GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,587 advisories
Filter by severity
Cross-site scripting (XSS) vulnerability in the selection list in the filters in the...
Low
Unreviewed
CVE-2014-8986
was published
May 17, 2022
Multiple cross-site scripting (XSS) vulnerabilities in the administrative user interface in EMC M...
Low
Unreviewed
CVE-2015-0513
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in Notes in Apple OS X before 10.11 allows local users...
Low
Unreviewed
CVE-2015-5875
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in Namazu before 2.0.21, when Internet Explorer 6 or 7...
Low
Unreviewed
CVE-2011-4345
was published
May 17, 2022
Multiple cross-site scripting (XSS) vulnerabilities in EMC Documentum WebTop 6.7SP1 before P31, 6...
Low
Unreviewed
CVE-2015-0551
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in the Cakifo theme 1.x before 1.6.2 for WordPress...
Low
Unreviewed
CVE-2014-3903
was published
May 17, 2022
Cross site scripting in Concrete CMS
Low
CVE-2022-30120
was published
for
concrete5/core
(Composer)
Jun 25, 2022
Cross-site scripting (XSS) vulnerability in templates/mytribiqsite/tribal-GPL-1066/includes...
Low
Unreviewed
CVE-2008-4893
was published
May 17, 2022
Microsoft SharePoint uses URLs with the same hostname and port number for a web site's primary...
Low
Unreviewed
CVE-2008-5026
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in modules.php in NavBoard 16 (2.6.0) allows remote...
Low
Unreviewed
CVE-2008-5944
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in the Ajax Checklist module 5.x before 5.x-1.1 for...
Low
Unreviewed
CVE-2008-5999
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in the Simplenews module 5.x before 5.x-1.5 and 6.x...
Low
Unreviewed
CVE-2008-5996
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in Movable Type 4 through 4.21 allows remote attackers...
Low
Unreviewed
CVE-2008-4634
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in Drupal 5.x before 5.12 and 6.x before 6.6 allows...
Low
Unreviewed
CVE-2008-6170
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in IBM Workplace Content Management (WCM) 6.0G and 6.1...
Low
Unreviewed
CVE-2008-5228
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in the administrative interface in Drupal Content...
Low
Unreviewed
CVE-2008-6229
was published
May 17, 2022
Multiple cross-site scripting (XSS) vulnerabilities in Joomla! 1.5.7 and earlier allow remote...
Low
Unreviewed
CVE-2008-6299
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in the Taxonomy Breadcrumb module 5.x before 5.x-1.5 and...
Low
Unreviewed
CVE-2010-1984
was published
May 17, 2022
Multiple cross-site scripting (XSS) vulnerabilities in Drupal Content Construction Kit (CCK) 5.x...
Low
Unreviewed
CVE-2008-6972
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in the Workflow module 5.x-2.x before 5.x-2.6 and 6.x-1...
Low
Unreviewed
CVE-2010-1539
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in the Taxonomy Breadcrumb module 6.x before 6.x-1.1 for...
Low
Unreviewed
CVE-2010-1976
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in the FileField module 5.x before 5.x-2.5 and 6.x...
Low
Unreviewed
CVE-2010-1958
was published
May 17, 2022
Multiple cross-site scripting (XSS) vulnerabilities in the Heartbeat module 6.x before 6.x-4.9...
Low
Unreviewed
CVE-2010-2048
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in the CCK TableField module 6.x before 6.x-1.2 for...
Low
Unreviewed
CVE-2010-1998
was published
May 17, 2022
Multiple cross-site scripting (XSS) vulnerabilities in the Storm module 5.x and 6.x before 6.x-1...
Low
Unreviewed
CVE-2010-2123
was published
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API