GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,747
Erlang
35
GitHub Actions
29
Go
2,321
Maven
5,000+
npm
3,955
NuGet
712
pip
3,736
Pub
12
RubyGems
921
Rust
972
Swift
38
Unreviewed advisories
All unreviewed
5,000+
651 advisories
Filter by severity
OpenShift Console Server Side Request Forgery vulnerability
Moderate
CVE-2024-6538
was published
for
github.com/openshift/console
(Go)
Nov 25, 2024
Sensitive information disclosure due to SSRF. The following products are affected: Acronis Cyber...
Moderate
Unreviewed
CVE-2025-48962
was published
Jun 4, 2025
A vulnerability classified as critical was found in quequnlong shiyi-blog up to 1.2.1. This...
Moderate
Unreviewed
CVE-2025-5510
was published
Jun 3, 2025
A server-side request forgery (SSRF) vulnerability exists in multiple WSO2 products due to...
Moderate
Unreviewed
CVE-2024-7073
was published
Jun 2, 2025
A server-side request forgery vulnerability exists in HPE StoreOnce Software.
Moderate
Unreviewed
CVE-2025-37090
was published
Jun 2, 2025
An issue was discovered in WSO2 Dashboard Server 2.0.0. It is possible to force the application...
Moderate
Unreviewed
CVE-2019-6516
was published
May 24, 2022
An SSRF issue was discovered in Zoho Application Control Plus before version 10.0.511. The mail...
Moderate
Unreviewed
CVE-2020-15594
was published
May 24, 2022
An issue was discovered in WSO2 API Manager 2.6.0. It is possible to force the application to...
Moderate
Unreviewed
CVE-2019-6512
was published
May 24, 2022
maccms10 v2025.1000.4047 is vulnerable to Server-Side request forgery (SSRF) in Friend Link...
Moderate
Unreviewed
CVE-2025-45475
was published
May 27, 2025
A vulnerability was found in chshcms mccms 2.7. It has been classified as critical. This affects...
Moderate
Unreviewed
CVE-2025-5327
was published
May 29, 2025
Strapi allows Server-Side Request Forgery in Webhook function
Moderate
CVE-2024-52588
was published
for
@strapi/admin
(npm)
May 27, 2025
Markdownify MCP Server allows Server-Side Request Forgery (SSRF) via the Markdownify.get() function
Moderate
CVE-2025-5276
was published
for
mcp-markdownify-server
(npm)
May 29, 2025
A vulnerability was found in thinkgem JeeSite up to 5.11.1. It has been rated as critical....
Moderate
Unreviewed
CVE-2025-5186
was published
May 26, 2025
A vulnerability classified as critical has been found in Seeyon Zhiyuan OA Web Application System...
Moderate
Unreviewed
CVE-2025-5140
was published
May 25, 2025
A Server-Side Request Forgery (SSRF) vulnerability in StrangeBee TheHive 5.2.0 before 5.2.16, 5.3...
Moderate
Unreviewed
CVE-2025-48739
was published
May 23, 2025
The Page Builder Gutenberg Blocks WordPress plugin before 3.1.12 does not prevent users from...
Moderate
Unreviewed
CVE-2024-4260
was published
Jul 23, 2024
The Broken Link Checker WordPress plugin before 2.4.2 does not validate a the link URLs before...
Moderate
Unreviewed
CVE-2024-10903
was published
Dec 26, 2024
The Ninja Forms Webhooks plugin for WordPress is vulnerable to Server-Side Request Forgery in all...
Moderate
Unreviewed
CVE-2024-13940
was published
May 14, 2025
The Import WP WordPress plugin before 2.13.1 does not prevent users with the administrator role...
Moderate
Unreviewed
CVE-2023-7253
was published
Apr 24, 2024
Cellopoint Cellos v4.1.10 Build 20190922 does not validate URL inputted properly. With cookie of...
Moderate
Unreviewed
CVE-2020-17386
was published
May 24, 2022
Server-Side Request Forgery (SSRF) vulnerability in ThimPress WP Pipes allows Server Side Request...
Moderate
Unreviewed
CVE-2025-47664
was published
May 7, 2025
Server-Side Request Forgery (SSRF) vulnerability in WPWebinarSystem WebinarPress allows Server...
Moderate
Unreviewed
CVE-2025-47635
was published
May 7, 2025
Server-Side Request Forgery (SSRF) vulnerability in solacewp Solace Extra allows Server Side...
Moderate
Unreviewed
CVE-2025-47464
was published
May 7, 2025
Server-Side Request Forgery (SSRF) vulnerability in Iulia Cazan Easy Replace Image allows Server...
Moderate
Unreviewed
CVE-2025-47483
was published
May 7, 2025
Server-Side Request Forgery (SSRF) vulnerability in Oliver Campion Display Remote Posts Block...
Moderate
Unreviewed
CVE-2025-47484
was published
May 7, 2025
ProTip!
Advisories are also available from the
GraphQL API