GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
70
GitHub Actions
52
Go
3,904
Maven
5,000+
npm
5,000+
NuGet
967
pip
5,000+
Pub
13
RubyGems
1,062
Rust
1,374
Swift
54
Unreviewed advisories
All unreviewed
5,000+
159,159 advisories
Filter by severity
WebMO Job Manager 20.0 contains a cross-site scripting vulnerability in search parameters that...
Moderate
Unreviewed
CVE-2021-47920
was published
Feb 1, 2026
Stripe Green Downloads Wordpress Plugin 2.03 contains a persistent cross-site scripting...
Moderate
Unreviewed
CVE-2022-50797
was published
Feb 1, 2026
WiFi File Transfer 1.0.8 contains a persistent cross-site scripting vulnerability that allows...
Moderate
Unreviewed
CVE-2022-50951
was published
Feb 1, 2026
BootCommerce 3.2.1 contains persistent input validation vulnerabilities that allow remote...
Moderate
Unreviewed
CVE-2022-50941
was published
Feb 1, 2026
QWE DL 2.0.1 mobile web application contains a persistent input validation vulnerability allowing...
Moderate
Unreviewed
CVE-2023-54343
was published
Feb 1, 2026
Knap Advanced PHP Login 3.1.3 contains a persistent cross-site scripting vulnerability that...
Moderate
Unreviewed
CVE-2022-50940
was published
Feb 1, 2026
Banco Guayaquil 8.0.0 mobile iOS application contains a persistent cross-site scripting...
Moderate
Unreviewed
CVE-2022-50952
was published
Feb 1, 2026
Inciga Web 2.8.2 contains a client-side cross-site scripting vulnerability that allows remote...
Moderate
Unreviewed
CVE-2022-50942
was published
Feb 1, 2026
Simple CMS 2.1 contains a non-persistent cross-site scripting vulnerability in the preview.php...
Moderate
Unreviewed
CVE-2021-47919
was published
Feb 1, 2026
Ultimate POS 4.4 contains a persistent cross-site scripting vulnerability in the product name...
Moderate
Unreviewed
CVE-2021-47908
was published
Feb 1, 2026
Easy Cart Shopping Cart 2021 contains a non-persistent cross-site scripting vulnerability in the...
Moderate
Unreviewed
CVE-2021-47856
was published
Feb 1, 2026
Multiple payment terminal versions contain non-persistent cross-site scripting vulnerabilities in...
Moderate
Unreviewed
CVE-2021-47885
was published
Feb 1, 2026
Affiliate Pro 1.7 contains multiple reflected cross-site scripting vulnerabilities in the index...
Moderate
Unreviewed
CVE-2021-47911
was published
Feb 1, 2026
PHP Melody version 3.0 contains a persistent cross-site scripting vulnerability in the edit-video...
Moderate
Unreviewed
CVE-2021-47914
was published
Feb 1, 2026
PHP Melody version 3.0 contains multiple non-persistent cross-site scripting vulnerabilities in...
Moderate
Unreviewed
CVE-2021-47912
was published
Feb 1, 2026
PHP Melody 3.0 contains a persistent cross-site scripting vulnerability in the video editor that...
Moderate
Unreviewed
CVE-2021-47913
was published
Feb 1, 2026
Simple CMS 2.1 contains a persistent cross-site scripting vulnerability in user input parameters...
Moderate
Unreviewed
CVE-2021-47917
was published
Feb 1, 2026
The Popup Box plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up...
Moderate
Unreviewed
CVE-2026-1165
was published
Jan 31, 2026
In the Linux kernel, the following vulnerability has been resolved:
dmaengine: qcom: gpi: Fix...
Moderate
Unreviewed
CVE-2026-23026
was published
Jan 31, 2026
In the Linux kernel, the following vulnerability has been resolved:
net: 3com: 3c59x: fix...
Moderate
Unreviewed
CVE-2026-23020
was published
Jan 31, 2026
In the Linux kernel, the following vulnerability has been resolved:
net: marvell: prestera: fix...
Moderate
Unreviewed
CVE-2026-23019
was published
Jan 31, 2026
In the Linux kernel, the following vulnerability has been resolved:
net: usb: pegasus: fix...
Moderate
Unreviewed
CVE-2026-23021
was published
Jan 31, 2026
In the Linux kernel, the following vulnerability has been resolved:
idpf: fix memory leak in...
Moderate
Unreviewed
CVE-2026-23023
was published
Jan 31, 2026
In the Linux kernel, the following vulnerability has been resolved:
idpf: fix error handling in...
Moderate
Unreviewed
CVE-2026-23017
was published
Jan 31, 2026
In the Linux kernel, the following vulnerability has been resolved:
btrfs: release path before...
Moderate
Unreviewed
CVE-2026-23018
was published
Jan 31, 2026
ProTip!
Advisories are also available from the
GraphQL API