GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,950
Erlang
39
GitHub Actions
38
Go
2,605
Maven
5,000+
npm
4,250
NuGet
756
pip
4,016
Pub
12
RubyGems
953
Rust
1,049
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
33,997 advisories
Filter by severity
There is a cross-site scripting vulnerability in the
management UI of Absolute Secure Access...
Moderate
Unreviewed
CVE-2024-37351
was published
Jun 20, 2024
There is a cross-site scripting vulnerability in the
management UI of Absolute Secure Access...
Moderate
Unreviewed
CVE-2024-37352
was published
Jun 20, 2024
Cross Site Scripting (XSS) vulnerability in Averta Master Slider allows Reflected XSS.This issue...
High
Unreviewed
CVE-2024-37222
was published
Jun 20, 2024
For Kiuwan installations with SSO (single sign-on) enabled, an
unauthenticated reflected cross...
Moderate
Unreviewed
CVE-2023-49111
was published
Jun 20, 2024
A vulnerability classified as problematic has been found in EZ-Suite EZ-Partner 5. Affected is an...
Moderate
Unreviewed
CVE-2024-6183
was published
Jun 20, 2024
The Sina Extension for Elementor (Slider, Gallery, Form, Modal, Data Table, Tab, Particle, Free...
Moderate
Unreviewed
CVE-2024-5036
was published
Jun 20, 2024
A vulnerability was found in LabVantage LIMS 2017. It has been declared as problematic. This...
Moderate
Unreviewed
CVE-2024-6181
was published
Jun 20, 2024
A vulnerability was found in LabVantage LIMS 2017. It has been rated as problematic. This issue...
Moderate
Unreviewed
CVE-2024-6182
was published
Jun 20, 2024
The Responsive video embed WordPress plugin before 0.5.1 does not validate and escape some of its...
Moderate
Unreviewed
CVE-2024-5475
was published
Jun 20, 2024
The WPZOOM Addons for Elementor (Templates, Widgets) plugin for WordPress is vulnerable to Stored...
Moderate
Unreviewed
CVE-2024-5686
was published
Jun 20, 2024
The JetWidgets For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting...
Moderate
Unreviewed
CVE-2024-4626
was published
Jun 20, 2024
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-6177
was published
Jun 20, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-6179
was published
Jun 20, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-6178
was published
Jun 20, 2024
The SEOPress – On-site SEO plugin for WordPress is vulnerable to Stored Cross-Site Scripting via...
Moderate
Unreviewed
CVE-2024-1168
was published
Jun 20, 2024
The Custom Field Suite plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
Moderate
Unreviewed
CVE-2024-3558
was published
Jun 20, 2024
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-34443
was published
Jun 19, 2024
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-35765
was published
Jun 19, 2024
Multiple stored cross-site scripting (XSS) vulnerabilities in CodeProjects Health Care hospital...
Moderate
Unreviewed
CVE-2024-37803
was published
Jun 18, 2024
CodeProjects Restaurant Reservation System v1.0 was discovered to contain a reflected cross-site...
Moderate
Unreviewed
CVE-2024-37800
was published
Jun 18, 2024
In JetBrains Hub before 2024.2.34646 stored XSS via project description was possible
Low
Unreviewed
CVE-2024-38507
was published
Jun 18, 2024
The Divi theme for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to,...
Moderate
Unreviewed
CVE-2024-5533
was published
Jun 18, 2024
The Lightbox & Modal Popup WordPress Plugin WordPress plugin before 2.7.28, foobox-image...
Moderate
Unreviewed
CVE-2024-3276
was published
Jun 18, 2024
The Expert Invoice WordPress plugin through 1.0.2 does not sanitise and escape some of its...
Moderate
Unreviewed
CVE-2024-5172
was published
Jun 18, 2024
The Simple Share Buttons Adder WordPress plugin before 8.5.1 does not sanitise and escape some of...
Moderate
Unreviewed
CVE-2024-4094
was published
Jun 18, 2024
ProTip!
Advisories are also available from the
GraphQL API