GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,344
Erlang
31
GitHub Actions
22
Go
2,112
Maven
5,000+
npm
3,767
NuGet
680
pip
3,454
Pub
12
RubyGems
892
Rust
888
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
25,366 advisories
Filter by severity
The Futurio Extra plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ...
Moderate
Unreviewed
CVE-2024-5646
was published
Jun 11, 2024
The Custom Field Suite plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
Moderate
Unreviewed
CVE-2024-3559
was published
Jun 12, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-32584
was published
Apr 18, 2024
The Extensions for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting...
Moderate
Unreviewed
CVE-2024-4868
was published
Jul 9, 2024
The WPZOOM Addons for Elementor (Templates, Widgets) plugin for WordPress is vulnerable to Stored...
Moderate
Unreviewed
CVE-2024-4370
was published
May 15, 2024
The Customer Reviews for WooCommerce plugin for WordPress is vulnerable to Reflected Cross-Site...
Moderate
Unreviewed
CVE-2024-3731
was published
Apr 19, 2024
IBM Cloud Pak for Business Automation 18.0.0, 18.0.1, 18.0.2, 19.0.1, 19.0.2, 19.0.3, 20.0.1, 20...
Moderate
Unreviewed
CVE-2024-52365
was published
Feb 5, 2025
IBM Cloud Pak for Business Automation 18.0.0, 18.0.1, 18.0.2, 19.0.1, 19.0.2, 19.0.3, 20.0.1, 20...
Moderate
Unreviewed
CVE-2024-52364
was published
Feb 5, 2025
Cross-site scripting (XSS) vulnerability in Adobe Flash Player before 10.3.183.15 and 11.x before...
Moderate
Unreviewed
CVE-2012-0767
was published
May 14, 2022
Adobe Experience Manager versions 6.5.21 and earlier are affected by a stored Cross-Site...
Moderate
Unreviewed
CVE-2024-53964
was published
Feb 5, 2025
Adobe Experience Manager versions 6.5.21 and earlier are affected by a stored Cross-Site...
Moderate
Unreviewed
CVE-2024-53962
was published
Feb 5, 2025
Adobe Experience Manager versions 6.5.21 and earlier are affected by a stored Cross-Site...
Moderate
Unreviewed
CVE-2024-53966
was published
Feb 5, 2025
Adobe Experience Manager versions 6.5.21 and earlier are affected by a DOM-based Cross-Site...
Moderate
Unreviewed
CVE-2024-53965
was published
Feb 5, 2025
Adobe Experience Manager versions 6.5.21 and earlier are affected by a DOM-based Cross-Site...
Moderate
Unreviewed
CVE-2024-53963
was published
Feb 5, 2025
The Responsive iframe WordPress plugin through 1.2.0 does not validate and escape some of its...
Moderate
Unreviewed
CVE-2024-12768
was published
Feb 1, 2025
The 3D FlipBook – PDF Flipbook WordPress plugin for WordPress is vulnerable to Stored Cross-Site...
Moderate
Unreviewed
CVE-2024-1081
was published
Feb 21, 2024
The WP Shortcodes Plugin — Shortcodes Ultimate plugin for WordPress is vulnerable to Stored Cross...
Moderate
Unreviewed
CVE-2024-1510
was published
Feb 20, 2024
IBM Security Verify Access Appliance and Container 10.0.0 through 10.0.8 is vulnerable to cross...
Moderate
Unreviewed
CVE-2024-40700
was published
Feb 4, 2025
Cross Site Scripting vulnerability in sayski ForestBlog 20241223 allows a remote attacker to...
Moderate
Unreviewed
CVE-2024-57498
was published
Feb 3, 2025
Cross Site Scripting vulnerability in Quorum onQ OS v.6.0.0.5.2064 allows a remote attacker to...
Moderate
Unreviewed
CVE-2024-44449
was published
Feb 3, 2025
itsourcecode Placement Management System 1.0 is vulnerable to Cross Site Scripting (XSS) via the...
Moderate
Unreviewed
CVE-2024-50656
was published
Feb 3, 2025
The Sina Extension for Elementor (Slider, Gallery, Form, Modal, Data Table, Tab, Particle, Free...
Moderate
Unreviewed
CVE-2024-5036
was published
Jun 20, 2024
The Sina Extension for Elementor (Slider, Gallery, Form, Modal, Data Table, Tab, Particle, Free...
Moderate
Unreviewed
CVE-2024-5260
was published
Jul 2, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-30186
was published
Mar 27, 2024
The Forminator – Contact Form, Payment Form & Custom Form Builder plugin for WordPress is...
Moderate
Unreviewed
CVE-2024-3053
was published
Apr 9, 2024
ProTip!
Advisories are also available from the
GraphQL API