GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,783
Erlang
36
GitHub Actions
29
Go
2,353
Maven
5,000+
npm
3,977
NuGet
720
pip
3,774
Pub
12
RubyGems
923
Rust
981
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
122,657 advisories
Filter by severity
A vulnerability classified as critical has been found in juzaweb CMS 3.4.2. Affected is an...
Moderate
Unreviewed
CVE-2025-6735
was published
Jun 27, 2025
A flaw was found in Infinispan CLI. A sensitive password, decoded from a Base64-encoded...
Moderate
Unreviewed
CVE-2025-5731
was published
Jun 27, 2025
A vulnerability classified as critical was found in juzaweb CMS 3.4.2. Affected by this...
Moderate
Unreviewed
CVE-2025-6736
was published
Jun 27, 2025
A vulnerability was found in yzcheng90 X-SpringBoot up to 5.0 and classified as critical....
Moderate
Unreviewed
CVE-2025-6731
was published
Jun 27, 2025
A vulnerability exists in MicroSCADA X SYS600 product. If exploited this could allow a local...
Moderate
Unreviewed
CVE-2025-39201
was published
Jun 24, 2025
A vulnerability was found in PHPGurukul Pre-School Enrollment System 1.0. It has been classified...
Moderate
Unreviewed
CVE-2025-6323
was published
Jun 20, 2025
A vulnerability classified as critical was found in PHPGurukul Directory Management System 1.0....
Moderate
Unreviewed
CVE-2025-6331
was published
Jun 20, 2025
A vulnerability classified as critical has been found in PHPGurukul Directory Management System 1...
Moderate
Unreviewed
CVE-2025-6330
was published
Jun 20, 2025
A vulnerability, which was classified as critical, has been found in PHPGurukul Directory...
Moderate
Unreviewed
CVE-2025-6332
was published
Jun 20, 2025
A vulnerability, which was classified as critical, was found in PHPGurukul Directory Management...
Moderate
Unreviewed
CVE-2025-6333
was published
Jun 20, 2025
Buffer overflow vulnerability in matplotlib.This issue affects matplotlib: before upstream commit...
Moderate
Unreviewed
CVE-2013-1424
was published
Jun 26, 2025
Canon EOS Webcam Utility Pro for MAC OS version 2.3d
(2.3.29) and earlier contains an improper...
Moderate
Unreviewed
CVE-2025-5995
was published
Jun 26, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Moderate
Unreviewed
CVE-2025-53122
was published
Jun 26, 2025
Multiple stored XSS were found on different nodes with unsanitized parameters in OpenMNS Horizon...
Moderate
Unreviewed
CVE-2025-53121
was published
Jun 26, 2025
The Modern Design Library plugin for WordPress is vulnerable to Stored Cross-Site Scripting via...
Moderate
Unreviewed
CVE-2025-5842
was published
Jun 26, 2025
The Drive Folder Embedder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via...
Moderate
Unreviewed
CVE-2025-6546
was published
Jun 26, 2025
The Post Rating and Review plugin for WordPress is vulnerable to Stored Cross-Site Scripting via...
Moderate
Unreviewed
CVE-2025-6538
was published
Jun 26, 2025
The web-cam plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘slug’...
Moderate
Unreviewed
CVE-2025-6540
was published
Jun 26, 2025
The Post Carousel Slider for Elementor plugin for WordPress is vulnerable to improper...
Moderate
Unreviewed
CVE-2025-3863
was published
Jun 26, 2025
The Charitable – Donation Plugin for WordPress – Fundraising with Recurring Donations & More...
Moderate
Unreviewed
CVE-2025-5275
was published
Jun 26, 2025
The GC Social Wall plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
Moderate
Unreviewed
CVE-2025-5564
was published
Jun 26, 2025
The Event RSVP and Simple Event Management Plugin plugin for WordPress is vulnerable to Stored...
Moderate
Unreviewed
CVE-2025-5540
was published
Jun 26, 2025
The TimeZoneCalculator plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
Moderate
Unreviewed
CVE-2025-5559
was published
Jun 26, 2025
The WP Masonry & Infinite Scroll plugin for WordPress is vulnerable to Stored Cross-Site...
Moderate
Unreviewed
CVE-2025-5488
was published
Jun 26, 2025
The e.nigma buttons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
Moderate
Unreviewed
CVE-2025-5535
was published
Jun 26, 2025
ProTip!
Advisories are also available from the
GraphQL API