GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,638
Maven
5,000+
npm
4,264
NuGet
760
pip
4,060
Pub
12
RubyGems
956
Rust
1,056
Swift
45
Unreviewed advisories
All unreviewed
5,000+
12 advisories
Filter by severity
An improper input neutralization vulnerability in the management web interface of the Palo Alto...
High
Unreviewed
CVE-2025-4615
was published
Oct 9, 2025
An improper input neutralization vulnerability in the management web interface of the Palo Alto...
Moderate
Unreviewed
CVE-2025-0137
was published
May 14, 2025
An improper input neutralization vulnerability in the management web interface of the Palo Alto...
Moderate
Unreviewed
CVE-2025-0125
was published
Apr 11, 2025
Improper Neutralization of Script in Attributes in a Web Page vulnerability in Forcepoint Email...
Moderate
Unreviewed
CVE-2024-9103
was published
Mar 24, 2025
copyparty renders unsanitized filenames as HTML when user uploads empty files
Low
CVE-2025-27145
was published
for
copyparty
(pip)
Feb 26, 2025
HTML Cleaner allows crafted scripts in special contexts like svg or math to pass through
High
CVE-2024-52595
was published
for
lxml-html-clean
(pip)
Nov 19, 2024
nuxt vulnerable to Cross-site Scripting in navigateTo if used after SSR
Moderate
CVE-2024-34343
was published
for
nuxt
(npm)
Aug 5, 2024
An attacker could have executed unauthorized scripts on top origin sites using a JavaScript URI...
High
Unreviewed
CVE-2024-26283
was published
Feb 22, 2024
org.xwiki.rendering:xwiki-rendering-xml Improper Neutralization of Invalid Characters in Identifiers in Web Pages vulnerability
Critical
CVE-2023-37908
was published
for
org.xwiki.rendering:xwiki-rendering-xml
(Maven)
Oct 25, 2023
A security defect was identified in Foundry Frontend that enabled users to potentially conduct...
Moderate
Unreviewed
CVE-2023-30958
was published
Aug 4, 2023
Improper Neutralization of Script in Attributes in XWiki (X)HTML renderers
Critical
CVE-2023-32070
was published
for
org.xwiki.platform:xwiki-core-rendering-api
(Maven)
May 11, 2023
Philips Clinical Collaboration Platform, Versions 12.2.1 and prior. The software does not...
Low
Unreviewed
CVE-2020-14525
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API