GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,743
Erlang
35
GitHub Actions
29
Go
2,315
Maven
5,000+
npm
3,949
NuGet
711
pip
3,729
Pub
12
RubyGems
920
Rust
965
Swift
38
Unreviewed advisories
All unreviewed
5,000+
34,852 advisories
Filter by severity
Cross-site Scripting in the tag name pattern field in the tag protections UI in GitHub Enterprise...
Moderate
Unreviewed
CVE-2024-1084
was published
Feb 13, 2024
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
High
Unreviewed
CVE-2024-21389
was published
Feb 13, 2024
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
High
Unreviewed
CVE-2024-21393
was published
Feb 13, 2024
Dynamics 365 Field Service Spoofing Vulnerability
High
Unreviewed
CVE-2024-21394
was published
Feb 13, 2024
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
High
Unreviewed
CVE-2024-21395
was published
Feb 13, 2024
Zimbra Collaboration before Kepler 9.0.0 Patch 38 GA allows DOM-based JavaScript injection in the...
Critical
Unreviewed
CVE-2023-50808
was published
Feb 13, 2024
An issue was discovered in Zimbra Collaboration (ZCS) 8.8.15, 9.0, and 10.0. Through the help...
Moderate
Unreviewed
CVE-2023-45206
was published
Feb 13, 2024
An issue was discovered in Zimbra Collaboration (ZCS) 8.8.15, 9.0, and 10.0. XSS, with resultant...
Moderate
Unreviewed
CVE-2023-48432
was published
Feb 13, 2024
Microsoft Dynamics 365 Customer Engagement Cross-Site Scripting Vulnerability
High
Unreviewed
CVE-2024-21327
was published
Feb 13, 2024
Azure Stack Hub Spoofing Vulnerability
Moderate
Unreviewed
CVE-2024-20679
was published
Feb 13, 2024
An issue was discovered in Zimbra Collaboration (ZCS) 8.8.15, 9.0, and 10.0. An attacker can send...
Moderate
Unreviewed
CVE-2023-45207
was published
Feb 13, 2024
XSS sidekiq-unique-jobs UI server vulnerability
High
CVE-2024-25122
was published
for
sidekiq-unique-jobs
(RubyGems)
Feb 13, 2024
A cross-site scripting vulnerability in Trellix Central Management (CM) prior to 9.1.3.97129...
Moderate
Unreviewed
CVE-2023-6072
was published
Feb 13, 2024
The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
Moderate
Unreviewed
CVE-2024-1157
was published
Feb 13, 2024
The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
Moderate
Unreviewed
CVE-2024-1160
was published
Feb 13, 2024
The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
Moderate
Unreviewed
CVE-2024-1159
was published
Feb 13, 2024
SAP Companion - version <3.1.38, has a URL with parameter that could be vulnerable to XSS attack....
Moderate
Unreviewed
CVE-2024-22129
was published
Feb 13, 2024
SAP CRM WebClient UI - version S4FND 102, S4FND 103, S4FND 104, S4FND 105, S4FND 106, WEBCUIF 701...
Moderate
Unreviewed
CVE-2024-24742
was published
Feb 13, 2024
Print preview option in SAP CRM WebClient UI - versions S4FND 102, S4FND 103, S4FND 104, S4FND...
High
Unreviewed
CVE-2024-22130
was published
Feb 13, 2024
SAP NWBC for HTML - versions SAP_UI 754, SAP_UI 755, SAP_UI 756, SAP_UI 757, SAP_UI 758,...
Moderate
Unreviewed
CVE-2024-22128
was published
Feb 13, 2024
The User Admin application of SAP NetWeaver AS for Java - version 7.50, insufficiently validates...
High
Unreviewed
CVE-2024-22126
was published
Feb 13, 2024
A cross-site scripting (XSS) vulnerability in Gestsup v3.2.46 allows attackers to execute...
Moderate
Unreviewed
CVE-2023-52059
was published
Feb 13, 2024
caddy-security plugin for Caddy vulnerable to reflected Cross-site Scripting
Moderate
CVE-2023-52430
was published
for
github.com/greenpau/caddy-security
(Go)
Feb 13, 2024
ProTip!
Advisories are also available from the
GraphQL API