GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,266
Erlang
31
GitHub Actions
21
Go
2,041
Maven
5,000+
npm
3,733
NuGet
662
pip
3,414
Pub
12
RubyGems
891
Rust
866
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
2,494 advisories
Filter by severity
The User Role Editor plugin for WordPress is vulnerable to Cross-Site Request Forgery in all...
High
Unreviewed
CVE-2024-12293
was published
Dec 17, 2024
Cross-Site Request Forgery (CSRF) vulnerability in Tom Royal Stop Registration Spam allows Stored...
High
Unreviewed
CVE-2024-56017
was published
Dec 17, 2024
A Cross-Site Request Forgery (CSRF) in Sunbird DCIM dcTrack v9.1.2 allows authenticated attackers...
High
Unreviewed
CVE-2024-37774
was published
Dec 17, 2024
Cross-Site Request Forgery (CSRF) vulnerability in John Godley Tidy Up allows Reflected XSS.This...
High
Unreviewed
CVE-2024-56015
was published
Dec 16, 2024
Cross-Site Request Forgery (CSRF) vulnerability in Phoetry phZoom allows Stored XSS.This issue...
High
Unreviewed
CVE-2024-54434
was published
Dec 16, 2024
Cross-Site Request Forgery (CSRF) vulnerability in Alok Tiwari Amazon Product Price allows Stored...
High
Unreviewed
CVE-2024-54439
was published
Dec 16, 2024
Cross-Site Request Forgery (CSRF) vulnerability in Jettochkin Jet Footer Code allows Stored XSS...
High
Unreviewed
CVE-2024-54436
was published
Dec 16, 2024
Cross-Site Request Forgery (CSRF) vulnerability in Thomas Hoefter Onlywire Multi Autosubmitter...
High
Unreviewed
CVE-2024-54435
was published
Dec 16, 2024
Cross-Site Request Forgery (CSRF) vulnerability in blueskyy WP-Ban-User allows Stored XSS.This...
High
Unreviewed
CVE-2024-54440
was published
Dec 16, 2024
Cross-Site Request Forgery (CSRF) vulnerability in GAxx Gaxx Keywords allows Stored XSS.This...
High
Unreviewed
CVE-2024-54438
was published
Dec 16, 2024
Cross-Site Request Forgery (CSRF) vulnerability in Aleksander Novikov Metrika allows Cross Site...
High
Unreviewed
CVE-2024-54420
was published
Dec 16, 2024
Cross-Site Request Forgery (CSRF) vulnerability in onigetoc Add image to Post allows Stored XSS...
High
Unreviewed
CVE-2024-54428
was published
Dec 16, 2024
Cross-Site Request Forgery (CSRF) vulnerability in Shambhu Prasad Patnaik WP Flipkart Importer...
High
Unreviewed
CVE-2024-54432
was published
Dec 16, 2024
Cross-Site Request Forgery (CSRF) vulnerability in Simple Booking Simple Booking Widget allows...
High
Unreviewed
CVE-2024-54433
was published
Dec 16, 2024
Cross-Site Request Forgery (CSRF) vulnerability in Sheikh Heera WP Fiddle allows Stored XSS.This...
High
Unreviewed
CVE-2024-54393
was published
Dec 16, 2024
Cross-Site Request Forgery (CSRF) vulnerability in Antonio Gocaj Go Animate allows Stored XSS...
High
Unreviewed
CVE-2024-54397
was published
Dec 16, 2024
Cross-Site Request Forgery (CSRF) vulnerability in Matt Walters WordPress Filter allows Stored...
High
Unreviewed
CVE-2024-54391
was published
Dec 16, 2024
Cross-Site Request Forgery (CSRF) vulnerability in Midoks WP微信机器人 allows Stored XSS.This issue...
High
Unreviewed
CVE-2024-54392
was published
Dec 16, 2024
Cross-Site Request Forgery (CSRF) vulnerability in Web solution soft Mandrill WP allows Stored...
High
Unreviewed
CVE-2024-54394
was published
Dec 16, 2024
Cross-Site Request Forgery (CSRF) vulnerability in Project Caruso Flaming Forms allows Stored XSS...
High
Unreviewed
CVE-2024-54398
was published
Dec 16, 2024
Cross-Site Request Forgery (CSRF) vulnerability in Turcu Ciprian Advanced Fancybox allows Stored...
High
Unreviewed
CVE-2024-54401
was published
Dec 16, 2024
Cross-Site Request Forgery (CSRF) vulnerability in hosting.io, campaigns.io WP Controller allows...
High
Unreviewed
CVE-2024-54411
was published
Dec 16, 2024
Cross-Site Request Forgery (CSRF) vulnerability in Nazmul Ahsan MDC Comment Toolbar allows Stored...
High
Unreviewed
CVE-2024-54404
was published
Dec 16, 2024
Cross-Site Request Forgery (CSRF) vulnerability in MELONIQ.NET AppMaps allows Stored XSS.This...
High
Unreviewed
CVE-2024-54400
was published
Dec 16, 2024
Cross-Site Request Forgery (CSRF) vulnerability in CRUDLab CRUDLab Google Plus Button allows...
High
Unreviewed
CVE-2024-54399
was published
Dec 16, 2024
ProTip!
Advisories are also available from the
GraphQL API