GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,768
Erlang
35
GitHub Actions
29
Go
2,332
Maven
5,000+
npm
3,965
NuGet
713
pip
3,750
Pub
12
RubyGems
921
Rust
975
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
31,729 advisories
Filter by severity
A cross-site scripting vulnerability exists in AVEVA PI Web API version 2023
SP1 and prior that,...
Moderate
Unreviewed
CVE-2025-2745
was published
Jun 12, 2025
A cross-site scripting vulnerability exists in
AVEVA PI Connector for CygNet
Versions 1.6.14...
Moderate
Unreviewed
CVE-2025-4417
was published
Jun 12, 2025
The product does not implement sufficient measures to prevent multiple failed authentication...
Moderate
Unreviewed
CVE-2025-49186
was published
Jun 12, 2025
The web application is susceptible to cross-site-scripting attacks. An attacker who can create...
Moderate
Unreviewed
CVE-2025-49185
was published
Jun 12, 2025
An issue has been discovered in GitLab CE/EE affecting all versions from 17.9 before 17.10.8, 17...
High
Unreviewed
CVE-2025-2254
was published
Jun 12, 2025
ONLYOFFICE Docs (DocumentServer) in versions equal and below 8.3.1 are affected by a reflected...
Moderate
Unreviewed
CVE-2025-5301
was published
Jun 12, 2025
A stored XSS vulnerability in RSTickets! component 1.9.12 - 3.3.0 for Joomla was discovered. It...
High
Unreviewed
CVE-2025-32465
was published
Jun 11, 2025
An issue was discovered in Zimbra Collaboration (ZCS) through 10.1. A Cross-Site Scripting (XSS)...
Moderate
Unreviewed
CVE-2024-45517
was published
Jun 11, 2025
An issue was discovered in Zimbra Collaboration (ZCS) through 10.1. A stored Cross-Site Scripting...
Moderate
Unreviewed
CVE-2024-45513
was published
Jun 11, 2025
An issue was discovered in Zimbra Collaboration (ZCS) through v10.1. A Cross-Site Scripting (XSS)...
Moderate
Unreviewed
CVE-2024-45514
was published
Jun 11, 2025
An issue was discovered in webmail in Zimbra Collaboration (ZCS) through 10.1. An attacker can...
Moderate
Unreviewed
CVE-2024-45512
was published
Jun 11, 2025
IBM Cognos Analytics 11.2.0, 11.2.1, 11.2.2, 11.2.3, 11.2.4, 12.0.0, 12.0.1, 12.0.2, 12.0.3, and...
Moderate
Unreviewed
CVE-2025-0917
was published
Jun 11, 2025
In Zimbra Collaboration (ZCS) 9.0 and 10.0, a vulnerability in the Webmail Modern UI allows...
Moderate
Unreviewed
CVE-2024-45194
was published
Jun 11, 2025
The The Events Calendar plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
Moderate
Unreviewed
CVE-2025-5144
was published
Jun 11, 2025
The Xagio SEO – AI Powered SEO plugin for WordPress is vulnerable to Stored Cross-Site Scripting...
High
Unreviewed
CVE-2025-3302
was published
Jun 11, 2025
The Zotpress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘nickname’...
Moderate
Unreviewed
CVE-2025-4666
was published
Jun 11, 2025
Adobe Experience Manager versions 6.5.22 and earlier are affected by a stored Cross-Site...
Moderate
Unreviewed
CVE-2025-47116
was published
Jun 11, 2025
Adobe Experience Manager versions 6.5.22 and earlier are affected by a stored Cross-Site...
Moderate
Unreviewed
CVE-2025-47114
was published
Jun 11, 2025
Adobe Experience Manager versions 6.5.22 and earlier are affected by a stored Cross-Site...
Moderate
Unreviewed
CVE-2025-47113
was published
Jun 11, 2025
Adobe Experience Manager versions 6.5.22 and earlier are affected by a stored Cross-Site...
Moderate
Unreviewed
CVE-2025-47117
was published
Jun 11, 2025
Adobe Experience Manager versions 6.5.22 and earlier are affected by a stored Cross-Site...
Moderate
Unreviewed
CVE-2025-47115
was published
Jun 11, 2025
A vulnerability has been found in SourceCodester Online Student Clearance System 1.0 and...
Moderate
Unreviewed
CVE-2025-5984
was published
Jun 11, 2025
Adobe Experience Manager versions 6.5.22 and earlier are affected by a stored Cross-Site...
Moderate
Unreviewed
CVE-2025-47086
was published
Jun 11, 2025
Adobe Experience Manager versions 6.5.22 and earlier are affected by a stored Cross-Site...
Moderate
Unreviewed
CVE-2025-47085
was published
Jun 11, 2025
Adobe Experience Manager versions 6.5.22 and earlier are affected by a stored Cross-Site...
Moderate
Unreviewed
CVE-2025-47083
was published
Jun 11, 2025
ProTip!
Advisories are also available from the
GraphQL API