GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,748
Erlang
35
GitHub Actions
29
Go
2,321
Maven
5,000+
npm
3,955
NuGet
712
pip
3,736
Pub
12
RubyGems
921
Rust
972
Swift
38
Unreviewed advisories
All unreviewed
5,000+
131,480 advisories
Filter by severity
A vulnerability, which was classified as problematic, was found in code-projects Traffic Offense...
Moderate
Unreviewed
CVE-2025-5732
was published
Jun 6, 2025
A vulnerability, which was classified as critical, was found in code-projects Health Center...
Moderate
Unreviewed
CVE-2025-5729
was published
Jun 6, 2025
The Hive Support | AI-Powered Help Desk, Live Chat & AI Chat Bot Plugin for WordPress plugin for...
Moderate
Unreviewed
CVE-2025-5019
was published
Jun 6, 2025
The Developer Formatter plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
Moderate
Unreviewed
CVE-2025-5699
was published
Jun 6, 2025
The WP-Addpub plugin for WordPress is vulnerable to SQL Injection via the 'wp-addpub' shortcode...
Moderate
Unreviewed
CVE-2025-5563
was published
Jun 6, 2025
The Knowledge Base plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
Moderate
Unreviewed
CVE-2025-5533
was published
Jun 6, 2025
The Runners Log plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin...
Moderate
Unreviewed
CVE-2025-5541
was published
Jun 6, 2025
The Freemind Viewer plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
Moderate
Unreviewed
CVE-2025-5536
was published
Jun 6, 2025
A vulnerability classified as problematic has been found in SourceCodester Student Result...
Moderate
Unreviewed
CVE-2025-5727
was published
Jun 6, 2025
The StageShow plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘anchor’...
Moderate
Unreviewed
CVE-2025-5703
was published
Jun 6, 2025
The Hide It plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's ...
Moderate
Unreviewed
CVE-2025-5565
was published
Jun 6, 2025
The Paged Gallery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
Moderate
Unreviewed
CVE-2025-5686
was published
Jun 6, 2025
The WordPress Ajax Load More and Infinite Scroll plugin for WordPress is vulnerable to Stored...
Moderate
Unreviewed
CVE-2025-5586
was published
Jun 6, 2025
A vulnerability classified as critical was found in SourceCodester Open Source Clinic Management...
Moderate
Unreviewed
CVE-2025-5728
was published
Jun 6, 2025
The BNS Featured Category plugin for WordPress is vulnerable to Stored Cross-Site Scripting via...
Moderate
Unreviewed
CVE-2025-5538
was published
Jun 6, 2025
The ESV Bible Shortcode for WordPress plugin for WordPress is vulnerable to Stored Cross-Site...
Moderate
Unreviewed
CVE-2025-5534
was published
Jun 6, 2025
Buffer overflow vulnerability in the DFile module
Impact: Successful exploitation of this...
Moderate
Unreviewed
CVE-2025-48910
was published
Jun 6, 2025
Vulnerability that cards can call unauthorized APIs in the FRS process
Impact: Successful...
Moderate
Unreviewed
CVE-2025-48904
was published
Jun 6, 2025
Deserialization vulnerability in the IPC module
Impact: Successful exploitation of this...
Moderate
Unreviewed
CVE-2025-48907
was published
Jun 6, 2025
Ability Auto Startup service vulnerability in the foundation process
Impact: Successful...
Moderate
Unreviewed
CVE-2025-48908
was published
Jun 6, 2025
Vulnerability of uncontrolled system resource applications in the setting module
Impact:...
Moderate
Unreviewed
CVE-2025-48902
was published
Jun 6, 2025
The WP Online Users Stats plugin for WordPress is vulnerable to Cross-Site Request Forgery in all...
Moderate
Unreviewed
CVE-2025-4966
was published
Jun 6, 2025
The WP Online Users Stats plugin for WordPress is vulnerable to time-based SQL Injection via the ...
Moderate
Unreviewed
CVE-2025-4964
was published
Jun 6, 2025
The Anti-Spam: Spam Protection | Block Spam Users, Comments, Forms plugin for WordPress is...
Moderate
Unreviewed
CVE-2025-2935
was published
Jun 6, 2025
Resource allocation control failure vulnerability in the ArkUI framework
Impact: Successful...
Moderate
Unreviewed
CVE-2024-58114
was published
Jun 6, 2025
ProTip!
Advisories are also available from the
GraphQL API