GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,891
Erlang
37
GitHub Actions
38
Go
2,550
Maven
5,000+
npm
4,221
NuGet
745
pip
3,998
Pub
12
RubyGems
953
Rust
1,039
Swift
45
Unreviewed advisories
All unreviewed
5,000+
297,188 advisories
Filter by severity
A weakness has been identified in Campcodes Online Apartment Visitor Management System 1.0. This...
Moderate
Unreviewed
CVE-2025-11599
was published
Oct 11, 2025
A vulnerability was identified in code-projects E-Commerce Website 1.0. The impacted element is...
Moderate
Unreviewed
CVE-2025-11597
was published
Oct 11, 2025
The Custom 404 Pro plugin for WordPress is vulnerable to time-based SQL Injection via the ‘path’...
Moderate
Unreviewed
CVE-2025-9947
was published
Oct 11, 2025
A vulnerability was determined in code-projects E-Commerce Website 1.0. The affected element is...
Moderate
Unreviewed
CVE-2025-11596
was published
Oct 11, 2025
The GSheetConnector For Gravity Forms plugin for WordPress is vulnerable to authorization bypass...
High
Unreviewed
CVE-2025-8593
was published
Oct 11, 2025
Buffer overflow vulnerability in the device management module. Successful exploitation of this...
Moderate
Unreviewed
CVE-2025-58300
was published
Oct 11, 2025
The WidgetPack Comment System plugin for WordPress is vulnerable to Cross-Site Request Forgery in...
Moderate
Unreviewed
CVE-2025-9621
was published
Oct 11, 2025
The WooCommerce Designer Pro plugin for WordPress, used by the Pricom - Printing Company & Design...
Critical
Unreviewed
CVE-2025-6439
was published
Oct 11, 2025
The Easy Plugin Stats plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
Moderate
Unreviewed
CVE-2025-7652
was published
Oct 11, 2025
Buffer overflow vulnerability in the device management module. Successful exploitation of this...
Moderate
Unreviewed
CVE-2025-58301
was published
Oct 11, 2025
The Error Log Viewer by BestWebSoft plugin for WordPress is vulnerable to Directory Traversal in...
Moderate
Unreviewed
CVE-2025-9950
was published
Oct 11, 2025
The WP Scraper plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions...
Moderate
Unreviewed
CVE-2025-9975
was published
Oct 11, 2025
The Newsup theme for WordPress is vulnerable to unauthorized plugin installation due to a missing...
Moderate
Unreviewed
CVE-2025-8682
was published
Oct 11, 2025
The Page Blocks plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions...
Moderate
Unreviewed
CVE-2025-9626
was published
Oct 11, 2025
The GSheetConnector For Gravity Forms plugin for WordPress is vulnerable to Cross-Site Request...
Low
Unreviewed
CVE-2025-8606
was published
Oct 11, 2025
The Code Quality Control Tool plugin for WordPress is vulnerable to Sensitive Information...
Moderate
Unreviewed
CVE-2025-8484
was published
Oct 11, 2025
Vulnerability of improper exception handling in the print module. Successful exploitation of this...
Moderate
Unreviewed
CVE-2025-58289
was published
Oct 11, 2025
Vulnerability of improper exception handling in the print module. Successful exploitation of this...
Moderate
Unreviewed
CVE-2025-58293
was published
Oct 11, 2025
The WordPress Live Webcam Widget & Shortcode plugin for WordPress is vulnerable to Stored Cross...
Moderate
Unreviewed
CVE-2025-10129
was published
Oct 11, 2025
The Course Redirects for Learndash plugin for WordPress is vulnerable to Cross-Site Request...
Moderate
Unreviewed
CVE-2025-10376
was published
Oct 11, 2025
A vulnerability was found in Campcodes Online Apartment Visitor Management System 1.0. Impacted...
Moderate
Unreviewed
CVE-2025-11595
was published
Oct 11, 2025
The Stock History & Reports Manager for WooCommerce plugin for WordPress is vulnerable to Stored...
Moderate
Unreviewed
CVE-2025-10167
was published
Oct 11, 2025
The WP Easy Toggles plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
Moderate
Unreviewed
CVE-2025-10190
was published
Oct 11, 2025
The Web Accessibility By accessiBe plugin for WordPress is vulnerable to Cross-Site Request...
Moderate
Unreviewed
CVE-2025-10375
was published
Oct 11, 2025
The WP Links Page plugin for WordPress is vulnerable to SQL Injection via the 'id' parameter in...
Moderate
Unreviewed
CVE-2025-10175
was published
Oct 11, 2025
ProTip!
Advisories are also available from the
GraphQL API