GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,894
Erlang
38
GitHub Actions
38
Go
2,552
Maven
5,000+
npm
4,224
NuGet
746
pip
3,999
Pub
12
RubyGems
953
Rust
1,041
Swift
45
Unreviewed advisories
All unreviewed
5,000+
139,831 advisories
Filter by severity
The Web Accessibility By accessiBe plugin for WordPress is vulnerable to Cross-Site Request...
Moderate
Unreviewed
CVE-2025-10375
was published
Oct 11, 2025
The WordPress Live Webcam Widget & Shortcode plugin for WordPress is vulnerable to Stored Cross...
Moderate
Unreviewed
CVE-2025-10129
was published
Oct 11, 2025
The WP Links Page plugin for WordPress is vulnerable to SQL Injection via the 'id' parameter in...
Moderate
Unreviewed
CVE-2025-10175
was published
Oct 11, 2025
The Stock History & Reports Manager for WooCommerce plugin for WordPress is vulnerable to Stored...
Moderate
Unreviewed
CVE-2025-10167
was published
Oct 11, 2025
The WP Easy Toggles plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
Moderate
Unreviewed
CVE-2025-10190
was published
Oct 11, 2025
A vulnerability was found in Campcodes Online Apartment Visitor Management System 1.0. Impacted...
Moderate
Unreviewed
CVE-2025-11595
was published
Oct 11, 2025
The Course Redirects for Learndash plugin for WordPress is vulnerable to Cross-Site Request...
Moderate
Unreviewed
CVE-2025-10376
was published
Oct 11, 2025
Denial of service (DoS) vulnerability in the office service. Successful exploitation of this...
Moderate
Unreviewed
CVE-2025-58288
was published
Oct 11, 2025
Buffer overflow vulnerability in the sensor service. Successful exploitation of this...
Moderate
Unreviewed
CVE-2025-58297
was published
Oct 11, 2025
Buffer overflow vulnerability in the development framework module. Successful exploitation of...
Moderate
Unreviewed
CVE-2025-58295
was published
Oct 11, 2025
The Enable Media Replace plugin for WordPress is vulnerable to Stored Cross-Site Scripting via...
Moderate
Unreviewed
CVE-2025-9496
was published
Oct 11, 2025
The WPC Smart Wishlist for WooCommerce plugin for WordPress is vulnerable to Insecure Direct...
Moderate
Unreviewed
CVE-2025-11518
was published
Oct 11, 2025
A vulnerability has been found in ywxbear PHP-Bookstore-Website-Example and PHP Basic BookStore...
Moderate
Unreviewed
CVE-2025-11594
was published
Oct 11, 2025
The Contest Gallery – Upload, Vote & Sell with PayPal and Stripe plugin for WordPress is...
Moderate
Unreviewed
CVE-2025-11254
was published
Oct 11, 2025
The CM Registration – Tailored tool for seamless login and invitation-based registrations plugin...
Moderate
Unreviewed
CVE-2025-11167
was published
Oct 11, 2025
The My auctions allegro plugin for WordPress is vulnerable to SQL Injection via the 'order'...
Moderate
Unreviewed
CVE-2025-10048
was published
Oct 11, 2025
The NEX-Forms – Ultimate Forms Plugin for WordPress plugin for WordPress is vulnerable to SQL...
Moderate
Unreviewed
CVE-2025-10185
was published
Oct 11, 2025
A flaw has been found in CodeAstro Gym Management System 1.0. This vulnerability affects unknown...
Moderate
Unreviewed
CVE-2025-11593
was published
Oct 11, 2025
A vulnerability was detected in CodeAstro Gym Management System 1.0. This affects an unknown part...
Moderate
Unreviewed
CVE-2025-11592
was published
Oct 11, 2025
The Draft List plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's...
Moderate
Unreviewed
CVE-2025-11197
was published
Oct 11, 2025
The Trinity Audio – Text to Speech AI audio player to convert content into audio plugin for...
Moderate
Unreviewed
CVE-2025-9196
was published
Oct 11, 2025
Identity authentication bypass vulnerability in the Gallery app. Successful exploitation of this...
Moderate
Unreviewed
CVE-2025-58278
was published
Oct 11, 2025
Permission control vulnerability in the media module. Successful exploitation of this...
Moderate
Unreviewed
CVE-2025-58285
was published
Oct 11, 2025
Permission control vulnerability in the Wi-Fi module. Successful exploitation of this...
Moderate
Unreviewed
CVE-2025-58283
was published
Oct 11, 2025
Permission control vulnerability in the network module. Successful exploitation of this...
Moderate
Unreviewed
CVE-2025-58284
was published
Oct 11, 2025
ProTip!
Advisories are also available from the
GraphQL API