GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,748
Erlang
35
GitHub Actions
29
Go
2,321
Maven
5,000+
npm
3,955
NuGet
712
pip
3,736
Pub
12
RubyGems
921
Rust
972
Swift
38
Unreviewed advisories
All unreviewed
5,000+
1,530 advisories
Filter by severity
Cross-site scripting (XSS) vulnerability in templates/mytribiqsite/tribal-GPL-1066/includes...
Low
Unreviewed
CVE-2008-4893
was published
May 17, 2022
Microsoft SharePoint uses URLs with the same hostname and port number for a web site's primary...
Low
Unreviewed
CVE-2008-5026
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in modules.php in NavBoard 16 (2.6.0) allows remote...
Low
Unreviewed
CVE-2008-5944
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in the Simplenews module 5.x before 5.x-1.5 and 6.x...
Low
Unreviewed
CVE-2008-5996
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in the Ajax Checklist module 5.x before 5.x-1.1 for...
Low
Unreviewed
CVE-2008-5999
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in Movable Type 4 through 4.21 allows remote attackers...
Low
Unreviewed
CVE-2008-4634
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in Drupal 5.x before 5.12 and 6.x before 6.6 allows...
Low
Unreviewed
CVE-2008-6170
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in IBM Workplace Content Management (WCM) 6.0G and 6.1...
Low
Unreviewed
CVE-2008-5228
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in the administrative interface in Drupal Content...
Low
Unreviewed
CVE-2008-6229
was published
May 17, 2022
Multiple cross-site scripting (XSS) vulnerabilities in Joomla! 1.5.7 and earlier allow remote...
Low
Unreviewed
CVE-2008-6299
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in the Taxonomy Breadcrumb module 5.x before 5.x-1.5 and...
Low
Unreviewed
CVE-2010-1984
was published
May 17, 2022
Multiple cross-site scripting (XSS) vulnerabilities in Drupal Content Construction Kit (CCK) 5.x...
Low
Unreviewed
CVE-2008-6972
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in the Taxonomy Breadcrumb module 6.x before 6.x-1.1 for...
Low
Unreviewed
CVE-2010-1976
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in the Workflow module 5.x-2.x before 5.x-2.6 and 6.x-1...
Low
Unreviewed
CVE-2010-1539
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in the FileField module 5.x before 5.x-2.5 and 6.x...
Low
Unreviewed
CVE-2010-1958
was published
May 17, 2022
Multiple cross-site scripting (XSS) vulnerabilities in the Heartbeat module 6.x before 6.x-4.9...
Low
Unreviewed
CVE-2010-2048
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in the CCK TableField module 6.x before 6.x-1.2 for...
Low
Unreviewed
CVE-2010-1998
was published
May 17, 2022
Multiple cross-site scripting (XSS) vulnerabilities in the Rotor Banner module 5.x before 5.x-1.8...
Low
Unreviewed
CVE-2010-2125
was published
May 17, 2022
Multiple cross-site scripting (XSS) vulnerabilities in the Storm module 5.x and 6.x before 6.x-1...
Low
Unreviewed
CVE-2010-2123
was published
May 17, 2022
A persistent cross-site scripting (XSS) vulnerability in Octopus Server 3.4.0 through 2019.10.5...
Low
Unreviewed
CVE-2019-19085
was published
May 24, 2022
Multiple cross-site scripting (XSS) vulnerabilities in Sijio Community Software allow remote...
Low
Unreviewed
CVE-2010-2698
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in Sijio Community Software allows remote authenticated...
Low
Unreviewed
CVE-2010-2697
was published
May 17, 2022
Cross-site Scripting in RabbitMQ
Low
CVE-2019-11291
was published
for
rabbit_common
(Erlang)
May 24, 2022
Codologic Codoforum through 4.8.4 allows a DOM-based XSS. While creating a new topic as a normal...
Low
Unreviewed
CVE-2020-7050
was published
May 24, 2022
Cross-site scripting in Apache Struts
Low
CVE-2006-1548
was published
for
struts:struts
(Maven)
May 1, 2022
ProTip!
Advisories are also available from the
GraphQL API