GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,743
Erlang
35
GitHub Actions
29
Go
2,315
Maven
5,000+
npm
3,949
NuGet
711
pip
3,729
Pub
12
RubyGems
920
Rust
965
Swift
38
Unreviewed advisories
All unreviewed
5,000+
34,836 advisories
Filter by severity
A reflected cross-site scripting (XSS) vulnerability in the GlobalProtect portal feature of Palo...
Moderate
Unreviewed
CVE-2024-0010
was published
Feb 14, 2024
A cross-site scripting (XSS) vulnerability in Task Manager App v1.0 allows attackers to execute...
Moderate
Unreviewed
CVE-2024-25221
was published
Feb 14, 2024
A cross-site scripting (XSS) vulnerability in Simple Admin Panel App v1.0 allows attackers to...
Moderate
Unreviewed
CVE-2024-25224
was published
Feb 14, 2024
A cross-site scripting (XSS) vulnerability in Simple Admin Panel App v1.0 allows attackers to...
Moderate
Unreviewed
CVE-2024-25226
was published
Feb 14, 2024
A cross-site scripting (XSS) vulnerability in Task Manager App v1.0 allows attackers to execute...
Moderate
Unreviewed
CVE-2024-25218
was published
Feb 14, 2024
A cross-site scripting (XSS) vulnerability in Simple Admin Panel App v1.0 allows attackers to...
Moderate
Unreviewed
CVE-2024-25225
was published
Feb 14, 2024
A cross-site scripting (XSS) vulnerability in Task Manager App v1.0 allows attackers to execute...
Moderate
Unreviewed
CVE-2024-25219
was published
Feb 14, 2024
Barangay Population Monitoring System v1.0 was discovered to contain a cross-site scripting (XSS)...
Moderate
Unreviewed
CVE-2024-25207
was published
Feb 14, 2024
Barangay Population Monitoring System v1.0 was discovered to contain a cross-site scripting (XSS)...
Moderate
Unreviewed
CVE-2024-25208
was published
Feb 14, 2024
Cross-site Scripting in the tag name pattern field in the tag protections UI in GitHub Enterprise...
Moderate
Unreviewed
CVE-2024-1084
was published
Feb 13, 2024
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
High
Unreviewed
CVE-2024-21395
was published
Feb 13, 2024
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
High
Unreviewed
CVE-2024-21389
was published
Feb 13, 2024
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
High
Unreviewed
CVE-2024-21393
was published
Feb 13, 2024
Dynamics 365 Field Service Spoofing Vulnerability
High
Unreviewed
CVE-2024-21394
was published
Feb 13, 2024
An issue was discovered in Zimbra Collaboration (ZCS) 8.8.15, 9.0, and 10.0. An attacker can send...
Moderate
Unreviewed
CVE-2023-45207
was published
Feb 13, 2024
Zimbra Collaboration before Kepler 9.0.0 Patch 38 GA allows DOM-based JavaScript injection in the...
Critical
Unreviewed
CVE-2023-50808
was published
Feb 13, 2024
Microsoft Dynamics 365 Customer Engagement Cross-Site Scripting Vulnerability
High
Unreviewed
CVE-2024-21327
was published
Feb 13, 2024
Azure Stack Hub Spoofing Vulnerability
Moderate
Unreviewed
CVE-2024-20679
was published
Feb 13, 2024
An issue was discovered in Zimbra Collaboration (ZCS) 8.8.15, 9.0, and 10.0. Through the help...
Moderate
Unreviewed
CVE-2023-45206
was published
Feb 13, 2024
An issue was discovered in Zimbra Collaboration (ZCS) 8.8.15, 9.0, and 10.0. XSS, with resultant...
Moderate
Unreviewed
CVE-2023-48432
was published
Feb 13, 2024
XSS sidekiq-unique-jobs UI server vulnerability
High
CVE-2024-25122
was published
for
sidekiq-unique-jobs
(RubyGems)
Feb 13, 2024
A cross-site scripting vulnerability in Trellix Central Management (CM) prior to 9.1.3.97129...
Moderate
Unreviewed
CVE-2023-6072
was published
Feb 13, 2024
The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
Moderate
Unreviewed
CVE-2024-1159
was published
Feb 13, 2024
ProTip!
Advisories are also available from the
GraphQL API