GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,951
Erlang
39
GitHub Actions
38
Go
2,607
Maven
5,000+
npm
4,251
NuGet
757
pip
4,017
Pub
12
RubyGems
953
Rust
1,049
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,582 advisories
Filter by severity
Cross-site scripting (XSS) vulnerability in IBM InfoSphere Master Data Management Collaborative...
Low
Unreviewed
CVE-2015-1968
was published
May 17, 2022
Multiple cross-site scripting (XSS) vulnerabilities in Cisco FireSight Management Center (MC) 5.4...
Low
Unreviewed
CVE-2015-6354
was published
May 17, 2022
Multiple cross-site scripting (XSS) vulnerabilities in the web framework in Cisco FireSIGHT...
Low
Unreviewed
CVE-2015-6363
was published
May 17, 2022
The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows...
Low
Unreviewed
CVE-2020-10452
was published
May 24, 2022
A stored cross-site scripting (XSS) vulnerability exists in the WPForms Contact Form (aka wpforms...
Low
Unreviewed
CVE-2020-10385
was published
May 24, 2022
The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows...
Low
Unreviewed
CVE-2020-10449
was published
May 24, 2022
Cross-site scripting (XSS) vulnerability in IBM Forms Experience Builder 8.5.x and 8.6.x before 8...
Low
Unreviewed
CVE-2016-0370
was published
May 17, 2022
A stored XSS vulnerability was discovered in Micro Focus Vibe, affecting all Vibe version prior...
Low
Unreviewed
CVE-2020-9520
was published
May 24, 2022
The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows...
Low
Unreviewed
CVE-2020-10451
was published
May 24, 2022
Cross-site scripting (XSS) vulnerability in IBM Business Process Manager (BPM) 8.0.x through 8.0...
Low
Unreviewed
CVE-2015-4955
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in the Term Merge module before 7.x-1.2 for Drupal...
Low
Unreviewed
CVE-2015-3360
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in the Course module 6.x-1.x before 6.x-1.2 and 7.x-1.x...
Low
Unreviewed
CVE-2015-3344
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in the Taxonomy Path module before 7.x-1.2 for Drupal...
Low
Unreviewed
CVE-2015-3385
was published
May 17, 2022
Multiple cross-site scripting (XSS) vulnerabilities in the Taxonomy Tools module before 7.x-1.4...
Low
Unreviewed
CVE-2015-3387
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in IBM Tivoli Common Reporting (TCR) 2.1 before IF13 and...
Low
Unreviewed
CVE-2015-1969
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in Zoho ManageEngine AssetExplorer 6.1 service pack 6112...
Low
Unreviewed
CVE-2015-5061
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in the HTML-Scrubber module before 0.15 for Perl, when...
Low
Unreviewed
CVE-2015-5667
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in IBM Rational DOORS Next Generation 4.x before 4.0.7...
Low
Unreviewed
CVE-2015-0125
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in IBM Rational Quality Manager 2.x and 3.x before 3.0.1...
Low
Unreviewed
CVE-2015-0124
was published
May 17, 2022
Stored XSS exists in the Appointment Booking Calendar plugin before 1.3.35 for WordPress. In the...
Low
Unreviewed
CVE-2020-9371
was published
May 24, 2022
The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows...
Low
Unreviewed
CVE-2020-10450
was published
May 24, 2022
The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows...
Low
Unreviewed
CVE-2020-10448
was published
May 24, 2022
The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows...
Low
Unreviewed
CVE-2020-10455
was published
May 24, 2022
Cross-site scripting (XSS) vulnerability in the ePO extension in McAfee Data Loss Prevention...
Low
Unreviewed
CVE-2015-2760
was published
May 17, 2022
The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows...
Low
Unreviewed
CVE-2020-10454
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API