GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,248
Erlang
31
GitHub Actions
21
Go
2,016
Maven
5,000+
npm
3,721
NuGet
662
pip
3,400
Pub
11
RubyGems
890
Rust
852
Swift
36
Unreviewed advisories
All unreviewed
5,000+
29,672 advisories
Filter by severity
The Youzify WordPress plugin before 1.2.2 does not validate and escape some of its shortcode...
Moderate
Unreviewed
CVE-2023-0059
was published
Feb 21, 2023
The Real Media Library WordPress plugin before 4.18.29 does not sanitise and escape the created...
Moderate
Unreviewed
CVE-2023-0285
was published
Feb 21, 2023
The Loan Comparison WordPress plugin before 1.5.3 does not validate and escape some of its...
Moderate
Unreviewed
CVE-2023-0366
was published
Feb 21, 2023
The Post Views Count WordPress plugin through 3.0.2 does not validate and escape some of its...
Moderate
Unreviewed
CVE-2022-4761
was published
Feb 21, 2023
The Video Sidebar Widgets WordPress plugin through 6.1 does not validate and escape some of its...
Moderate
Unreviewed
CVE-2022-4785
was published
Feb 21, 2023
The WP Responsive Testimonials Slider And Widget WordPress plugin through 1.5 does not validate...
Moderate
Unreviewed
CVE-2022-4750
was published
Feb 21, 2023
The Video.js WordPress plugin through 4.5.0 does not validate and escape some of its shortcode...
Moderate
Unreviewed
CVE-2022-4786
was published
Feb 21, 2023
The WP Dark Mode WordPress plugin before 4.0.0 does not validate and escape one of its shortcode...
Moderate
Unreviewed
CVE-2022-4714
was published
Feb 21, 2023
The Spectra WordPress plugin before 1.15.0 does not sanitize user input as it reaches its style...
Moderate
Unreviewed
CVE-2020-36656
was published
Feb 21, 2023
The Shortcode for Font Awesome WordPress plugin before 1.4.1 does not validate and escape some of...
Moderate
Unreviewed
CVE-2023-0419
was published
Feb 21, 2023
The EmbedStories WordPress plugin before 0.7.5 does not validate and escape some of its shortcode...
Moderate
Unreviewed
CVE-2023-0372
was published
Feb 21, 2023
The Easy Social Box / Page Plugin WordPress plugin through 4.1.2 does not validate and escape...
Moderate
Unreviewed
CVE-2022-4754
was published
Feb 21, 2023
The Simple File Downloader WordPress plugin through 1.0.4 does not validate and escape some of...
Moderate
Unreviewed
CVE-2022-4764
was published
Feb 21, 2023
The Bootstrap Shortcodes WordPress plugin through 3.4.0 does not validate and escape some of its...
Moderate
Unreviewed
CVE-2022-4777
was published
Feb 21, 2023
The Page Builder: Live Composer WordPress plugin through 1.5.22 does not validate and escape some...
Moderate
Unreviewed
CVE-2022-4669
was published
Feb 21, 2023
The Markup (JSON-LD) structured in schema.org WordPress plugin through 4.8.1 does not validate...
Moderate
Unreviewed
CVE-2022-4666
was published
Feb 21, 2023
The Watu Quiz WordPress plugin before 3.3.8.2 does not sanitise and escape a parameter before...
Moderate
Unreviewed
CVE-2023-0428
was published
Feb 21, 2023
The GS Portfolio for Envato WordPress plugin before 1.4.0 does not validate and escape some of...
Moderate
Unreviewed
CVE-2023-0559
was published
Feb 21, 2023
The GS Books Showcase WordPress plugin before 1.3.1 does not validate and escape some of its...
Moderate
Unreviewed
CVE-2023-0541
was published
Feb 21, 2023
The GS Filterable Portfolio WordPress plugin before 1.6.1 does not validate and escape some of...
Moderate
Unreviewed
CVE-2023-0540
was published
Feb 21, 2023
The GS Products Slider for WooCommerce WordPress plugin before 1.5.9 does not validate and escape...
Moderate
Unreviewed
CVE-2023-0492
was published
Feb 21, 2023
The Loan Comparison WordPress plugin before 1.5.3 does not validate and escape some of its query...
Moderate
Unreviewed
CVE-2023-0442
was published
Feb 21, 2023
A vulnerability was found in cention-chatserver 3.8.0-rc1. It has been declared as problematic....
Moderate
Unreviewed
CVE-2014-125089
was published
Feb 21, 2023
JD-GUI 1.6.6 allows XSS via util/net/InterProcessCommunicationUtil.java.
Moderate
Unreviewed
CVE-2023-26235
was published
Feb 21, 2023
@claviska/jquery-minicolors vulnerable to Cross-site Scripting
Moderate
CVE-2021-32850
was published
for
@claviska/jquery-minicolors
(npm)
Feb 21, 2023
ProTip!
Advisories are also available from the
GraphQL API