GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,801
Erlang
36
GitHub Actions
29
Go
2,380
Maven
5,000+
npm
4,010
NuGet
720
pip
3,810
Pub
12
RubyGems
930
Rust
986
Swift
38
Unreviewed advisories
All unreviewed
5,000+
35,918 advisories
Filter by severity
The WP Event Manager – Events Calendar, Registrations, Sell Tickets with WooCommerce plugin for...
Moderate
Unreviewed
CVE-2025-2799
was published
Jul 16, 2025
The ProfileGrid – User Profiles, Groups and Communities plugin for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2025-6977
was published
Jul 16, 2025
The WP Event Manager – Events Calendar, Registrations, Sell Tickets with WooCommerce plugin for...
High
Unreviewed
CVE-2025-2800
was published
Jul 16, 2025
pyLoad vulnerable to XSS through insecure CAPTCHA
Critical
CVE-2025-53890
was published
for
pyload-ng
(pip)
Jul 15, 2025
IBM QRadar SIEM 7.5 - 7.5.0 UP12 IF02 is vulnerable to stored cross-site scripting. This...
Moderate
Unreviewed
CVE-2025-33097
was published
Jul 15, 2025
Cross-Site Scripting (XSS) vulnerability in Nexxt Solutions NCM-X1800 Mesh Router firmware UV1.2...
Moderate
Unreviewed
CVE-2025-52378
was published
Jul 15, 2025
The Companion Auto Update plugin for WordPress is vulnerable to Stored Cross-Site Scripting via...
Moderate
Unreviewed
CVE-2025-4369
was published
Jul 15, 2025
The improper default setting in JiranSoft CrossEditor4 on Windows, Linux, Unix (API modules)...
Low
Unreviewed
CVE-2025-7672
was published
Jul 15, 2025
The Strong Testimonials plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
Moderate
Unreviewed
CVE-2025-7367
was published
Jul 15, 2025
XWiki Rendering is vulnerable to XSS attacks through insecure XHTML syntax
Critical
CVE-2025-53835
was published
for
org.xwiki.rendering:xwiki-rendering-syntax-xhtml
(Maven)
Jul 14, 2025
A vulnerability has been found in PHPGurukul Online Library Management System 3.0 and classified...
Moderate
Unreviewed
CVE-2025-7601
was published
Jul 14, 2025
A stored Cross-Site Scripting (XSS) vulnerability vulnerability was found in the File Explorer...
Moderate
Unreviewed
CVE-2025-7618
was published
Jul 14, 2025
A stored Cross-Site Scripting (XSS) vulnerability exists in the Access Control of ADM, the issue...
Moderate
Unreviewed
CVE-2025-7380
was published
Jul 14, 2025
A vulnerability was found in ShopXO up to 6.5.0 and classified as problematic. This issue affects...
Moderate
Unreviewed
CVE-2025-7567
was published
Jul 14, 2025
A vulnerability was found in Bigotry OneBase up to 1.3.6. It has been declared as problematic....
Moderate
Unreviewed
CVE-2025-7569
was published
Jul 14, 2025
A vulnerability classified as problematic was found in Sapido RB-1802 1.0.32. This vulnerability...
Moderate
Unreviewed
CVE-2025-7554
was published
Jul 14, 2025
Roundup is vulnerable to XSS through interactions between URLs and issue tracker templates
Moderate
CVE-2025-53865
was published
for
roundup
(pip)
Jul 13, 2025
An issue was discovered in eGroupWare 17.1.20190111. A cross-site scripting Reflected (XSS)...
Moderate
Unreviewed
CVE-2023-38329
was published
Jul 11, 2025
The FooGallery – Responsive Photo Gallery, Image Viewer, Justified, Masonry & Carousel plugin for...
Moderate
Unreviewed
CVE-2025-6068
was published
Jul 11, 2025
The Photos, Files, YouTube, Twitter, Instagram, TikTok, Ecommerce Contest Gallery – Upload, Vote,...
Moderate
Unreviewed
CVE-2025-6716
was published
Jul 11, 2025
The WPC Smart Compare for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site...
Moderate
Unreviewed
CVE-2025-5530
was published
Jul 11, 2025
A vulnerability was found in LiveHelperChat lhc-php-resque Extension up to...
Moderate
Unreviewed
CVE-2025-7435
was published
Jul 11, 2025
A vulnerability exists in Advantech iView versions prior to 5.7.05 build
7057, which could allow...
Moderate
Unreviewed
CVE-2025-53519
was published
Jul 11, 2025
A vulnerability exists in Advantech iView versions prior to 5.7.05 build
7057, which could allow...
Moderate
Unreviewed
CVE-2025-53397
was published
Jul 11, 2025
A vulnerability exists in Advantech iView versions prior to 5.7.05 build
7057, which could allow...
Moderate
Unreviewed
CVE-2025-41442
was published
Jul 11, 2025
ProTip!
Advisories are also available from the
GraphQL API