GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,963
Erlang
39
GitHub Actions
38
Go
2,615
Maven
5,000+
npm
4,255
NuGet
760
pip
4,036
Pub
12
RubyGems
953
Rust
1,049
Swift
45
Unreviewed advisories
All unreviewed
5,000+
38,102 advisories
Filter by severity
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-64202
was published
Oct 29, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-64220
was published
Oct 29, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-64194
was published
Oct 29, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-49042
was published
Oct 29, 2025
PrivateBin is missing HTML sanitization of attached filename in file size hint
Moderate
CVE-2025-62796
was published
for
privatebin/privatebin
(Composer)
Oct 28, 2025
A reflected Cross-Site Scripting (XSS) vulnerability has been identified in Clear2Pay Bank...
Moderate
Unreviewed
CVE-2025-61080
was published
Oct 28, 2025
Astro's bypass of image proxy domain validation leads to SSRF and potential XSS
High
CVE-2025-59837
was published
for
astro
(npm)
Oct 28, 2025
IPFire versions prior to 2.29 (Core Update 198) contain a stored cross-site scripting (XSS)...
Moderate
Unreviewed
CVE-2025-34318
was published
Oct 28, 2025
IPFire versions prior to 2.29 (Core Update 198) contain a stored cross-site scripting (XSS)...
Moderate
Unreviewed
CVE-2025-34317
was published
Oct 28, 2025
IPFire versions prior to 2.29 (Core Update 198) contain a stored cross-site scripting (XSS)...
Moderate
Unreviewed
CVE-2025-34315
was published
Oct 28, 2025
IPFire versions prior to 2.29 (Core Update 198) contain a stored cross-site scripting (XSS)...
Moderate
Unreviewed
CVE-2025-34314
was published
Oct 28, 2025
IPFire versions prior to 2.29 (Core Update 198) contain a stored cross-site scripting (XSS)...
Moderate
Unreviewed
CVE-2025-34316
was published
Oct 28, 2025
IPFire versions prior to 2.29 (Core Update 198) contain a stored cross-site scripting (XSS)...
Moderate
Unreviewed
CVE-2025-34313
was published
Oct 28, 2025
IPFire versions prior to 2.29 (Core Update 198) contain a stored cross-site scripting (XSS)...
Moderate
Unreviewed
CVE-2025-34306
was published
Oct 28, 2025
IPFire versions prior to 2.29 (Core Update 198) contain a stored cross-site scripting (XSS)...
Moderate
Unreviewed
CVE-2025-34309
was published
Oct 28, 2025
IPFire versions prior to 2.29 (Core Update 198) contain a stored cross-site scripting (XSS)...
Moderate
Unreviewed
CVE-2025-34308
was published
Oct 28, 2025
IPFire versions prior to 2.29 (Core Update 198) contain a stored cross-site scripting (XSS)...
Moderate
Unreviewed
CVE-2025-34310
was published
Oct 28, 2025
IPFire versions prior to 2.29 (Core Update 198) contain a stored cross-site scripting (XSS)...
Moderate
Unreviewed
CVE-2025-34307
was published
Oct 28, 2025
IPFire versions prior to 2.29 (Core Update 198) contain a stored cross-site scripting (XSS)...
Moderate
Unreviewed
CVE-2025-34302
was published
Oct 28, 2025
IPFire versions prior to 2.29 (Core Update 198) contain multiple stored cross-site scripting (XSS...
Moderate
Unreviewed
CVE-2025-34305
was published
Oct 28, 2025
IPFire versions prior to 2.29 (Core Update 198) contain a stored cross-site scripting (XSS)...
Moderate
Unreviewed
CVE-2025-34301
was published
Oct 28, 2025
IPFire versions prior to 2.29 (Core Update 198) contain a stored cross-site scripting (XSS)...
Moderate
Unreviewed
CVE-2025-34303
was published
Oct 28, 2025
A vulnerability was determined in code-projects E-Commerce Website 1.0. Affected by this...
Moderate
Unreviewed
CVE-2025-12335
was published
Oct 28, 2025
A flaw has been found in SourceCodester Student Grades Management System 1.0. This affects the...
Moderate
Unreviewed
CVE-2025-12332
was published
Oct 28, 2025
A vulnerability was found in code-projects E-Commerce Website 1.0. Affected is an unknown...
Moderate
Unreviewed
CVE-2025-12334
was published
Oct 28, 2025
ProTip!
Advisories are also available from the
GraphQL API