GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,768
Erlang
35
GitHub Actions
29
Go
2,332
Maven
5,000+
npm
3,965
NuGet
713
pip
3,748
Pub
12
RubyGems
921
Rust
975
Swift
38
Unreviewed advisories
All unreviewed
5,000+
7,667 advisories
Filter by severity
A Cross-Site Request Forgery (CSRF) vulnerability exists in the product image upload function of...
High
Unreviewed
CVE-2025-6001
was published
Jun 11, 2025
An unauthenticated remote attacker can execute arbitrary commands with root privileges on...
High
Unreviewed
CVE-2025-41662
was published
Jun 11, 2025
An unauthenticated remote attacker can execute arbitrary commands with root privileges on...
High
Unreviewed
CVE-2025-41661
was published
Jun 11, 2025
Dell Wyse Management Suite, versions prior to WMS 5.2, contain a Cross-Site Request Forgery (CSRF...
Low
Unreviewed
CVE-2025-36576
was published
Jun 10, 2025
Cross-Site Request Forgery (CSRF) vulnerability in uxper Civi Framework allows Cross Site Request...
High
Unreviewed
CVE-2025-49511
was published
Jun 10, 2025
Cross-Site Request Forgery (CSRF) vulnerability in WPFactory Min Max Step Quantity Limits Manager...
Moderate
Unreviewed
CVE-2025-49510
was published
Jun 10, 2025
The Bunny’s Print CSS plugin for WordPress is vulnerable to Cross-Site Request Forgery in all...
Moderate
Unreviewed
CVE-2025-5925
was published
Jun 10, 2025
A vulnerability, which was classified as problematic, was found in Tenda AC9 15.03.02.13. This...
Moderate
Unreviewed
CVE-2025-5900
was published
Jun 10, 2025
A vulnerability was found in jsnjfz WebStack-Guns 1.0. It has been declared as problematic....
Moderate
Unreviewed
CVE-2025-5888
was published
Jun 9, 2025
A vulnerability has been found in Konica Minolta bizhub up to 20250202 and classified as...
Moderate
Unreviewed
CVE-2025-5885
was published
Jun 9, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Jatinder Pal Singh BP Profile as Homepage...
High
Unreviewed
CVE-2025-49453
was published
Jun 6, 2025
A vulnerability was found in code-projects Laundry System 1.0. It has been declared as...
Moderate
Unreviewed
CVE-2025-5766
was published
Jun 6, 2025
Cross-Site Request Forgery (CSRF) vulnerability in codepeople WP Time Slots Booking Form allows...
Moderate
Unreviewed
CVE-2025-49332
was published
Jun 6, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Hasina77 Wp Easy Allopass allows Cross Site...
Moderate
Unreviewed
CVE-2025-49435
was published
Jun 6, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Adrian Hanft Konami Easter Egg allows Stored...
High
Unreviewed
CVE-2025-49425
was published
Jun 6, 2025
Cross-Site Request Forgery (CSRF) vulnerability in mariusz88atelierweb Atelier Create CV allows...
Moderate
Unreviewed
CVE-2025-49439
was published
Jun 6, 2025
Cross-Site Request Forgery (CSRF) vulnerability in WP Map Plugins Interactive UK Regional Map...
Moderate
Unreviewed
CVE-2025-49445
was published
Jun 6, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Vuong Nguyen WP Security Master allows Cross...
Moderate
Unreviewed
CVE-2025-49440
was published
Jun 6, 2025
Cross-Site Request Forgery (CSRF) vulnerability in minhlaobao Admin Notes allows Cross Site...
Moderate
Unreviewed
CVE-2025-49446
was published
Jun 6, 2025
Cross-Site Request Forgery (CSRF) vulnerability in WP Map Plugins Interactive Regional Map of...
Moderate
Unreviewed
CVE-2025-49449
was published
Jun 6, 2025
Cross-Site Request Forgery (CSRF) vulnerability in NTC WP Page Loading allows Cross Site Request...
Moderate
Unreviewed
CVE-2025-49317
was published
Jun 6, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Bill Minozzi WP Tools allows Cross Site...
Moderate
Unreviewed
CVE-2025-49273
was published
Jun 6, 2025
Cross-Site Request Forgery (CSRF) vulnerability in WP Legal Pages WP Cookie Notice for GDPR, CCPA...
Moderate
Unreviewed
CVE-2025-49285
was published
Jun 6, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Anton Vanyukov Market Exporter allows Cross...
Moderate
Unreviewed
CVE-2025-49269
was published
Jun 6, 2025
Cross-Site Request Forgery (CSRF) vulnerability in wp-buy WP Maintenance Mode & Site Under...
Moderate
Unreviewed
CVE-2025-49284
was published
Jun 6, 2025
ProTip!
Advisories are also available from the
GraphQL API