GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,176
Erlang
30
GitHub Actions
19
Go
1,982
Maven
5,000+
npm
3,701
NuGet
656
pip
3,323
Pub
11
RubyGems
882
Rust
834
Swift
35
Unreviewed advisories
All unreviewed
5,000+
986 advisories
Filter by severity
Open redirect in shopware
Moderate
CVE-2022-21651
was published
for
shopware/shopware
(Composer)
Jan 6, 2022
Open redirect vulnerability in GroupSession Free edition ver5.1.1 and earlier, GroupSession...
Moderate
Unreviewed
CVE-2021-20875
was published
Dec 25, 2021
Open redirect vulnerability in Sourcegraph
Moderate
CVE-2020-12283
was published
for
github.com/sourcegraph/sourcegraph
(Go)
Dec 20, 2021
Open Redirect in oauth2_proxy
Moderate
CVE-2017-1000070
was published
for
github.com/bitly/oauth2_proxy
(Go)
Dec 20, 2021
The pattern '/\domain.com' is not disallowed when redirecting, allowing for open redirect
Moderate
CVE-2020-5233
was published
for
github.com/oauth2-proxy/oauth2-proxy
(Go)
Dec 20, 2021
Open Redirect in OAuth2 Proxy
High
CVE-2020-11053
was published
for
github.com/oauth2-proxy/oauth2-proxy
(Go)
Dec 20, 2021
Open Redirect in OAuth2 Proxy
Moderate
CVE-2020-4037
was published
for
github.com/oauth2-proxy/oauth2-proxy
(Go)
Dec 20, 2021
TCMAN GIM is affected by an open redirect vulnerability. This vulnerability allows the...
Moderate
Unreviewed
CVE-2021-40852
was published
Dec 18, 2021
An issue in /domain/service/.ewell-known/caldav of Zimbra Collaboration 8.8.12 allows attackers...
Moderate
Unreviewed
CVE-2020-18985
was published
Dec 17, 2021
Open redirect in @auth0/nextjs-auth0
Moderate
CVE-2021-43812
was published
for
@auth0/nextjs-auth0
(npm)
Dec 16, 2021
Open Redirect in showdoc
Moderate
CVE-2021-4000
was published
for
showdoc/showdoc
(Composer)
Dec 16, 2021
actionpack Open Redirect in Host Authorization Middleware
Moderate
CVE-2021-44528
was published
for
actionpack
(RubyGems)
Dec 14, 2021
Open Redirect in Flask-Security-Too
Low
GHSA-gxjj-f44v-qm94
was published
for
Flask-Security-Too
(pip)
Dec 14, 2021
•
withdrawn
openwhyd is vulnerable to URL Redirection to Untrusted Site
Moderate
Unreviewed
CVE-2021-3829
was published
Dec 11, 2021
Open Redirect in xdLocalStorage
Moderate
CVE-2020-11611
was published
for
xdLocalStorage
(npm)
Dec 9, 2021
A url redirection to untrusted site ('open redirect') in Fortinet FortiWeb version 6.4.1 and...
Moderate
Unreviewed
CVE-2021-36191
was published
Dec 9, 2021
A url redirection to untrusted site ('open redirect') in Fortinet FortiWeb version 6.4.1 and 6.4...
Moderate
Unreviewed
CVE-2021-43064
was published
Dec 9, 2021
The 'Copy Image Link' context menu action would copy the final image URL after redirects. By...
Moderate
Unreviewed
CVE-2021-43532
was published
Dec 9, 2021
showdoc is vulnerable to URL Redirection to Untrusted Site
Moderate
CVE-2021-3989
was published
for
showdoc/showdoc
(Composer)
Dec 3, 2021
An open redirect through HTML injection in confidential messages in Cryptshare before 5.1.0...
Moderate
Unreviewed
CVE-2021-42564
was published
Dec 1, 2021
Dell EMC CloudLink 7.1 and all prior versions contain a HTML and Javascript Injection...
Moderate
Unreviewed
CVE-2021-36332
was published
Nov 24, 2021
Insufficient validation of untrusted input in Intents in Google Chrome on Android prior to 95.0...
Moderate
Unreviewed
CVE-2021-38000
was published
Nov 24, 2021
Open Redirect in firefly-iii
Moderate
CVE-2021-3851
was published
for
grumpydictator/firefly-iii
(Composer)
Oct 21, 2021
DOS and Open Redirect with user input
High
CVE-2021-22964
was published
for
fastify-static
(npm)
Oct 12, 2021
ProTip!
Advisories are also available from the
GraphQL API