GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,726
Maven
5,000+
npm
4,331
NuGet
763
pip
4,107
Pub
12
RubyGems
960
Rust
1,068
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,603 advisories
Filter by severity
Cross-site scripting (XSS) vulnerability in the Performance logging module in the Devel module 5...
Low
Unreviewed
CVE-2010-3022
was published
May 17, 2022
Multiple cross-site scripting (XSS) vulnerabilities in OpenStack Dashboard (Horizon) 2015.1.0...
Low
Unreviewed
CVE-2015-3988
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in modules/headlines/magpierss/scripts/magpie_debug.php...
Low
Unreviewed
CVE-2010-2852
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in phpCAS before 1.1.2, when proxy mode is enabled,...
Low
Unreviewed
CVE-2010-2796
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in the Hierarchical Select module 5.x before 5.x-3.2 and...
Low
Unreviewed
CVE-2010-2724
was published
May 17, 2022
Cross-site scripting in Apache Struts
Low
CVE-2006-1548
was published
for
struts:struts
(Maven)
May 1, 2022
Codologic Codoforum through 4.8.4 allows a DOM-based XSS. While creating a new topic as a normal...
Low
Unreviewed
CVE-2020-7050
was published
May 24, 2022
Cross-site Scripting in RabbitMQ
Low
CVE-2019-11291
was published
for
rabbit_common
(Erlang)
May 24, 2022
Cross-site scripting (XSS) vulnerability in Sijio Community Software allows remote authenticated...
Low
Unreviewed
CVE-2010-2697
was published
May 17, 2022
Multiple cross-site scripting (XSS) vulnerabilities in Sijio Community Software allow remote...
Low
Unreviewed
CVE-2010-2698
was published
May 17, 2022
A persistent cross-site scripting (XSS) vulnerability in Octopus Server 3.4.0 through 2019.10.5...
Low
Unreviewed
CVE-2019-19085
was published
May 24, 2022
Multiple cross-site scripting (XSS) vulnerabilities in the Rotor Banner module 5.x before 5.x-1.8...
Low
Unreviewed
CVE-2010-2125
was published
May 17, 2022
Multiple cross-site scripting (XSS) vulnerabilities in the Storm module 5.x and 6.x before 6.x-1...
Low
Unreviewed
CVE-2010-2123
was published
May 17, 2022
Multiple cross-site scripting (XSS) vulnerabilities in the Heartbeat module 6.x before 6.x-4.9...
Low
Unreviewed
CVE-2010-2048
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in the CCK TableField module 6.x before 6.x-1.2 for...
Low
Unreviewed
CVE-2010-1998
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in the FileField module 5.x before 5.x-2.5 and 6.x...
Low
Unreviewed
CVE-2010-1958
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in the Workflow module 5.x-2.x before 5.x-2.6 and 6.x-1...
Low
Unreviewed
CVE-2010-1539
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in the Taxonomy Breadcrumb module 6.x before 6.x-1.1 for...
Low
Unreviewed
CVE-2010-1976
was published
May 17, 2022
Multiple cross-site scripting (XSS) vulnerabilities in Drupal Content Construction Kit (CCK) 5.x...
Low
Unreviewed
CVE-2008-6972
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in the Taxonomy Breadcrumb module 5.x before 5.x-1.5 and...
Low
Unreviewed
CVE-2010-1984
was published
May 17, 2022
Multiple cross-site scripting (XSS) vulnerabilities in Joomla! 1.5.7 and earlier allow remote...
Low
Unreviewed
CVE-2008-6299
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in the administrative interface in Drupal Content...
Low
Unreviewed
CVE-2008-6229
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in Drupal 5.x before 5.12 and 6.x before 6.6 allows...
Low
Unreviewed
CVE-2008-6170
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in IBM Workplace Content Management (WCM) 6.0G and 6.1...
Low
Unreviewed
CVE-2008-5228
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in Movable Type 4 through 4.21 allows remote attackers...
Low
Unreviewed
CVE-2008-4634
was published
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API