GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,670
Maven
5,000+
npm
4,296
NuGet
760
pip
4,075
Pub
12
RubyGems
957
Rust
1,058
Swift
45
Unreviewed advisories
All unreviewed
5,000+
302,627 advisories
Filter by severity
The Booking Calendar Contact Form plugin for WordPress is vulnerable to Missing Authorization in...
Moderate
Unreviewed
CVE-2025-13318
was published
Nov 22, 2025
The Appointment Booking Calendar plugin for WordPress is vulnerable to Missing Authorization in...
Moderate
Unreviewed
CVE-2025-13317
was published
Nov 22, 2025
The GSheetConnector For Ninja Forms plugin for WordPress is vulnerable to unauthorized access of...
Moderate
Unreviewed
CVE-2025-13136
was published
Nov 22, 2025
The Subscriptions & Memberships for PayPal plugin for WordPress is vulnerable to fake payment...
Moderate
Unreviewed
CVE-2025-12752
was published
Nov 22, 2025
The IDonate – Blood Donation, Request And Donor Management System plugin for WordPress is...
Moderate
Unreviewed
CVE-2025-12877
was published
Nov 22, 2025
The CP Contact Form with PayPal plugin for WordPress is vulnerable to Missing Authorization in...
High
Unreviewed
CVE-2025-13384
was published
Nov 22, 2025
The Cookie Notice & Compliance for GDPR / CCPA plugin for WordPress is vulnerable to Stored Cross...
Moderate
Unreviewed
CVE-2025-11186
was published
Nov 22, 2025
A vulnerability has been identified in the libarchive library, specifically within the...
Low
Unreviewed
CVE-2025-5914
was published
Jun 9, 2025
A use-after-free vulnerability was found in libxml2. This issue occurs when parsing XPath...
Critical
Unreviewed
CVE-2025-49794
was published
Jun 16, 2025
A vulnerability was found in libxml2. Processing certain sch:name elements from the input XML...
Critical
Unreviewed
CVE-2025-49796
was published
Jun 16, 2025
A flaw was found in libxslt where the attribute type, atype, flags are modified in a way that...
High
Unreviewed
CVE-2025-7425
was published
Jul 10, 2025
Missing Authorization vulnerability in Property Hive PropertyHive propertyhive allows Exploiting...
Moderate
Unreviewed
CVE-2025-66087
was published
Nov 21, 2025
Missing Authorization vulnerability in wpWax Legal Pages legal-pages allows Exploiting...
Moderate
Unreviewed
CVE-2025-66077
was published
Nov 21, 2025
Missing Authorization vulnerability in tychesoftwares Custom Order Numbers for WooCommerce custom...
Moderate
Unreviewed
CVE-2025-66071
was published
Nov 21, 2025
Deserialization of Untrusted Data vulnerability in Cozmoslabs WP Webhooks wp-webhooks allows...
Moderate
Unreviewed
CVE-2025-66073
was published
Nov 21, 2025
Missing Authorization vulnerability in Jegstudio Gutenverse Form gutenverse-form allows...
Moderate
Unreviewed
CVE-2025-66079
was published
Nov 21, 2025
A vulnerability was detected in Bdtask Flight Booking Software up to 3.1. This affects an unknown...
Moderate
Unreviewed
CVE-2025-12223
was published
Oct 27, 2025
A security vulnerability has been detected in Bdtask Flight Booking Software up to 3.1. Affected...
Moderate
Unreviewed
CVE-2025-12222
was published
Oct 27, 2025
A security flaw has been discovered in Bdtask/CodeCanyon News365 up to 7.0.3. This affects an...
Moderate
Unreviewed
CVE-2025-13185
was published
Nov 14, 2025
A weakness has been identified in Bdtask Flight Booking Software 4. Affected by this...
Moderate
Unreviewed
CVE-2025-13238
was published
Nov 16, 2025
With TLS 1.2 connections a client can use any digest, specifically a weaker digest that is...
Low
Unreviewed
CVE-2025-12889
was published
Nov 22, 2025
The issue was addressed with improved checks. This issue is fixed in iPadOS 17.7.7, iOS 18.5 and...
Unknown
Unreviewed
CVE-2025-31216
was published
Nov 22, 2025
Improper Input Validation in the TLS 1.3 CKS extension parsing in wolfSSL 5.8.2 and earlier on...
Low
Unreviewed
CVE-2025-11933
was published
Nov 22, 2025
A parsing issue in the handling of directory paths was addressed with improved path validation....
Unknown
Unreviewed
CVE-2025-31248
was published
Nov 22, 2025
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iPadOS...
Unknown
Unreviewed
CVE-2025-43374
was published
Nov 22, 2025
ProTip!
Advisories are also available from the
GraphQL API