GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,743
Erlang
35
GitHub Actions
29
Go
2,315
Maven
5,000+
npm
3,949
NuGet
711
pip
3,729
Pub
12
RubyGems
920
Rust
965
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
31,156 advisories
Filter by severity
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2023-50834
was published
Dec 21, 2023
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2023-50831
was published
Dec 21, 2023
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2023-50829
was published
Dec 21, 2023
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2023-50830
was published
Dec 21, 2023
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2023-50832
was published
Dec 21, 2023
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2023-50833
was published
Dec 21, 2023
SmarterTools SmarterMail 16.x 8495 through 8664 before 8747 allows stored XSS via a crafted...
Moderate
Unreviewed
CVE-2023-48116
was published
Dec 21, 2023
SmarterTools SmarterMail 16.x 8495 through 8664 before 8747 allows stored DOM XSS because an XSS...
Moderate
Unreviewed
CVE-2023-48115
was published
Dec 21, 2023
SmarterTools SmarterMail 16.x 8495 through 8664 before 8747 allows stored XSS by using image/svg...
Moderate
Unreviewed
CVE-2023-48114
was published
Dec 21, 2023
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2023-50827
was published
Dec 21, 2023
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2023-50377
was published
Dec 21, 2023
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2023-47525
was published
Dec 21, 2023
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2023-47527
was published
Dec 21, 2023
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2023-6122
was published
Dec 21, 2023
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2023-50822
was published
Dec 21, 2023
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2023-50823
was published
Dec 21, 2023
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2023-50824
was published
Dec 21, 2023
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2023-50826
was published
Dec 21, 2023
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2023-50825
was published
Dec 21, 2023
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2023-50828
was published
Dec 21, 2023
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2023-5989
was published
Dec 21, 2023
Cross-Site Scripting (XSS) vulnerability in bill-ahmed qbit-matUI version 1.16.4, allows remote...
Moderate
Unreviewed
CVE-2023-50473
was published
Dec 21, 2023
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2023-5988
was published
Dec 21, 2023
Due to this vulnerability, the Master operator could potentially incorporate an SVG tag into HTML...
Moderate
Unreviewed
CVE-2023-28025
was published
Dec 21, 2023
HCL Launch is vulnerable to HTML injection. This vulnerability may allow a user to embed...
Moderate
Unreviewed
CVE-2023-45700
was published
Dec 21, 2023
ProTip!
Advisories are also available from the
GraphQL API