GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,778
Erlang
35
GitHub Actions
29
Go
2,332
Maven
5,000+
npm
3,966
NuGet
713
pip
3,759
Pub
12
RubyGems
921
Rust
975
Swift
38
Unreviewed advisories
All unreviewed
5,000+
132,208 advisories
Filter by severity
Reflected Cross-Site Scripting (XSS) vulnerability in /pages/search-results-page in Nosto, which...
Moderate
Unreviewed
CVE-2025-40726
was published
Jun 16, 2025
An open redirection vulnerability in M-Files mobile applications for Android and iOS prior to...
Moderate
Unreviewed
CVE-2025-2091
was published
Jun 16, 2025
A Reflected Cross Site Scripting (XSS) vulnerability was found in '/search' in Phoenix Site CMS...
Moderate
Unreviewed
CVE-2025-40727
was published
Jun 16, 2025
Reflected Cross-Site Scripting (XSS) in /customer_support/index.php in Customer Support System v1...
Moderate
Unreviewed
CVE-2025-40729
was published
Jun 16, 2025
A vulnerability was found in javahongxi whatsmars 2021.4.0. It has been rated as problematic....
Moderate
Unreviewed
CVE-2025-6109
was published
Jun 16, 2025
A vulnerability was found in WuKongOpenSource WukongCRM 9.0 and classified as problematic. This...
Moderate
Unreviewed
CVE-2025-6106
was published
Jun 16, 2025
A vulnerability was found in hansonwang99 Spring-Boot-In-Action up to...
Moderate
Unreviewed
CVE-2025-6108
was published
Jun 16, 2025
A vulnerability has been found in jflyfox jfinal_cms 5.0.1 and classified as problematic. This...
Moderate
Unreviewed
CVE-2025-6105
was published
Jun 16, 2025
A vulnerability was found in szluyu99 gin-vue-blog up to 61dd11ccd296e8642a318ada3ef7b3f7776d2410...
Moderate
Unreviewed
CVE-2025-6099
was published
Jun 16, 2025
A vulnerability classified as critical has been found in letta-ai letta up to 0.4.1. Affected is...
Moderate
Unreviewed
CVE-2025-6101
was published
Jun 16, 2025
A vulnerability was found in realguoshuai open-video-cms 1.0. It has been rated as critical. This...
Moderate
Unreviewed
CVE-2025-6100
was published
Jun 16, 2025
A vulnerability, which was classified as critical, was found in codesiddhant Jasmin Ransomware 1...
Moderate
Unreviewed
CVE-2025-6095
was published
Jun 16, 2025
A vulnerability has been found in codesiddhant Jasmin Ransomware up to 1.0.1 and classified as...
Moderate
Unreviewed
CVE-2025-6096
was published
Jun 16, 2025
A vulnerability classified as critical was found in uYanki board-stm32f103rc-berial up to...
Moderate
Unreviewed
CVE-2025-6093
was published
Jun 16, 2025
A vulnerability was found in UTT 进取 750W up to 5.0 and classified as critical. Affected by this...
Moderate
Unreviewed
CVE-2025-6097
was published
Jun 16, 2025
A vulnerability, which was classified as critical, has been found in FoxCMS up to 1.2.5. This...
Moderate
Unreviewed
CVE-2025-6094
was published
Jun 16, 2025
A vulnerability was found in comfyanonymous comfyui up to 0.3.39. It has been declared as...
Moderate
Unreviewed
CVE-2025-6092
was published
Jun 15, 2025
Unsanitized user-supplied data saved in the PingFederate Administrative Console could trigger the...
Moderate
Unreviewed
CVE-2024-25573
was published
Jun 15, 2025
Improper handling of non-200 http responses in the PingFederate Google Adapter leads to thread...
Moderate
Unreviewed
CVE-2025-22854
was published
Jun 15, 2025
IBM MQ Operator LTS 2.0.0 through 2.0.29, MQ Operator CD 3.0.0, 3.0.1, 3.1.0 through 3.1.3, 3.3.0...
Moderate
Unreviewed
CVE-2025-36041
was published
Jun 15, 2025
A vulnerability has been found in Astun Technology iShare Maps 5.4.0 and classified as...
Moderate
Unreviewed
CVE-2025-6089
was published
Jun 15, 2025
The Appointment Booking Calendar — Simply Schedule Appointments Booking Plugin plugin for...
Moderate
Unreviewed
CVE-2025-4667
was published
Jun 14, 2025
The YITH WooCommerce Wishlist plugin for WordPress is vulnerable to Stored Cross-Site Scripting...
Moderate
Unreviewed
CVE-2025-5238
was published
Jun 14, 2025
The Slider, Gallery, and Carousel by MetaSlider plugin for WordPress is vulnerable to Stored...
Moderate
Unreviewed
CVE-2025-5337
was published
Jun 14, 2025
The Yougler Blogger Profile Page plugin for WordPress is vulnerable to Cross-Site Request Forgery...
Moderate
Unreviewed
CVE-2025-6062
was published
Jun 14, 2025
ProTip!
Advisories are also available from the
GraphQL API