GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,318
Erlang
31
GitHub Actions
21
Go
2,074
Maven
5,000+
npm
3,746
NuGet
674
pip
3,434
Pub
12
RubyGems
892
Rust
880
Swift
37
Unreviewed advisories
All unreviewed
5,000+
3,537 advisories
Filter by severity
Active Directory Federation Server Spoofing Vulnerability
Moderate
Unreviewed
CVE-2025-21193
was published
Jan 14, 2025
TYPO3 DB Check Module vulnerable to Cross-Site Request Forgery
Moderate
CVE-2024-55945
was published
for
typo3/cms-lowlevel
(Composer)
Jan 14, 2025
TYPO3 Indexed Search Module vulnerable to Cross-Site Request Forgery
Moderate
CVE-2024-55923
was published
for
typo3/cms-indexed-search
(Composer)
Jan 14, 2025
TYPO3 Form Framework Module vulnerable to Cross-Site Request Forgery
Moderate
CVE-2024-55922
was published
for
typo3/cms-form
(Composer)
Jan 14, 2025
TYPO3 Cross-Site Request Forgery in Dashboard Module
Moderate
CVE-2024-55920
was published
for
typo3/cms-dashboard
(Composer)
Jan 14, 2025
TYPO3 Cross-Site Request Forgery in Backend User Module
Moderate
CVE-2024-55894
was published
for
typo3/cms-beuser
(Composer)
Jan 14, 2025
TYPO3 Cross-Site Request Forgery in Log Module
Moderate
CVE-2024-55893
was published
for
typo3/cms-belog
(Composer)
Jan 14, 2025
The Royal Elementor Addons and Templates plugin for WordPress is vulnerable to Cross-Site Request...
Moderate
Unreviewed
CVE-2025-0393
was published
Jan 14, 2025
The Smart Agenda – Prise de rendez-vous en ligne plugin for WordPress is vulnerable to Cross-Site...
Moderate
Unreviewed
CVE-2024-13348
was published
Jan 14, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Drupal Minify JS allows Cross Site Request...
Moderate
Unreviewed
CVE-2024-13304
was published
Jan 9, 2025
The AI Scribe – SEO AI Writer, Content Generator, Humanizer, Blog Writer, SEO Optimizer, DALLE-3,...
Moderate
Unreviewed
CVE-2024-12605
was published
Jan 9, 2025
The Action Network plugin for WordPress is vulnerable to Cross-Site Request Forgery in all...
Moderate
Unreviewed
CVE-2024-12394
was published
Jan 9, 2025
The Woocommerce check pincode/zipcode for shipping plugin for WordPress is vulnerable to Cross...
Moderate
Unreviewed
CVE-2024-12218
was published
Jan 9, 2025
The WordPress Header Builder Plugin – Pearl plugin for WordPress is vulnerable to Cross-Site...
Moderate
Unreviewed
CVE-2024-12206
was published
Jan 9, 2025
A vulnerability was found in kurniaramadhan E-Commerce-PHP 1.0. It has been classified as...
Moderate
Unreviewed
CVE-2024-13203
was published
Jan 9, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Faaiq Pretty Url allows Cross Site Request...
Moderate
Unreviewed
CVE-2025-22563
was published
Jan 7, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Jason Funk Title Experiments Free allows Cross...
Moderate
Unreviewed
CVE-2025-22562
was published
Jan 7, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Digital Zoom Studio Admin debug wordpress –...
Moderate
Unreviewed
CVE-2025-22503
was published
Jan 7, 2025
Cross-Site Request Forgery (CSRF) vulnerability in PixelYourSite PixelYourSite – Your smart PIXEL...
Moderate
Unreviewed
CVE-2025-22300
was published
Jan 7, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Stormhill Media MyBookTable Bookstore allows...
Moderate
Unreviewed
CVE-2025-22301
was published
Jan 7, 2025
Cross-Site Request Forgery (CSRF) vulnerability in AIpost AI WP Writer allows Cross Site Request...
Moderate
Unreviewed
CVE-2025-22297
was published
Jan 7, 2025
Cross-Site Request Forgery (CSRF) vulnerability in MagePeople Team Bus Ticket Booking with Seat...
Moderate
Unreviewed
CVE-2024-49294
was published
Jan 7, 2025
The Binary MLM Woocommerce plugin for WordPress is vulnerable to Cross-Site Request Forgery in...
Moderate
Unreviewed
CVE-2024-12383
was published
Jan 7, 2025
The ViewMedica 9 plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions...
Moderate
Unreviewed
CVE-2024-12170
was published
Jan 7, 2025
The ViewMedica 9 plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions...
Moderate
Unreviewed
CVE-2024-12291
was published
Jan 7, 2025
ProTip!
Advisories are also available from the
GraphQL API