GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,743
Erlang
35
GitHub Actions
29
Go
2,318
Maven
5,000+
npm
3,950
NuGet
711
pip
3,729
Pub
12
RubyGems
920
Rust
965
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
27,434 advisories
Filter by severity
A vulnerability was found in TOTOLINK X2000R 1.0.0-B20230726.1108. It has been classified as...
Moderate
Unreviewed
CVE-2025-5542
was published
Jun 4, 2025
A vulnerability was found in TOTOLINK X2000R 1.0.0-B20230726.1108. It has been declared as...
Moderate
Unreviewed
CVE-2025-5543
was published
Jun 4, 2025
A vulnerability classified as problematic has been found in enilu web-flash 1.0. This affects the...
Moderate
Unreviewed
CVE-2025-5523
was published
Jun 3, 2025
A vulnerability, which was classified as problematic, was found in TOTOLINK X2000R 1.0.0...
Moderate
Unreviewed
CVE-2025-5516
was published
Jun 3, 2025
A vulnerability was found in TOTOLINK A3002RU 2.1.1-B20230720.1011. It has been declared as...
Moderate
Unreviewed
CVE-2025-5507
was published
Jun 3, 2025
A vulnerability has been found in quequnlong shiyi-blog up to 1.2.1 and classified as problematic...
Moderate
Unreviewed
CVE-2025-5513
was published
Jun 3, 2025
A vulnerability was found in TOTOLINK A3002RU 2.1.1-B20230720.1011. It has been rated as...
Moderate
Unreviewed
CVE-2025-5508
was published
Jun 3, 2025
A vulnerability was found in TOTOLINK A3002RU 2.1.1-B20230720.1011. It has been classified as...
Moderate
Unreviewed
CVE-2025-5506
was published
Jun 3, 2025
A vulnerability was found in TOTOLINK A3002RU 2.1.1-B20230720.1011 and classified as problematic....
Moderate
Unreviewed
CVE-2025-5505
was published
Jun 3, 2025
The Popup Maker plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ...
Moderate
Unreviewed
CVE-2025-4205
was published
Jun 3, 2025
The Profile Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
Moderate
Unreviewed
CVE-2025-4671
was published
Jun 3, 2025
The Music Player for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting...
Moderate
Unreviewed
CVE-2025-5340
was published
Jun 3, 2025
The Vayu Blocks – Gutenberg Blocks for WordPress & WooCommerce plugin for WordPress is vulnerable...
Moderate
Unreviewed
CVE-2025-4420
was published
Jun 3, 2025
The WP Plugin Info Card plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
Moderate
Unreviewed
CVE-2025-5116
was published
Jun 3, 2025
The WordPress Comments Import & Export plugin for WordPress is vulnerable to unauthorized...
Moderate
Unreviewed
CVE-2025-3919
was published
Jun 3, 2025
osTicket prior to v1.17.6 and v1.18.2 are vulnerable to Broken Access Control Vulnerability in ...
Moderate
Unreviewed
CVE-2025-45387
was published
Jun 2, 2025
In Splunk Enterprise versions below 9.4.2, 9.3.4 and 9.2.6, and Splunk Cloud Platform versions...
Moderate
Unreviewed
CVE-2025-20297
was published
Jun 2, 2025
A stored cross-site scripting (XSS) vulnerability exists in the Management Console of multiple...
Moderate
Unreviewed
CVE-2024-3509
was published
Jun 2, 2025
A reflected cross-site scripting (XSS) vulnerability exists in multiple [Vendor Name] products...
Moderate
Unreviewed
CVE-2024-8008
was published
Jun 2, 2025
A vulnerability has been found in Cotonti Siena v0.9.25. Affected by this vulnerability is the...
Moderate
Unreviewed
CVE-2025-44115
was published
Jun 2, 2025
A Cross Site Scripting (XSS) vulnerability in Sitecom WLX-2006 Wall Mount Range Extender N300 v1...
Moderate
Unreviewed
CVE-2024-40114
was published
Jun 2, 2025
A vulnerability was found in Mist Community Edition up to 4.7.1. It has been rated as problematic...
Moderate
Unreviewed
CVE-2025-5411
was published
Jun 2, 2025
A vulnerability classified as problematic has been found in Mist Community Edition up to 4.7.1....
Moderate
Unreviewed
CVE-2025-5412
was published
Jun 2, 2025
A vulnerability classified as problematic was found in juzaweb CMS up to 3.4.2. Affected by this...
Moderate
Unreviewed
CVE-2025-5420
was published
Jun 2, 2025
A vulnerability has been found in chaitak-gorai Blogbook up to...
Moderate
Unreviewed
CVE-2025-5407
was published
Jun 1, 2025
ProTip!
Advisories are also available from the
GraphQL API