GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,866
Erlang
36
GitHub Actions
36
Go
2,491
Maven
5,000+
npm
4,109
NuGet
735
pip
3,933
Pub
12
RubyGems
945
Rust
1,018
Swift
39
Unreviewed advisories
All unreviewed
5,000+
119 advisories
Filter by severity
pgadmin4 is affected by a Cross-Origin Opener Policy (COOP) vulnerability
High
CVE-2025-9636
was published
for
pgadmin4
(pip)
Sep 5, 2025
Origin Validation Error vulnerability in Akinsoft LimonDesk allows Forceful Browsing.This issue...
High
Unreviewed
CVE-2024-13068
was published
Sep 3, 2025
An issue was discovered in Shopizer 3.2.7. The server's CORS implementation reflects the client...
High
Unreviewed
CVE-2025-51605
was published
Aug 22, 2025
'Same-origin policy bypass in the Graphics: Canvas2D component.' This vulnerability affects...
High
Unreviewed
CVE-2025-9180
was published
Aug 19, 2025
GPT Academy version 3.83 in the binary-husky/gpt_academic repository is vulnerable to Cross-Site...
High
Unreviewed
CVE-2024-10956
was published
Mar 20, 2025
Whale browser before 4.32.315.22 allow an attacker to bypass the Same-Origin Policy in a dual-tab...
High
Unreviewed
CVE-2025-53600
was published
Jul 4, 2025
An origin validation vulnerability in the Trend Micro Apex One security agent could allow a local...
High
Unreviewed
CVE-2023-47193
was published
Jan 23, 2024
An origin validation vulnerability in the Trend Micro Apex One security agent could allow a local...
High
Unreviewed
CVE-2023-47195
was published
Jan 23, 2024
An origin validation vulnerability in the Trend Micro Apex One security agent could allow a local...
High
Unreviewed
CVE-2023-47197
was published
Jan 23, 2024
An origin validation vulnerability in the Trend Micro Apex One security agent could allow a local...
High
Unreviewed
CVE-2023-47196
was published
Jan 23, 2024
An origin validation vulnerability in the Trend Micro Apex One security agent could allow a local...
High
Unreviewed
CVE-2023-47198
was published
Jan 23, 2024
An improper verification of a loaded library in Zscaler Client Connector on Mac < 4.2.0.241 may...
High
Unreviewed
CVE-2024-31127
was published
Jun 4, 2025
An issue was discovered in Zoho ManageEngine Network Configuration Manager 12.6.165. The...
High
Unreviewed
CVE-2023-29505
was published
Aug 4, 2023
An origin validation vulnerability in the Trend Micro Apex One security agent could allow a local...
High
Unreviewed
CVE-2023-47199
was published
Jan 23, 2024
An origin validation vulnerability in the Trend Micro Apex One security agent could allow a local...
High
Unreviewed
CVE-2023-47194
was published
Jan 23, 2024
A plug-in manager origin validation vulnerability in the Trend Micro Apex One security agent...
High
Unreviewed
CVE-2023-47200
was published
Jan 23, 2024
A logic issue was addressed with improved state management. This issue is fixed in macOS Monterey...
High
Unreviewed
CVE-2022-22637
was published
Sep 25, 2022
SEL-5037 Grid Configurator contains an overly permissive Cross Origin Resource Sharing (CORS)...
High
Unreviewed
CVE-2025-46737
was published
May 12, 2025
Phoenix before 1.6.14 mishandles check_origin wildcarding
High
CVE-2022-42975
was published
for
phoenix
(Erlang)
Oct 17, 2022
"This issue is limited to motherboards and does not affect laptops, desktop computers, or other...
High
Unreviewed
CVE-2025-3462
was published
May 9, 2025
A same-origin policy violation could have allowed the theft of cross-origin URL entries, leaking...
High
Unreviewed
CVE-2022-42927
was published
Dec 22, 2022
Plex media server 1.21 and before is vulnerable to ddos reflection attack via plex service.
High
Unreviewed
CVE-2021-33959
was published
Jan 18, 2023
Ollama DNS rebinding vulnerability
High
CVE-2024-28224
was published
for
github.com/ollama/ollama
(Go)
Apr 8, 2024
An code execution vulnerability exists in the Xiaomi smarthome application product. The...
High
Unreviewed
CVE-2024-45352
was published
Mar 27, 2025
Prefect CORS (Cross-Origin Resource Sharing) misconfiguration
High
CVE-2024-8183
was published
for
prefect
(pip)
Mar 20, 2025
ProTip!
Advisories are also available from the
GraphQL API