GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,951
Erlang
39
GitHub Actions
38
Go
2,607
Maven
5,000+
npm
4,251
NuGet
757
pip
4,017
Pub
12
RubyGems
953
Rust
1,049
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,716 advisories
Filter by severity
Cross-site Scripting in Subrion CMS
Moderate
CVE-2020-18324
was published
for
intelliants/subrion
(Composer)
Mar 5, 2022
Cross-site Scripting in Pimcore
Moderate
CVE-2022-0831
was published
for
pimcore/pimcore
(Composer)
Mar 5, 2022
Cross-site Scripting in Pimcore
Moderate
CVE-2022-0832
was published
for
pimcore/pimcore
(Composer)
Mar 5, 2022
Cross-site Scripting in GeniXCMS
Moderate
CVE-2022-24563
was published
for
genix/cms
(Composer)
Mar 4, 2022
Cross site scripting in getgrav/grav
Moderate
CVE-2022-0743
was published
for
getgrav/grav
(Composer)
Mar 2, 2022
Cross-site Scripting in Cipi
Moderate
CVE-2022-26332
was published
for
andreapollastri/cipi
(Composer)
Mar 2, 2022
Cross site scripting in LibreNMS
Moderate
CVE-2022-0772
was published
for
librenms/librenms
(Composer)
Feb 28, 2022
Cross-site Scripting in microweber
Moderate
CVE-2022-0723
was published
for
microweber/microweber
(Composer)
Feb 27, 2022
Cross-site Scripting in microweber
Moderate
CVE-2022-0763
was published
for
microweber/microweber
(Composer)
Feb 27, 2022
Cross site scripting in francoisjacquet/rosariosis
Moderate
CVE-2021-44566
was published
for
francoisjacquet/rosariosis
(Composer)
Feb 25, 2022
Cross site scripting in francoisjacquet/rosariosis
Moderate
CVE-2021-44565
was published
for
francoisjacquet/rosariosis
(Composer)
Feb 25, 2022
Cross-site Scripting in Microweber
High
CVE-2022-0719
was published
for
microweber/microweber
(Composer)
Feb 24, 2022
Cross-site Scripting in microweber
Moderate
CVE-2022-0678
was published
for
microweber/microweber
(Composer)
Feb 20, 2022
Cross-site Scripting in microweber
High
CVE-2022-0690
was published
for
microweber/microweber
(Composer)
Feb 20, 2022
Cross-site Scripting in livehelperchat
Moderate
CVE-2022-0612
was published
for
remdex/livehelperchat
(Composer)
Feb 17, 2022
Cross-site Scripting in librenms
Moderate
CVE-2022-0589
was published
for
librenms/librenms
(Composer)
Feb 16, 2022
Cross-site Scripting in librenms
Moderate
CVE-2022-0575
was published
for
librenms/librenms
(Composer)
Feb 15, 2022
Cross-site Scripting in librenms
Moderate
CVE-2022-0576
was published
for
librenms/librenms
(Composer)
Feb 15, 2022
Exposure of Sensitive Information to an Unauthorized Actor in pimcore
Moderate
CVE-2022-0565
was published
for
pimcore/pimcore
(Composer)
Feb 15, 2022
Cross-site Scripting in enshrined/svg-sanitize
Moderate
CVE-2022-23638
was published
for
enshrined/svg-sanitize
(Composer)
Feb 14, 2022
Cross-site Scripting in Drupal Core
Moderate
CVE-2020-13668
was published
for
drupal/core
(Composer)
Feb 12, 2022
Drupal core Cross-site Scripting (XSS) vulnerability in ckeditor
Moderate
CVE-2020-13669
was published
for
drupal/core
(Composer)
Feb 12, 2022
Drupal core Cross-site Scripting (XSS) vulnerability
Moderate
CVE-2020-13672
was published
for
drupal/core
(Composer)
Feb 12, 2022
Cross-site Scripting in microweber
Moderate
CVE-2022-0558
was published
for
microweber/microweber
(Composer)
Feb 11, 2022
Cross-site scripting in forkcms
Moderate
CVE-2020-23263
was published
for
forkcms/forkcms
(Composer)
Feb 10, 2022
ProTip!
Advisories are also available from the
GraphQL API