GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,324
Erlang
31
GitHub Actions
21
Go
2,087
Maven
5,000+
npm
3,751
NuGet
674
pip
3,437
Pub
12
RubyGems
892
Rust
881
Swift
37
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
24,960 advisories
Filter by severity
A stored cross-site scripting (XSS) vulnerability in Garage Management System v1.0 allows...
Moderate
Unreviewed
CVE-2022-41358
was published
Oct 20, 2022
Cross Site Scripting (XSS) vulnerability in New equipment page in EasyVista Service Manager 2018...
Moderate
Unreviewed
CVE-2021-33231
was published
Oct 20, 2022
A stored cross-site scripting (XSS) vulnerability in the Configuration/Holidays module of...
Moderate
Unreviewed
CVE-2022-43185
was published
Oct 19, 2022
OpenCATS v0.9.6 was discovered to contain a reflected cross-site scripting (XSS) vulnerability...
Moderate
Unreviewed
CVE-2022-43016
was published
Oct 19, 2022
OpenCATS v0.9.6 was discovered to contain a reflected cross-site scripting (XSS) vulnerability...
Moderate
Unreviewed
CVE-2022-43015
was published
Oct 19, 2022
OpenCATS v0.9.6 was discovered to contain a reflected cross-site scripting (XSS) vulnerability...
Moderate
Unreviewed
CVE-2022-43014
was published
Oct 19, 2022
OpenCATS v0.9.6 was discovered to contain a reflected cross-site scripting (XSS) vulnerability...
Moderate
Unreviewed
CVE-2022-43017
was published
Oct 19, 2022
OpenCATS v0.9.6 was discovered to contain a reflected cross-site scripting (XSS) vulnerability...
Moderate
Unreviewed
CVE-2022-43018
was published
Oct 19, 2022
A Cross-site scripting (XSS) vulnerability in the Role module's edit role assignees page in...
Moderate
Unreviewed
CVE-2022-42114
was published
Oct 19, 2022
A Cross-site scripting (XSS) vulnerability in the Portal Search module's Sort widget in Liferay...
Moderate
Unreviewed
CVE-2022-42112
was published
Oct 19, 2022
A Cross-site scripting (XSS) vulnerability in Document Library module in Liferay Portal 7.4.3.30...
Moderate
Unreviewed
CVE-2022-42113
was published
Oct 19, 2022
Cross-site scripting (XSS) vulnerability in the Object module's edit object details page in...
Moderate
Unreviewed
CVE-2022-42115
was published
Oct 19, 2022
A Cross-site scripting (XSS) vulnerability in the Frontend Taglib module in Liferay Portal 7.3.2...
Moderate
Unreviewed
CVE-2022-42117
was published
Oct 19, 2022
A Cross-site scripting (XSS) vulnerability in the Frontend Editor module's integration with...
Moderate
Unreviewed
CVE-2022-42116
was published
Oct 19, 2022
Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component:...
Moderate
Unreviewed
CVE-2022-21639
was published
Oct 19, 2022
Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component:...
Moderate
Unreviewed
CVE-2022-21631
was published
Oct 19, 2022
Vulnerability in the Oracle Services for Microsoft Transaction Server component of Oracle...
Moderate
Unreviewed
CVE-2022-21606
was published
Oct 19, 2022
A Cross-site scripting (XSS) vulnerability in the Document and Media module - file upload...
Moderate
Unreviewed
CVE-2022-38901
was published
Oct 19, 2022
TP-Link TL-WR841N 8.0 4.17.16 Build 120201 Rel.54750n is vulnerable to Cross Site Scripting (XSS).
Moderate
Unreviewed
CVE-2022-42202
was published
Oct 18, 2022
A vulnerability was found in SourceCodester Simple Cold Storage Management System 1.0. It has...
Moderate
Unreviewed
CVE-2022-3587
was published
Oct 18, 2022
kkFileView 4.0 is vulnerable to Cross Site Scripting (XSS) via controller\ Filecontroller.java.
Moderate
Unreviewed
CVE-2022-42147
was published
Oct 18, 2022
xzs v3.8.0 was discovered to contain a cross-site scripting (XSS) vulnerability in the component ...
Moderate
Unreviewed
CVE-2022-41431
was published
Oct 18, 2022
A Cross-site Scripting (XSS) vulnerability in the J-Web component of Juniper Networks Junos OS...
Moderate
Unreviewed
CVE-2022-22242
was published
Oct 18, 2022
A vulnerability, which was classified as problematic, has been found in SourceCodester Cashier...
Moderate
Unreviewed
CVE-2022-3580
was published
Oct 18, 2022
A reflected cross-site scripting (XSS) vulnerability in ePO prior to 5.10 Update 14 allows a...
Moderate
Unreviewed
CVE-2022-3339
was published
Oct 18, 2022
ProTip!
Advisories are also available from the
GraphQL API