GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,638
Erlang
34
GitHub Actions
26
Go
2,249
Maven
5,000+
npm
3,903
NuGet
702
pip
3,671
Pub
12
RubyGems
915
Rust
943
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
252,913 advisories
Filter by severity
The CLEVER - HTML5 Radio Player With History - Shoutcast and Icecast - Elementor Widget Addon...
High
Unreviewed
CVE-2025-3103
was published
Apr 19, 2025
The WP-Syntax WordPress plugin through 1.2 does not properly handle input, allowing an attacker...
High
Unreviewed
CVE-2024-13926
was published
Apr 19, 2025
The Element Pack Addons for Elementor – Free Templates and Widgets for Your WordPress Websites...
Moderate
Unreviewed
CVE-2025-1457
was published
Apr 19, 2025
The AIHub theme for WordPress is vulnerable to arbitrary file uploads due to missing file type...
Critical
Unreviewed
CVE-2025-1093
was published
Apr 19, 2025
The Debug Log Manager plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
High
Unreviewed
CVE-2025-3809
was published
Apr 19, 2025
The Themesflat Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site...
Moderate
Unreviewed
CVE-2025-3275
was published
Apr 19, 2025
The Insert Headers And Footers plugin for WordPress is vulnerable to Cross-Site Request Forgery...
High
Unreviewed
CVE-2025-2111
was published
Apr 19, 2025
The JobWP – Job Board, Job Listing, Career Page and Recruitment Plugin plugin for WordPress is...
High
Unreviewed
CVE-2025-2010
was published
Apr 19, 2025
The User Registration & Membership – Custom Registration Form, Login Form, and User Profile...
Moderate
Unreviewed
CVE-2025-3284
was published
Apr 19, 2025
The UrbanGo Membership plugin for WordPress is vulnerable to privilege escalation in versions up...
Critical
Unreviewed
CVE-2025-3278
was published
Apr 19, 2025
In Nessus versions prior to 10.8.4, a non-authenticated attacker could alter Nessus logging...
Moderate
Unreviewed
CVE-2025-36625
was published
Apr 18, 2025
A vulnerability was found in DaiCuo 1.3.13. It has been rated as problematic. Affected by this...
Moderate
Unreviewed
CVE-2025-3795
was published
Apr 18, 2025
A vulnerability classified as critical has been found in PHPGurukul Men Salon Management System 1...
Moderate
Unreviewed
CVE-2025-3796
was published
Apr 18, 2025
NSSCryptoSignBackend.cc in Poppler before 25.04.0 does not verify the adbe.pkcs7.sha1 signatures...
Moderate
Unreviewed
CVE-2025-43903
was published
Apr 18, 2025
An issue in the login page of Seclore v3.27.5.0 allows attackers to bypass authentication via a...
Critical
Unreviewed
CVE-2024-53591
was published
Apr 18, 2025
An issue in Qimou CMS v.3.34.0 allows a remote attacker to execute arbitrary code via the upgrade...
Critical
Unreviewed
CVE-2025-29058
was published
Apr 18, 2025
ProTip!
Advisories are also available from the
GraphQL API