GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,360
Erlang
33
GitHub Actions
22
Go
2,127
Maven
5,000+
npm
3,793
NuGet
683
pip
3,471
Pub
12
RubyGems
894
Rust
894
Swift
38
Unreviewed advisories
All unreviewed
5,000+
4,361 advisories
Filter by severity
Cross-site Scripting in ShowDoc
Moderate
CVE-2022-0956
was published
for
showdoc/showdoc
(Composer)
Mar 16, 2022
Cross-site Scripting in ShowDoc
Moderate
CVE-2022-0942
was published
for
showdoc/showdoc
(Composer)
Mar 16, 2022
Unrestricted Upload of File with Dangerous Type in Zenario CMS
Critical
CVE-2021-42171
was published
for
tribalsystems/zenario
(Composer)
Mar 15, 2022
Cross-site Scripting in Pimcore
Moderate
CVE-2022-0894
was published
for
pimcore/pimcore
(Composer)
Mar 16, 2022
Stored Cross-site Scripting in ShowDoc
Moderate
CVE-2022-0945
was published
for
showdoc/showdoc
(Composer)
Mar 16, 2022
Cross-site Scripting in ShowDoc
Moderate
CVE-2022-0950
was published
for
showdoc/showdoc
(Composer)
Mar 16, 2022
Cross-site Scripting in ShowDoc
Moderate
CVE-2022-0940
was published
for
showdoc/showdoc
(Composer)
Mar 15, 2022
Cross-site Scripting in ShowDoc
Moderate
CVE-2022-0941
was published
for
showdoc/showdoc
(Composer)
Mar 15, 2022
Cross-site Scripting in ShowDoc
Moderate
CVE-2022-0966
was published
for
showdoc/showdoc
(Composer)
Mar 16, 2022
Cross-site Scripting in showdoc/showdoc
Critical
CVE-2022-0960
was published
for
showdoc/showdoc
(Composer)
Mar 15, 2022
DQL injection through sorting parameters blocked
Critical
CVE-2022-24752
was published
for
sylius/grid-bundle
(Composer)
Mar 15, 2022
Cross-site Scripting in ShowDoc
Moderate
CVE-2022-0964
was published
for
showdoc/showdoc
(Composer)
Mar 16, 2022
Stored Cross-site Scripting in showdoc
Moderate
CVE-2022-0967
was published
for
showdoc/showdoc
(Composer)
Mar 16, 2022
Cross-site Scripting in Pimcore
Moderate
CVE-2022-0893
was published
for
pimcore/pimcore
(Composer)
Mar 16, 2022
Cross-site Scripting in ShowDoc
Moderate
CVE-2022-0938
was published
for
showdoc/showdoc
(Composer)
Mar 15, 2022
Stored Cross-site Scripting in grav
High
CVE-2022-0970
was published
for
getgrav/grav
(Composer)
Mar 16, 2022
Integer Overflow in microweber
High
CVE-2022-0968
was published
for
microweber/microweber
(Composer)
Mar 16, 2022
Cross-site Scripting in microweber
Moderate
CVE-2022-0929
was published
for
microweber/microweber
(Composer)
Mar 13, 2022
Cross-site Scripting in microweber
Moderate
CVE-2022-0926
was published
for
microweber/microweber
(Composer)
Mar 13, 2022
SQL Injection in WordPress Zero Spam WordPress plugin
Critical
CVE-2022-0254
was published
for
bmarshall511/wordpress_zero_spam
(Composer)
Mar 15, 2022
Improper Restriction of Rendered UI Layers or Frames in Sylius
Moderate
CVE-2022-24733
was published
for
sylius/sylius
(Composer)
Mar 14, 2022
Cross-site Scripting in microweber
High
CVE-2022-0930
was published
for
microweber/microweber
(Composer)
Mar 13, 2022
Insufficient Session Expiration in Sylius
High
CVE-2022-24743
was published
for
sylius/sylius
(Composer)
Mar 14, 2022
Cross-site Scripting in ShowDoc
Moderate
CVE-2022-0946
was published
for
showdoc/showdoc
(Composer)
Mar 15, 2022
Improper sanitize of SVG files during content upload ('Cross-site Scripting') in sylius/sylius
Moderate
CVE-2022-24749
was published
for
Sylius/Sylius
(Composer)
Mar 14, 2022
ProTip!
Advisories are also available from the
GraphQL API