GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,968
Erlang
39
GitHub Actions
38
Go
2,616
Maven
5,000+
npm
4,255
NuGet
760
pip
4,040
Pub
12
RubyGems
953
Rust
1,050
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,221 advisories
Filter by severity
Liferay Portal and Liferay DXP HtmlUtil.escapeRedirect Can Be Circumvented
Moderate
CVE-2022-28977
was published
for
com.liferay.portal:com.liferay.util.java
(Maven)
Sep 23, 2022
DiracX-Web is vulnerable to attack through an Open Redirect on its login page
Moderate
CVE-2025-54066
was published
for
@dirac-grid/diracx-web-components
(npm)
Jul 17, 2025
A vulnerability, which was classified as problematic, was found in thinkgem JeeSite up to 5.12.0....
Moderate
Unreviewed
CVE-2025-7763
was published
Jul 18, 2025
An open redirect vulnerability has been identified in Grafana OSS organization switching...
Moderate
Unreviewed
CVE-2025-6197
was published
Jul 18, 2025
A vulnerability classified as problematic was found in thinkgem JeeSite up to 5.12.0. This...
Moderate
Unreviewed
CVE-2025-7785
was published
Jul 18, 2025
Vulnerability in Oracle Application Express (component: Strategic Planner Starter App). ...
Critical
Unreviewed
CVE-2025-50067
was published
Jul 15, 2025
A vulnerability was found in thinkgem JeeSite up to 5.12.0 and classified as problematic....
Moderate
Unreviewed
CVE-2025-7863
was published
Jul 20, 2025
A vulnerability was found in Sanluan PublicCMS up to 5.202506.a. It has been declared as...
Moderate
Unreviewed
CVE-2025-7949
was published
Jul 22, 2025
A vulnerability, which was classified as problematic, has been found in Sanluan PublicCMS up to 5...
Moderate
Unreviewed
CVE-2025-7953
was published
Jul 22, 2025
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in HotelRunner B2B allows...
Moderate
Unreviewed
CVE-2025-4296
was published
Jul 23, 2025
A URL redirection in lbry-desktop v0.53.9 allows attackers to redirect victim users to attacker...
Moderate
Unreviewed
CVE-2025-50477
was published
Jul 23, 2025
A URL redirection in Pinokio v3.6.23 allows attackers to redirect victim users to attacker...
Moderate
Unreviewed
CVE-2025-44109
was published
Jul 23, 2025
Open redirect vulnerability allows a remote unauthenticated attacker to redirect users to...
Moderate
Unreviewed
CVE-2024-5492
was published
Jul 10, 2024
Redirection of users to a vulnerable URL in Citrix Workspace app for HTML5
Moderate
Unreviewed
CVE-2024-6149
was published
Jul 10, 2024
@cloudflare/workers-oauth-provider missing validation of redirect_uri on authorize endpoint
Moderate
CVE-2025-4143
was published
for
@cloudflare/workers-oauth-provider
(npm)
May 1, 2025
Liferay Portal and Liferay DXP Vulnerable to Open Redirect in Countries Management's Edit Region Page
Moderate
CVE-2023-5190
was published
for
com.liferay.portal:release.dxp.bom
(Maven)
Feb 20, 2024
Liferay Vulnerable to Open Redirect via Adaptive Media Administration Page
Moderate
CVE-2023-44308
was published
for
com.liferay:com.liferay.adaptive.media.web
(Maven)
Feb 20, 2024
Liferay Portal and Liferay DXP's HtmlUtil.escapeRedirect Can Be Circumvented via Replacement Character
Moderate
CVE-2024-25608
was published
for
com.liferay.portal:release.dxp.bom
(Maven)
Feb 20, 2024
Liferay Portal and Liferay DXP's HtmlUtil.escapeRedirect Can Be Circumvented via Two Forward Slashes
Moderate
CVE-2024-25609
was published
for
com.liferay.portal:release.dxp.bom
(Maven)
Feb 20, 2024
Duplicate Advisory: Koa Open Redirect via Referrer Header (User-Controlled)
Low
GHSA-mvw6-62qv-vmqf
was published
for
koa
(npm)
Jul 25, 2025
•
withdrawn
An open redirect in Sielox AnyWare v2.1.2 allows attackers to execute a man-in-the-middle attack...
Moderate
Unreviewed
CVE-2024-34328
was published
Jul 31, 2025
IBM Operational Decision Manager 8.11.0.1, 8.11.1.0, 8.12.0.1, 9.0.0.1, and 9.5.0 could allow a...
High
Unreviewed
CVE-2025-2824
was published
Aug 1, 2025
Koa Open Redirect via Referrer Header (User-Controlled)
Low
CVE-2025-8129
was published
for
koa
(npm)
Jul 29, 2025
Astros's duplicate trailing slash feature leads to an open redirection security issue
Moderate
CVE-2025-54793
was published
for
astro
(npm)
Aug 7, 2025
Apache Tomcat Open Redirect vulnerability
Moderate
CVE-2023-41080
was published
for
org.apache.tomcat.embed:tomcat-embed-core
(Maven)
Aug 25, 2023
ProTip!
Advisories are also available from the
GraphQL API