GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,239
Erlang
31
GitHub Actions
21
Go
2,007
Maven
5,000+
npm
3,716
NuGet
662
pip
3,388
Pub
11
RubyGems
885
Rust
851
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
235,952 advisories
Filter by severity
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-53773
was published
Dec 1, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-53786
was published
Dec 1, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-53763
was published
Dec 1, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-53757
was published
Dec 1, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-53758
was published
Dec 1, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-53760
was published
Dec 1, 2024
Cross-Site Request Forgery (CSRF) vulnerability in Essential Marketer Essential Breadcrumbs...
High
Unreviewed
CVE-2024-53778
was published
Dec 1, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-53772
was published
Dec 1, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-53774
was published
Dec 1, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-53767
was published
Dec 1, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-53756
was published
Dec 1, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-53771
was published
Dec 1, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-53764
was published
Dec 1, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-53766
was published
Dec 1, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-53788
was published
Nov 30, 2024
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2024-53783
was published
Nov 30, 2024
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in IDE...
Moderate
Unreviewed
CVE-2024-53768
was published
Nov 30, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-53787
was published
Nov 30, 2024
Server-Side Request Forgery (SSRF) vulnerability in Gabe Livan Asset CleanUp: Page Speed Booster...
Moderate
Unreviewed
CVE-2024-53738
was published
Nov 30, 2024
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2024-53739
was published
Nov 30, 2024
A vulnerability classified as problematic has been found in code-projects Wazifa System 1.0....
Moderate
Unreviewed
CVE-2024-12001
was published
Nov 30, 2024
Qualys discovered that needrestart, before version 3.8, allows local attackers to execute...
High
Unreviewed
CVE-2024-48991
was published
Nov 19, 2024
A vulnerability classified as problematic was found in Tenda FH451, FH1201, FH1202 and FH1206 up...
Moderate
Unreviewed
CVE-2024-12002
was published
Nov 30, 2024
xfpt versions prior to 1.01 fails to handle appropriately some parameters inside the input data,...
High
Unreviewed
CVE-2024-43700
was published
Aug 29, 2024
A vulnerability was found in code-projects Farmacia 1.0. It has been declared as critical. This...
Moderate
Unreviewed
CVE-2024-11998
was published
Nov 30, 2024
ProTip!
Advisories are also available from the
GraphQL API