GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,748
Erlang
35
GitHub Actions
29
Go
2,321
Maven
5,000+
npm
3,955
NuGet
712
pip
3,736
Pub
12
RubyGems
921
Rust
972
Swift
38
Unreviewed advisories
All unreviewed
5,000+
1,530 advisories
Filter by severity
Cross-site scripting (XSS) vulnerability in the JsonBuilder implementation in ProjectForge before...
Low
Unreviewed
CVE-2013-7250
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in the Quizzler module before 7-x.1.16 for Drupal allows...
Low
Unreviewed
CVE-2015-3376
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in the Taxonews module before 6.x-1.2 and 7.x-1.x before...
Low
Unreviewed
CVE-2015-3369
was published
May 17, 2022
Multiple cross-site scripting (XSS) vulnerabilities in the Room Reservations module before 7.x-1...
Low
Unreviewed
CVE-2015-3359
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in the Node Invite module before 6.x-2.5 for Drupal...
Low
Unreviewed
CVE-2015-3372
was published
May 17, 2022
Multiple cross-site scripting (XSS) vulnerabilities in Aruba Networks ClearPass Policy Manager ...
Low
Unreviewed
CVE-2015-4132
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in Zurmo CRM 3.0.2 allows remote authenticated users to...
Low
Unreviewed
CVE-2015-5365
was published
May 17, 2022
The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows...
Low
Unreviewed
CVE-2020-10447
was published
May 24, 2022
Multiple cross-site scripting (XSS) vulnerabilities in the Error dialog in IBM Case Manager 5.2.1...
Low
Unreviewed
CVE-2015-1979
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in IBM Rational Team Concert 2.x and 3.x before 3.0.1.6...
Low
Unreviewed
CVE-2015-0122
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in phpMyAdmin 3.5.x before 3.5.8.2 and 4.0.x before 4.0...
Low
Unreviewed
CVE-2013-4995
was published
May 17, 2022
Multiple cross-site scripting (XSS) vulnerabilities in eXtplorer 2.1.3, when used as a component...
Low
Unreviewed
CVE-2013-5951
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in libraries/error_report.lib.php in the error-reporting...
Low
Unreviewed
CVE-2014-8960
was published
May 17, 2022
The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows...
Low
Unreviewed
CVE-2020-10453
was published
May 24, 2022
Cross-site scripting (XSS) vulnerability in the nodeauthor module for Drupal allows remote...
Low
Unreviewed
CVE-2015-3365
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in the Node Access Product module for Drupal allows...
Low
Unreviewed
CVE-2015-3386
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in the Node basket module for Drupal allows remote...
Low
Unreviewed
CVE-2015-3381
was published
May 17, 2022
Multiple cross-site scripting (XSS) vulnerabilities in Cisco FireSight Management Center (MC) 5.3...
Low
Unreviewed
CVE-2015-6353
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in the selection list in the filters in the...
Low
Unreviewed
CVE-2014-8986
was published
May 17, 2022
Multiple cross-site scripting (XSS) vulnerabilities in the administrative user interface in EMC M...
Low
Unreviewed
CVE-2015-0513
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in Notes in Apple OS X before 10.11 allows local users...
Low
Unreviewed
CVE-2015-5875
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in Namazu before 2.0.21, when Internet Explorer 6 or 7...
Low
Unreviewed
CVE-2011-4345
was published
May 17, 2022
Multiple cross-site scripting (XSS) vulnerabilities in EMC Documentum WebTop 6.7SP1 before P31, 6...
Low
Unreviewed
CVE-2015-0551
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in the Cakifo theme 1.x before 1.6.2 for WordPress...
Low
Unreviewed
CVE-2014-3903
was published
May 17, 2022
Cross site scripting in Concrete CMS
Low
CVE-2022-30120
was published
for
concrete5/core
(Composer)
Jun 25, 2022
ProTip!
Advisories are also available from the
GraphQL API