GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,740
Maven
5,000+
npm
4,338
NuGet
765
pip
4,112
Pub
12
RubyGems
960
Rust
1,068
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
30,455 advisories
Filter by severity
MailEnable versions prior to 10.54 contain a reflected cross-site scripting (XSS) vulnerability...
Moderate
Unreviewed
CVE-2025-34425
was published
Dec 10, 2025
Selea Targa IP OCR-ANPR Camera contains a stored cross-site scripting vulnerability in the ...
Moderate
Unreviewed
CVE-2021-47729
was published
Dec 9, 2025
MailEnable versions prior to 10.54 contain a reflected cross-site scripting (XSS) vulnerability...
Moderate
Unreviewed
CVE-2025-34404
was published
Dec 9, 2025
An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-54353
was published
Dec 9, 2025
MailEnable versions prior to 10.54 contain a reflected cross-site scripting (XSS) vulnerability...
Moderate
Unreviewed
CVE-2025-34407
was published
Dec 9, 2025
MailEnable versions prior to 10.54 contain a reflected cross-site scripting (XSS) vulnerability...
Moderate
Unreviewed
CVE-2025-34409
was published
Dec 9, 2025
MailEnable versions prior to 10.54 contain a reflected cross-site scripting (XSS) vulnerability...
Moderate
Unreviewed
CVE-2025-34406
was published
Dec 9, 2025
MailEnable versions prior to 10.54 contain a reflected cross-site scripting (XSS) vulnerability...
Moderate
Unreviewed
CVE-2025-34408
was published
Dec 9, 2025
MailEnable versions prior to 10.54 contain a reflected cross-site scripting (XSS) vulnerability...
Moderate
Unreviewed
CVE-2025-34402
was published
Dec 9, 2025
MailEnable versions prior to 10.54 contain a reflected cross-site scripting (XSS) vulnerability...
Moderate
Unreviewed
CVE-2025-34403
was published
Dec 9, 2025
MailEnable versions prior to 10.54 contain a reflected cross-site scripting (XSS) vulnerability...
Moderate
Unreviewed
CVE-2025-34401
was published
Dec 9, 2025
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-6923
was published
Dec 9, 2025
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-6924
was published
Dec 9, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-9638
was published
Dec 9, 2025
MailEnable versions prior to 10.54 contain a reflected cross-site scripting (XSS) vulnerability...
Moderate
Unreviewed
CVE-2025-34397
was published
Dec 9, 2025
MailEnable versions prior to 10.54 contain a reflected cross-site scripting (XSS) vulnerability...
Moderate
Unreviewed
CVE-2025-34398
was published
Dec 9, 2025
MailEnable versions prior to 10.54 contain a reflected cross-site scripting (XSS) vulnerability...
Moderate
Unreviewed
CVE-2025-34399
was published
Dec 9, 2025
MailEnable versions prior to 10.54 contain a reflected cross-site scripting (XSS) vulnerability...
Moderate
Unreviewed
CVE-2025-34400
was published
Dec 9, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-67537
was published
Dec 9, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-67536
was published
Dec 9, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-67538
was published
Dec 9, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-67539
was published
Dec 9, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-67543
was published
Dec 9, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-67542
was published
Dec 9, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-67544
was published
Dec 9, 2025
ProTip!
Advisories are also available from the
GraphQL API