GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
40
GitHub Actions
38
Go
2,844
Maven
5,000+
npm
4,472
NuGet
779
pip
4,231
Pub
12
RubyGems
974
Rust
1,093
Swift
48
Unreviewed advisories
All unreviewed
5,000+
8,469 advisories
Filter by severity
Cross-Site Request Forgery (CSRF) vulnerability in Graham Quick Interest Slider quick-interest...
Moderate
Unreviewed
CVE-2025-64237
was published
Dec 16, 2025
Cross-Site Request Forgery (CSRF) vulnerability in freshchat Freshchat freshchat allows Cross...
Moderate
Unreviewed
CVE-2025-64240
was published
Dec 16, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Rustaurius Ultimate FAQ ultimate-faqs allows...
Moderate
Unreviewed
CVE-2025-67590
was published
Dec 9, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Ays Pro Quiz Maker quiz-maker allows Cross...
Moderate
Unreviewed
CVE-2025-67595
was published
Dec 9, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Strategy11 Team Business Directory business...
Moderate
Unreviewed
CVE-2025-67596
was published
Dec 9, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Stiofan UsersWP userswp allows Cross Site...
Moderate
Unreviewed
CVE-2025-67593
was published
Dec 9, 2025
Cross-Site Request Forgery (CSRF) vulnerability in loopus WP Attractive Donations System - Easy...
Moderate
Unreviewed
CVE-2025-58999
was published
Dec 16, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Jacques Malgrange Rencontre rencontre allows...
High
Unreviewed
CVE-2025-67534
was published
Dec 9, 2025
Cross-Site Request Forgery (CSRF) vulnerability in vcita Online Booking & Scheduling Calendar for...
High
Unreviewed
CVE-2025-67472
was published
Dec 9, 2025
Cross-Site Request Forgery (CSRF) vulnerability in QuantumCloud Simple Link Directory simple-link...
High
Unreviewed
CVE-2025-67465
was published
Dec 9, 2025
Cross-Site Request Forgery (CSRF) vulnerability in StellarWP GiveWP give allows Cross Site...
Moderate
Unreviewed
CVE-2025-67467
was published
Dec 9, 2025
Cross-Site Request Forgery (CSRF) vulnerability in hogash Kallyas kallyas.This issue affects...
Moderate
Unreviewed
CVE-2025-63060
was published
Dec 9, 2025
Cross-Site Request Forgery (CSRF) vulnerability in ThimPress Thim Core allows Cross Site Request...
Moderate
Unreviewed
CVE-2025-53344
was published
Jan 5, 2026
Cross-Site Request Forgery (CSRF) vulnerability in Dimitri Grassi Salon booking system salon...
High
Unreviewed
CVE-2025-66531
was published
Dec 9, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Saad Iqbal Quick Contact Form quick-contact...
High
Unreviewed
CVE-2025-67471
was published
Dec 9, 2025
Cross-Site Request Forgery (CSRF) vulnerability in codeworkweb CWW Companion cww-companion allows...
High
Unreviewed
CVE-2025-67473
was published
Dec 9, 2025
Cross-Site Request Forgery (CSRF) vulnerability in kubiq PDF Thumbnail Generator pdf-thumbnail...
High
Unreviewed
CVE-2025-67469
was published
Dec 9, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Alex Prokopenko / JustCoded Just TinyMCE...
Moderate
Unreviewed
CVE-2025-62871
was published
Dec 9, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Flashyapp WP Flashy Marketing Automation wp...
Moderate
Unreviewed
CVE-2025-62873
was published
Dec 9, 2025
Cross-Site Request Forgery (CSRF) vulnerability in apasionados DoFollow Case by Case dofollow...
Moderate
Unreviewed
CVE-2025-62102
was published
Dec 9, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Themefy Bloggie allows Reflected XSS.This...
High
Unreviewed
CVE-2025-31054
was published
Dec 31, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Serhii Pasyuk Gmedia Photo Gallery allows...
Moderate
Unreviewed
CVE-2025-63014
was published
Dec 31, 2025
Cross-Site Request Forgery (CSRF) vulnerability in photoboxone SMTP Mail smtp-mail allows Cross...
Moderate
Unreviewed
CVE-2025-62762
was published
Dec 9, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Eugen Bobrowski Robots.Txt rewrite allows...
Moderate
Unreviewed
CVE-2025-62148
was published
Dec 31, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Jayce53 EasyIndex easyindex allows Cross Site...
Moderate
Unreviewed
CVE-2025-62117
was published
Dec 31, 2025
ProTip!
Advisories are also available from the
GraphQL API