GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,587 advisories
Filter by severity
Multiple cross-site scripting (XSS) vulnerabilities in the Rotor Banner module 5.x before 5.x-1.8...
Low
Unreviewed
CVE-2010-2125
was published
May 17, 2022
A persistent cross-site scripting (XSS) vulnerability in Octopus Server 3.4.0 through 2019.10.5...
Low
Unreviewed
CVE-2019-19085
was published
May 24, 2022
Multiple cross-site scripting (XSS) vulnerabilities in Sijio Community Software allow remote...
Low
Unreviewed
CVE-2010-2698
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in Sijio Community Software allows remote authenticated...
Low
Unreviewed
CVE-2010-2697
was published
May 17, 2022
Cross-site Scripting in RabbitMQ
Low
CVE-2019-11291
was published
for
rabbit_common
(Erlang)
May 24, 2022
Codologic Codoforum through 4.8.4 allows a DOM-based XSS. While creating a new topic as a normal...
Low
Unreviewed
CVE-2020-7050
was published
May 24, 2022
Cross-site scripting in Apache Struts
Low
CVE-2006-1548
was published
for
struts:struts
(Maven)
May 1, 2022
Cross-site scripting (XSS) vulnerability in the Hierarchical Select module 5.x before 5.x-3.2 and...
Low
Unreviewed
CVE-2010-2724
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in phpCAS before 1.1.2, when proxy mode is enabled,...
Low
Unreviewed
CVE-2010-2796
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in modules/headlines/magpierss/scripts/magpie_debug.php...
Low
Unreviewed
CVE-2010-2852
was published
May 17, 2022
Multiple cross-site scripting (XSS) vulnerabilities in OpenStack Dashboard (Horizon) 2015.1.0...
Low
Unreviewed
CVE-2015-3988
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in the Performance logging module in the Devel module 5...
Low
Unreviewed
CVE-2010-3022
was published
May 17, 2022
Reflected Cross Site Scripting in GitHub repository openemr/openemr prior to 6.0.0.4.
Low
Unreviewed
CVE-2022-1180
was published
Mar 31, 2022
Multiple cross-site scripting (XSS) vulnerabilities in Radius Manager 3.8.0 allow remote...
Low
Unreviewed
CVE-2010-4275
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in DaDaBIK before 4.3 beta2, when the insert or edit...
Low
Unreviewed
CVE-2010-4355
was published
May 17, 2022
WebKit in Apple Safari before 5.0.4, when the Web Inspector is used, does not properly handle the...
Low
Unreviewed
CVE-2011-0169
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in the Messaging module 6.x-2.x before 6.x-2.4 and 6.x-4...
Low
Unreviewed
CVE-2011-1066
was published
May 17, 2022
Cross-site Scripting in bootstrap-table
Low
CVE-2021-23472
was published
for
bootstrap-table
(npm)
Nov 8, 2021
Cross site scripting via cookies in gogs
Low
GHSA-pj96-4jhv-v792
was published
for
gogs.io/gogs
(Go)
Jun 2, 2022
Stored XSS by authenticated backend user with access to upload files
Low
CVE-2020-15249
was published
for
october/backend
(Composer)
Nov 23, 2020
Blog comment posting, Cross Site Scripting(XSS) Vulnerability in Latest Release 4.4.0
Low
CVE-2020-15276
was published
for
baserproject/basercms
(Composer)
Oct 30, 2020
Persistent XSS in shopping worlds
Low
GHSA-28fw-88hq-6jmm
was published
for
shopware/shopware
(Composer)
Nov 13, 2020
Non-persistent XSS in the Storefront in Shopware
Low
GHSA-qvhr-55hg-3qwv
was published
for
shopware/core
(Composer)
Sep 23, 2020
Persistent XSS in newsletter module in Shopware
Low
GHSA-hrfh-fp4x-crrq
was published
for
shopware/shopware
(Composer)
Nov 13, 2020
Cross Site Scripting(XSS) Vulnerability in Latest Release 4.3.6 Site basic settings
Low
CVE-2020-15155
was published
for
baserproject/basercms
(Composer)
Aug 28, 2020
ProTip!
Advisories are also available from the
GraphQL API