GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,789
Erlang
36
GitHub Actions
29
Go
2,370
Maven
5,000+
npm
3,994
NuGet
720
pip
3,781
Pub
12
RubyGems
927
Rust
982
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
7,021 advisories
Filter by severity
The RD Contacto plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions...
Moderate
Unreviewed
CVE-2025-5933
was published
Jul 4, 2025
The yContributors plugin for WordPress is vulnerable to Cross-Site Request Forgery in all...
Moderate
Unreviewed
CVE-2025-6041
was published
Jul 4, 2025
The WP Firebase Push Notification plugin for WordPress is vulnerable to Cross-Site Request...
Moderate
Unreviewed
CVE-2025-5924
was published
Jul 4, 2025
The application is vulnerable to cross-site request forgery. An attacker can trick a valid,...
Moderate
Unreviewed
CVE-2025-27454
was published
Jul 3, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Laundry on Linux, MacOS allows to perform an...
High
Unreviewed
CVE-2025-52841
was published
Jul 2, 2025
Cross-site request forgery vulnerability exists in Active! mail 6 BuildInfo: 6.60.06008562 and...
Low
Unreviewed
CVE-2025-52463
was published
Jul 2, 2025
The Ads Pro Plugin - Multi-Purpose WordPress Advertising Manager plugin for WordPress is...
High
Unreviewed
CVE-2025-6459
was published
Jul 2, 2025
A cross-site request forgery (CSRF) vulnerability exists in the web interface of AVTECH IP camera...
Moderate
Unreviewed
CVE-2025-34050
was published
Jul 1, 2025
A Cross-Site Request Forgery (CSRF) leading to Cross-Site Scripting (XSS) vulnerability in the...
High
Unreviewed
CVE-2025-24289
was published
Jun 29, 2025
A vulnerability, which was classified as problematic, has been found in SeaCMS up to 13.2....
Moderate
Unreviewed
CVE-2025-6864
was published
Jun 29, 2025
A vulnerability, which was classified as problematic, was found in DaiCuo up to 1.3.13. This...
Moderate
Unreviewed
CVE-2025-6865
was published
Jun 29, 2025
The MicroPayments – Fans Paysite: Paid Creator Subscriptions, Digital Assets, Wallet plugin for...
Moderate
Unreviewed
CVE-2025-5937
was published
Jun 28, 2025
A Cross-Site Request Forgery (CSRF) vulnerability exists in the Manage Card functionality (/mcgs...
Moderate
Unreviewed
CVE-2025-50369
was published
Jun 27, 2025
A Cross-Site Request Forgery (CSRF) vulnerability exists in the Inquiry Management functionality ...
Moderate
Unreviewed
CVE-2025-50370
was published
Jun 27, 2025
Cross-Site Request Forgery (CSRF) vulnerability in AcmeeDesign WPShapere Lite allows Stored XSS....
High
Unreviewed
CVE-2025-53317
was published
Jun 27, 2025
Cross-Site Request Forgery (CSRF) vulnerability in rui_mashita Aioseo Multibyte Descriptions...
Moderate
Unreviewed
CVE-2025-53327
was published
Jun 27, 2025
Cross-Site Request Forgery (CSRF) vulnerability in szajenw Społecznościowa 6 PL 2013 allows...
High
Unreviewed
CVE-2025-53329
was published
Jun 27, 2025
Cross-Site Request Forgery (CSRF) vulnerability in samcharrington RSS Digest allows Stored XSS....
High
Unreviewed
CVE-2025-53331
was published
Jun 27, 2025
Cross-Site Request Forgery (CSRF) vulnerability in ethoseo Track Everything allows Stored XSS....
High
Unreviewed
CVE-2025-53332
was published
Jun 27, 2025
Cross-Site Request Forgery (CSRF) vulnerability in dor re.place allows Stored XSS. This issue...
High
Unreviewed
CVE-2025-53338
was published
Jun 27, 2025
Cross-Site Request Forgery (CSRF) vulnerability in lucidcrew WP Forum Server allows Stored XSS....
High
Unreviewed
CVE-2025-53305
was published
Jun 27, 2025
Cross-Site Request Forgery (CSRF) vulnerability in gopi_plus Image Slider With Description allows...
High
Unreviewed
CVE-2025-53308
was published
Jun 27, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Funnnny HidePost allows Reflected XSS. This...
High
Unreviewed
CVE-2025-53310
was published
Jun 27, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Amol Nirmala Waman Navayan Subscribe allows...
High
Unreviewed
CVE-2025-53311
was published
Jun 27, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Looks Awesome OnionBuzz allows Stored XSS....
High
Unreviewed
CVE-2025-53312
was published
Jun 27, 2025
ProTip!
Advisories are also available from the
GraphQL API