Skip to content

GitHub Advisory Database

Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.

4,361 advisories

Loading
Cross-site Scripting in ShowDoc Moderate
CVE-2022-0956 was published for showdoc/showdoc (Composer) Mar 16, 2022
Cross-site Scripting in ShowDoc Moderate
CVE-2022-0942 was published for showdoc/showdoc (Composer) Mar 16, 2022
Unrestricted Upload of File with Dangerous Type in Zenario CMS Critical
CVE-2021-42171 was published for tribalsystems/zenario (Composer) Mar 15, 2022
Cross-site Scripting in Pimcore Moderate
CVE-2022-0894 was published for pimcore/pimcore (Composer) Mar 16, 2022
Stored Cross-site Scripting in ShowDoc Moderate
CVE-2022-0945 was published for showdoc/showdoc (Composer) Mar 16, 2022
Cross-site Scripting in ShowDoc Moderate
CVE-2022-0950 was published for showdoc/showdoc (Composer) Mar 16, 2022
Cross-site Scripting in ShowDoc Moderate
CVE-2022-0940 was published for showdoc/showdoc (Composer) Mar 15, 2022
Cross-site Scripting in ShowDoc Moderate
CVE-2022-0941 was published for showdoc/showdoc (Composer) Mar 15, 2022
Cross-site Scripting in ShowDoc Moderate
CVE-2022-0966 was published for showdoc/showdoc (Composer) Mar 16, 2022
Cross-site Scripting in showdoc/showdoc Critical
CVE-2022-0960 was published for showdoc/showdoc (Composer) Mar 15, 2022
DQL injection through sorting parameters blocked Critical
CVE-2022-24752 was published for sylius/grid-bundle (Composer) Mar 15, 2022
dbalabka
Cross-site Scripting in ShowDoc Moderate
CVE-2022-0964 was published for showdoc/showdoc (Composer) Mar 16, 2022
Stored Cross-site Scripting in showdoc Moderate
CVE-2022-0967 was published for showdoc/showdoc (Composer) Mar 16, 2022
Cross-site Scripting in Pimcore Moderate
CVE-2022-0893 was published for pimcore/pimcore (Composer) Mar 16, 2022
Cross-site Scripting in ShowDoc Moderate
CVE-2022-0938 was published for showdoc/showdoc (Composer) Mar 15, 2022
Stored Cross-site Scripting in grav High
CVE-2022-0970 was published for getgrav/grav (Composer) Mar 16, 2022
Integer Overflow in microweber High
CVE-2022-0968 was published for microweber/microweber (Composer) Mar 16, 2022
Cross-site Scripting in microweber Moderate
CVE-2022-0929 was published for microweber/microweber (Composer) Mar 13, 2022
Cross-site Scripting in microweber Moderate
CVE-2022-0926 was published for microweber/microweber (Composer) Mar 13, 2022
SQL Injection in WordPress Zero Spam WordPress plugin Critical
CVE-2022-0254 was published for bmarshall511/wordpress_zero_spam (Composer) Mar 15, 2022
Improper Restriction of Rendered UI Layers or Frames in Sylius Moderate
CVE-2022-24733 was published for sylius/sylius (Composer) Mar 14, 2022
Cross-site Scripting in microweber High
CVE-2022-0930 was published for microweber/microweber (Composer) Mar 13, 2022
Insufficient Session Expiration in Sylius High
CVE-2022-24743 was published for sylius/sylius (Composer) Mar 14, 2022
Cross-site Scripting in ShowDoc Moderate
CVE-2022-0946 was published for showdoc/showdoc (Composer) Mar 15, 2022
Improper sanitize of SVG files during content upload ('Cross-site Scripting') in sylius/sylius Moderate
CVE-2022-24749 was published for Sylius/Sylius (Composer) Mar 14, 2022
Ocramius
ProTip! Advisories are also available from the GraphQL API