GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,820
Erlang
36
GitHub Actions
32
Go
2,412
Maven
5,000+
npm
4,050
NuGet
723
pip
3,844
Pub
12
RubyGems
933
Rust
1,004
Swift
38
Unreviewed advisories
All unreviewed
5,000+
36,237 advisories
Filter by severity
A vulnerability was found in Portabilis i-Educar 2.10. It has been declared as problematic. This...
Moderate
Unreviewed
CVE-2025-8541
was published
Aug 5, 2025
A vulnerability was found in Portabilis i-Educar 2.10. It has been classified as problematic....
Moderate
Unreviewed
CVE-2025-8540
was published
Aug 5, 2025
A vulnerability was found in Portabilis i-Educar 2.10 and classified as problematic. Affected by...
Moderate
Unreviewed
CVE-2025-8539
was published
Aug 5, 2025
A vulnerability, which was classified as problematic, has been found in cronoh NanoVault up to 1...
Moderate
Unreviewed
CVE-2025-8535
was published
Aug 5, 2025
A vulnerability has been found in Portabilis i-Educar 2.10 and classified as problematic....
Moderate
Unreviewed
CVE-2025-8538
was published
Aug 5, 2025
The vulnerable code can bypass the Captcha check in Liferay Portal 7.4.3.80 through 7.4.3.132,...
Moderate
Unreviewed
CVE-2025-4604
was published
Aug 5, 2025
The fragment preview functionality in Liferay Portal 7.4.3.61 through 7.4.3.132, and Liferay DXP...
Low
Unreviewed
CVE-2025-4599
was published
Aug 5, 2025
A vulnerability, which was classified as problematic, has been found in givanz Vvveb up to 1.0.5....
Moderate
Unreviewed
CVE-2025-8521
was published
Aug 4, 2025
A cross-site scripting (XSS) vulnerability in Intelbras RX1500 v2.2.9 and RX3000 v1.0.11 allows...
High
Unreviewed
CVE-2025-26065
was published
Aug 4, 2025
Dell Unity, version(s) 5.5 and prior, contain(s) an Improper Neutralization of Input During Web...
Moderate
Unreviewed
CVE-2025-36605
was published
Aug 4, 2025
A vulnerability classified as problematic was found in Portabilis i-Diario 1.5.0. This...
Moderate
Unreviewed
CVE-2025-8511
was published
Aug 3, 2025
A vulnerability classified as problematic has been found in Portabilis i-Educar 2.10. This...
Moderate
Unreviewed
CVE-2025-8510
was published
Aug 3, 2025
A vulnerability was found in Portabilis i-Educar 2.9. It has been rated as problematic. Affected...
Moderate
Unreviewed
CVE-2025-8509
was published
Aug 3, 2025
A vulnerability was found in Portabilis i-Educar 2.9. It has been declared as problematic....
Moderate
Unreviewed
CVE-2025-8508
was published
Aug 3, 2025
A vulnerability was found in Portabilis i-Educar 2.9. It has been classified as problematic....
Moderate
Unreviewed
CVE-2025-8507
was published
Aug 3, 2025
Apache Zeppelin: XSS in the Helium module
Moderate
CVE-2024-41177
was published
for
org.apache.zeppelin:zeppelin-web
(Maven)
Aug 3, 2025
A vulnerability was found in 495300897 wx-shop up to de1b66331368695779cfc6e4d11a64caddf8716e and...
Moderate
Unreviewed
CVE-2025-8506
was published
Aug 3, 2025
A vulnerability classified as problematic has been found in code-projects Human Resource...
Moderate
Unreviewed
CVE-2025-8501
was published
Aug 3, 2025
The Ocean Social Sharing plugin for WordPress is vulnerable to Stored Cross-Site Scripting via...
Moderate
Unreviewed
CVE-2025-7500
was published
Aug 2, 2025
The All in One Time Clock Lite – Tracking Employee Time Has Never Been Easier plugin for...
Moderate
Unreviewed
CVE-2025-6832
was published
Aug 2, 2025
The Medical Addon for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting...
Moderate
Unreviewed
CVE-2025-8212
was published
Aug 2, 2025
The Mmm Unity Loader plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ...
Moderate
Unreviewed
CVE-2025-8399
was published
Aug 2, 2025
The Magic Edge – Lite plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ...
Moderate
Unreviewed
CVE-2025-8391
was published
Aug 2, 2025
The Custom Word Cloud plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ...
Moderate
Unreviewed
CVE-2025-8317
was published
Aug 2, 2025
The Image Gallery plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in all...
Moderate
Unreviewed
CVE-2025-8400
was published
Aug 2, 2025
ProTip!
Advisories are also available from the
GraphQL API