Skip to content

GitHub Advisory Database

Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.

4 advisories

Loading
OpenRefine's error page lacks escaping, leading to potential Cross-site Scripting on import of malicious project Moderate
CVE-2024-47882 was published for org.openrefine:openrefine (Maven) Oct 24, 2024
Keycloak vulnerable to cross-site scripting when validating URI-schemes on SAML and OIDC Critical
CVE-2022-4361 was published for org.keycloak:keycloak-services (Maven) Jun 30, 2023
magicOz
Reflected cross-site scripting in default RouteNotFoundError view in Vaadin 10 and 11-13 Moderate
CVE-2019-25027 was published for com.vaadin:flow-server (Maven) Apr 19, 2021
Reflected cross-site scripting in default RouteNotFoundError view in Vaadin 10 and 11-13 Moderate
GHSA-jqj4-r483-4gvr was published for com.vaadin:vaadin-bom (Maven) Apr 19, 2021
ProTip! Advisories are also available from the GraphQL API