
(Maven)
Apr 23, 2019
Moderate severity vulnerability that affects org.apache.jspwiki:jspwiki-main
Moderate
CVE-2019-0224
was published
for
org.apache.jspwiki:jspwiki-main
(Maven)
Apr 2, 2019
Moderate severity vulnerability that affects org.b3log:symphony
Moderate
CVE-2019-9142
was published
for
org.b3log:symphony
(Maven)
Mar 6, 2019
Bootstrap Vulnerable to Cross-Site Scripting
Moderate
CVE-2019-8331
was published
for
Bootstrap.Less
(RubyGems)
Feb 22, 2019
Cross-site Scripting in jspwiki-war
Moderate
CVE-2018-20242
was published
for
org.apache.jspwiki:jspwiki-war
(Maven)
Feb 12, 2019
bootstrap Cross-site Scripting vulnerability
Moderate
CVE-2018-20677
was published
for
bootstrap
(RubyGems)
Jan 17, 2019
XSS vulnerability that affects bootstrap
Moderate
CVE-2018-20676
was published
for
bootstrap
(RubyGems)
Jan 17, 2019
Bootstrap Cross-site Scripting vulnerability
Moderate
CVE-2016-10735
was published
for
bootstrap
(RubyGems)
Jan 17, 2019
ProTip!
Advisories are also available from the
GraphQL API