GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,300
Erlang
31
GitHub Actions
21
Go
2,069
Maven
5,000+
npm
3,744
NuGet
668
pip
3,429
Pub
12
RubyGems
892
Rust
880
Swift
36
Unreviewed advisories
All unreviewed
5,000+
1,374 advisories
Filter by severity
Cross-site scripting (XSS) vulnerability in blog/edit.php in Moodle 1.6.x before 1.6.7 and 1.7.x...
Low
Unreviewed
CVE-2008-3326
was published
May 1, 2022
Multiple cross-site scripting (XSS) vulnerabilities in BilboBlog 0.2.1 allow remote authenticated...
Low
Unreviewed
CVE-2008-3301
was published
May 1, 2022
Cross-site scripting (XSS) vulnerability in the Tinytax module (aka Tinytax taxonomy block) 5.x...
Low
Unreviewed
CVE-2008-3097
was published
May 1, 2022
Cross-site scripting (XSS) vulnerability in the Organic Groups (OG) module 5.x before 5.x-7.3 and...
Low
Unreviewed
CVE-2008-3095
was published
May 1, 2022
Cross-site scripting (XSS) vulnerability in the Taxonomy Autotagger module 5.x before 5.x-1.8 for...
Low
Unreviewed
CVE-2008-3091
was published
May 1, 2022
Cross-site scripting (XSS) vulnerability in phpMyAdmin before 2.11.7, when register_globals is...
Low
Unreviewed
CVE-2008-2960
was published
May 1, 2022
Cross-site scripting (XSS) vulnerability in the TrailScout module 5.x before 5.x-1.4 for Drupal...
Low
Unreviewed
CVE-2008-2849
was published
May 1, 2022
Multiple cross-site scripting (XSS) vulnerabilities in the delegated spam management feature in...
Low
Unreviewed
CVE-2008-2831
was published
May 1, 2022
Multiple cross-site scripting (XSS) vulnerabilities in Xigla Absolute Banner Manager XE 2.0 allow...
Low
Unreviewed
CVE-2008-2761
was published
May 1, 2022
Cross-site scripting (XSS) vulnerability in admin/search.asp in Xigla Absolute Live Support XE 5...
Low
Unreviewed
CVE-2008-2764
was published
May 1, 2022
Cross-site scripting (XSS) vulnerability in admin/search.asp in Xigla Poll Manager XE allows...
Low
Unreviewed
CVE-2008-2768
was published
May 1, 2022
Multiple cross-site scripting (XSS) vulnerabilities in Xigla Absolute News Manager XE 3.2 allow...
Low
Unreviewed
CVE-2008-2758
was published
May 1, 2022
Multiple cross-site scripting (XSS) vulnerabilities in EditeurScripts EsContacts 1.0 allow remote...
Low
Unreviewed
CVE-2008-2037
was published
May 1, 2022
Cross-site scripting (XSS) vulnerability in the Ubercart 5.x before 5.x-1.0 rc3 module for Drupal...
Low
Unreviewed
CVE-2008-1978
was published
May 1, 2022
Multiple cross-site scripting (XSS) vulnerabilities in Cezanne 6.5.1 and 7 allow remote attackers...
Low
Unreviewed
CVE-2008-1969
was published
May 1, 2022
Cross-site scripting (XSS) vulnerability in the profile update feature in Akiva WebBoard 8.0...
Low
Unreviewed
CVE-2008-1941
was published
May 1, 2022
Cross-site scripting (XSS) vulnerability in mindex.do in ManageEngine Firewall Analyzer 4.0.3...
Low
Unreviewed
CVE-2008-1775
was published
May 1, 2022
Cross-site scripting (XSS) vulnerability in function/sideblock.php in Affiliate Market (affmarket...
Low
Unreviewed
CVE-2008-1176
was published
May 1, 2022
Cross-site scripting (XSS) vulnerability in Drupal 6.0 allows remote authenticated users to...
Low
Unreviewed
CVE-2008-1131
was published
May 1, 2022
Multiple cross-site scripting (XSS) vulnerabilities in index.cgi in Barracuda Spam Firewall (BSF)...
Low
Unreviewed
CVE-2008-0971
was published
May 1, 2022
Cross-site scripting (XSS) vulnerability in pm/language/spanish/preferences.php in PMachine Pro 2...
Low
Unreviewed
CVE-2008-0334
was published
May 1, 2022
Cross-site scripting (XSS) vulnerability in Drupal 4.7.x and 5.x, when certain .htaccess...
Low
Unreviewed
CVE-2008-0274
was published
May 1, 2022
Cross-site scripting (XSS) vulnerability in service/impl/UserLocalServiceImpl.java in Liferay...
Low
Unreviewed
CVE-2008-0179
was published
May 1, 2022
Multiple cross-site scripting (XSS) vulnerabilities in F5 FirePass 4100 SSL VPN 5.4.1 through 5.5...
Low
Unreviewed
CVE-2007-6704
was published
May 1, 2022
Multiple cross-site scripting (XSS) vulnerabilities in WebCalendar 1.1.6 allow remote attackers...
Low
Unreviewed
CVE-2007-6696
was published
May 1, 2022
ProTip!
Advisories are also available from the
GraphQL API