GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,266
Erlang
31
GitHub Actions
21
Go
2,035
Maven
5,000+
npm
3,732
NuGet
662
pip
3,413
Pub
12
RubyGems
891
Rust
865
Swift
36
Unreviewed advisories
All unreviewed
5,000+
30,088 advisories
Filter by severity
The Image Over Image For WPBakery Page Builder WordPress plugin before 3.0 does not validate and...
Moderate
Unreviewed
CVE-2023-0399
was published
Apr 3, 2023
Reflected XSS (via AngularJS sandbox escape expressions) exists in Progress Ipswitch WS_FTP...
Moderate
Unreviewed
CVE-2022-27665
was published
Apr 3, 2023
Jenkins JaCoCo Plugin vulnerable to Stored Cross-site Scripting
High
CVE-2023-28669
was published
for
org.jenkins-ci.plugins:jacoco
(Maven)
Apr 2, 2023
HCL Launch is vulnerable to HTML injection. HTML code is stored and included without being...
Moderate
Unreviewed
CVE-2022-42452
was published
Apr 2, 2023
Jenkins Pipeline Aggregator View Plugin vulnerable to Cross-site Scripting
High
CVE-2023-28670
was published
for
com.paul8620.jenkins.plugins:pipeline-aggregator-view
(Maven)
Apr 2, 2023
IBM WebSphere Application Server 9.0 is vulnerable to cross-site scripting. This vulnerability...
Moderate
Unreviewed
CVE-2023-26283
was published
Apr 2, 2023
Jenkins Mashup Portlets Plugin vulnerable to stored cross-site scripting
High
CVE-2023-28679
was published
for
javagh.jenkins:mashup-portlets-plugin
(Maven)
Apr 2, 2023
Jenkins Cppcheck Plugin vulnerable to stored cross-site scripting (XSS)
High
CVE-2023-28678
was published
for
org.jenkins-ci.plugins:cppcheck
(Maven)
Apr 2, 2023
A vulnerability, which was classified as problematic, has been found in EyouCMS up to 1.5.4....
Moderate
Unreviewed
CVE-2023-1798
was published
Apr 2, 2023
A vulnerability, which was classified as problematic, was found in EyouCMS up to 1.5.4. This...
Moderate
Unreviewed
CVE-2023-1799
was published
Apr 2, 2023
A vulnerability was found in SourceCodester Gadget Works Online Ordering System 1.0. It has been...
Moderate
Unreviewed
CVE-2023-1795
was published
Apr 2, 2023
A vulnerability was found in SourceCodester Police Crime Record Management System 1.0. It has...
Moderate
Unreviewed
CVE-2023-1794
was published
Apr 2, 2023
A vulnerability classified as problematic has been found in SourceCodester Employee Payslip...
Moderate
Unreviewed
CVE-2023-1796
was published
Apr 2, 2023
The web configuration service of the affected device contains an authenticated command injection...
Critical
Unreviewed
CVE-2023-0432
was published
Mar 31, 2023
Pimcore vulnerable to Reflected XSS in Predefined Properties module in Settings
Moderate
CVE-2023-1701
was published
for
pimcore/pimcore
(Composer)
Mar 31, 2023
Pimcore Cross-site Scripting in Predefined Asset Metadata module in Settings
Moderate
CVE-2023-1702
was published
for
pimcore/pimcore
(Composer)
Mar 31, 2023
pimcore is vulnerable to cross-site scripting in translate module
Moderate
CVE-2023-1704
was published
for
pimcore/pimcore
(Composer)
Mar 31, 2023
A vulnerability was found in SourceCodester Grade Point Average GPA Calculator 1.0 and classified...
Moderate
Unreviewed
CVE-2023-1771
was published
Mar 31, 2023
Mattermost vulnerable to cross-site scripting (XSS)
Moderate
CVE-2023-1776
was published
for
github.com/mattermost/mattermost-server
(Go)
Mar 31, 2023
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2023-1060
was published
Mar 31, 2023
A vulnerability was found in DataGear up to 4.5.1. It has been classified as problematic. This...
Moderate
Unreviewed
CVE-2023-1772
was published
Mar 31, 2023
phpMyFAQ vulnerable to improper input validation
Moderate
CVE-2023-1754
was published
for
thorsten/phpmyfaq
(Composer)
Mar 31, 2023
phpMyFAQ Cross-site Scripting vulnerability
Moderate
CVE-2023-1755
was published
for
thorsten/phpmyfaq
(Composer)
Mar 31, 2023
phpMyFAQ Stored Cross-site Scripting vulnerability
Moderate
CVE-2023-1760
was published
for
thorsten/phpmyfaq
(Composer)
Mar 31, 2023
phpMyFAQ Stored Cross-site Scripting vulnerability
Moderate
CVE-2023-1759
was published
for
thorsten/phpmyfaq
(Composer)
Mar 31, 2023
ProTip!
Advisories are also available from the
GraphQL API