GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,826
Erlang
36
GitHub Actions
32
Go
2,426
Maven
5,000+
npm
4,058
NuGet
723
pip
3,848
Pub
12
RubyGems
934
Rust
1,006
Swift
38
Unreviewed advisories
All unreviewed
5,000+
36,302 advisories
Filter by severity
A vulnerability was found in Portabilis i-Educar 2.9. It has been rated as problematic. Affected...
Moderate
Unreviewed
CVE-2025-8509
was published
Aug 3, 2025
A vulnerability classified as problematic has been found in Portabilis i-Educar 2.10. This...
Moderate
Unreviewed
CVE-2025-8510
was published
Aug 3, 2025
A vulnerability was found in Portabilis i-Educar 2.9. It has been declared as problematic....
Moderate
Unreviewed
CVE-2025-8508
was published
Aug 3, 2025
A vulnerability was found in Portabilis i-Educar 2.9. It has been classified as problematic....
Moderate
Unreviewed
CVE-2025-8507
was published
Aug 3, 2025
Apache Zeppelin: XSS in the Helium module
Moderate
CVE-2024-41177
was published
for
org.apache.zeppelin:zeppelin-web
(Maven)
Aug 3, 2025
A vulnerability was found in 495300897 wx-shop up to de1b66331368695779cfc6e4d11a64caddf8716e and...
Moderate
Unreviewed
CVE-2025-8506
was published
Aug 3, 2025
A vulnerability classified as problematic has been found in code-projects Human Resource...
Moderate
Unreviewed
CVE-2025-8501
was published
Aug 3, 2025
The Ocean Social Sharing plugin for WordPress is vulnerable to Stored Cross-Site Scripting via...
Moderate
Unreviewed
CVE-2025-7500
was published
Aug 2, 2025
The Medical Addon for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting...
Moderate
Unreviewed
CVE-2025-8212
was published
Aug 2, 2025
The Custom Word Cloud plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ...
Moderate
Unreviewed
CVE-2025-8317
was published
Aug 2, 2025
The Magic Edge – Lite plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ...
Moderate
Unreviewed
CVE-2025-8391
was published
Aug 2, 2025
The Image Gallery plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in all...
Moderate
Unreviewed
CVE-2025-8400
was published
Aug 2, 2025
The Mmm Unity Loader plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ...
Moderate
Unreviewed
CVE-2025-8399
was published
Aug 2, 2025
The All in One Time Clock Lite – Tracking Employee Time Has Never Been Easier plugin for...
Moderate
Unreviewed
CVE-2025-6832
was published
Aug 2, 2025
The 360 Photo Spheres plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
Moderate
Unreviewed
CVE-2025-4588
was published
Aug 2, 2025
The ShortPixel Adaptive Images – WebP, AVIF, CDN, Image Optimization plugin for WordPress is...
Moderate
Unreviewed
CVE-2025-6626
was published
Aug 2, 2025
The Qi Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via...
Moderate
Unreviewed
CVE-2025-8146
was published
Aug 2, 2025
IBM QRadar SIEM 7.5 through 7.5.0 Update Pack 12 is vulnerable to stored cross-site scripting....
Moderate
Unreviewed
CVE-2025-33118
was published
Aug 1, 2025
A stored Cross-Site Scripting (XSS) vulnerability exists in the qureydetails.php page of...
Moderate
Unreviewed
CVE-2025-50869
was published
Aug 1, 2025
Microweber has Reflected XSS Vulnerability in the layout Parameter
Moderate
CVE-2025-51502
was published
for
microweber/microweber
(Composer)
Aug 1, 2025
Microweber has Reflected XSS Vulnerability in the id Parameter
Moderate
CVE-2025-51501
was published
for
microweber/microweber
(Composer)
Aug 1, 2025
Microweber XSS Vulnerability in the homepage Endpoint
Moderate
CVE-2025-51504
was published
for
microweber/microweber
(Composer)
Aug 1, 2025
A stored cross-site scripting (XSS) vulnerability in The Language Sloth Web Application v1.0...
Moderate
Unreviewed
CVE-2025-45778
was published
Aug 1, 2025
The Sina Extension for Elementor (Header Builder, Footer Builter, Theme Builder, Slider, Gallery,...
Moderate
Unreviewed
CVE-2025-6228
was published
Aug 1, 2025
The BlockSpare: Gutenberg Blocks & Patterns for Blogs, Magazines, Business Sites – Post Grids,...
Moderate
Unreviewed
CVE-2025-4684
was published
Aug 1, 2025
ProTip!
Advisories are also available from the
GraphQL API