GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,856
Erlang
36
GitHub Actions
36
Go
2,488
Maven
5,000+
npm
4,104
NuGet
735
pip
3,923
Pub
12
RubyGems
945
Rust
1,017
Swift
39
Unreviewed advisories
All unreviewed
5,000+
136,770 advisories
Filter by severity
Improper validation of an array index in the AND power Management Firmware could allow a...
Moderate
Unreviewed
CVE-2024-21970
was published
Sep 6, 2025
Improper input validation in AMD Power Management Firmware (PMFW) could allow a privileged...
Moderate
Unreviewed
CVE-2024-36346
was published
Sep 6, 2025
Improper restriction of operations in the IOMMU could allow a malicious hypervisor to access...
Moderate
Unreviewed
CVE-2023-31351
was published
Sep 6, 2025
Insufficient parameter validation while allocating process space in the Trusted OS (TOS) may...
Moderate
Unreviewed
CVE-2021-26377
was published
Sep 6, 2025
A vulnerability has been found in itsourcecode Online Discussion Forum 1.0. This affects an...
Moderate
Unreviewed
CVE-2025-10033
was published
Sep 6, 2025
A vulnerability was detected in Campcodes Grocery Sales and Inventory System 1.0. The affected...
Moderate
Unreviewed
CVE-2025-10032
was published
Sep 6, 2025
A security vulnerability has been detected in Campcodes Grocery Sales and Inventory System 1.0....
Moderate
Unreviewed
CVE-2025-10031
was published
Sep 6, 2025
A weakness has been identified in Campcodes Grocery Sales and Inventory System 1.0. This issue...
Moderate
Unreviewed
CVE-2025-10030
was published
Sep 6, 2025
The ELEX WooCommerce Google Shopping (Google Product Feed) plugin for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2025-10046
was published
Sep 6, 2025
A security flaw has been discovered in itsourcecode POS Point of Sale System 1.0. This...
Moderate
Unreviewed
CVE-2025-10029
was published
Sep 6, 2025
A vulnerability was identified in itsourcecode POS Point of Sale System 1.0. This affects an...
Moderate
Unreviewed
CVE-2025-10028
was published
Sep 6, 2025
The SKT Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting...
Moderate
Unreviewed
CVE-2025-8564
was published
Sep 6, 2025
The StreamWeasels Kick Integration plugin for WordPress is vulnerable to Stored Cross-Site...
Moderate
Unreviewed
CVE-2025-9442
was published
Sep 6, 2025
The aThemes Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site...
Moderate
Unreviewed
CVE-2025-8149
was published
Sep 6, 2025
The Recent Posts Widget Extended plugin for WordPress is vulnerable to Stored Cross-Site...
Moderate
Unreviewed
CVE-2025-6757
was published
Sep 6, 2025
The Smart Table Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
Moderate
Unreviewed
CVE-2025-9126
was published
Sep 6, 2025
The Cloud SAML SSO plugin for WordPress is vulnerable to Identity Provider Deletion due to a...
Moderate
Unreviewed
CVE-2025-7045
was published
Sep 6, 2025
The Admin Menu Editor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ...
Moderate
Unreviewed
CVE-2025-9493
was published
Sep 6, 2025
The Content Views plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
Moderate
Unreviewed
CVE-2025-8722
was published
Sep 6, 2025
The REHub - Price Comparison, Multi Vendor Marketplace Wordpress Theme theme for WordPress is...
Moderate
Unreviewed
CVE-2025-7368
was published
Sep 6, 2025
The Html Social share buttons plugin for WordPress is vulnerable to Stored Cross-Site Scripting...
Moderate
Unreviewed
CVE-2025-9849
was published
Sep 6, 2025
The UsersWP – Front-end login form, User Registration, User Profile & Members Directory plugin...
Moderate
Unreviewed
CVE-2025-10003
was published
Sep 6, 2025
The User Registration & Membership plugin for WordPress is vulnerable to SQL Injection via the 's...
Moderate
Unreviewed
CVE-2025-9085
was published
Sep 6, 2025
The LA-Studio Element Kit for Elementor plugin for WordPress is vulnerable to Stored Cross-Site...
Moderate
Unreviewed
CVE-2025-8360
was published
Sep 6, 2025
The Optio Dentistry plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
Moderate
Unreviewed
CVE-2025-9853
was published
Sep 6, 2025
ProTip!
Advisories are also available from the
GraphQL API