GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,963
Erlang
39
GitHub Actions
38
Go
2,615
Maven
5,000+
npm
4,255
NuGet
760
pip
4,036
Pub
12
RubyGems
953
Rust
1,049
Swift
45
Unreviewed advisories
All unreviewed
5,000+
33,121 advisories
Filter by severity
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-62939
was published
Oct 27, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-62942
was published
Oct 27, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-62923
was published
Oct 27, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-62911
was published
Oct 27, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-62899
was published
Oct 27, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-62910
was published
Oct 27, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-62907
was published
Oct 27, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-62917
was published
Oct 27, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-62912
was published
Oct 27, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-62913
was published
Oct 27, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-62920
was published
Oct 27, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-62904
was published
Oct 27, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-62937
was published
Oct 27, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-62900
was published
Oct 27, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-62894
was published
Oct 27, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-62905
was published
Oct 27, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-62898
was published
Oct 27, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-62903
was published
Oct 27, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-62887
was published
Oct 27, 2025
IPFire versions prior to 2.29 (Core Update 198) contain a stored cross-site scripting (XSS)...
Moderate
Unreviewed
CVE-2025-34317
was published
Oct 28, 2025
IPFire versions prior to 2.29 (Core Update 198) contain a stored cross-site scripting (XSS)...
Moderate
Unreviewed
CVE-2025-34318
was published
Oct 28, 2025
IPFire versions prior to 2.29 (Core Update 198) contain a stored cross-site scripting (XSS)...
Moderate
Unreviewed
CVE-2025-34310
was published
Oct 28, 2025
IPFire versions prior to 2.29 (Core Update 198) contain a stored cross-site scripting (XSS)...
Moderate
Unreviewed
CVE-2025-34313
was published
Oct 28, 2025
IPFire versions prior to 2.29 (Core Update 198) contain multiple stored cross-site scripting (XSS...
Moderate
Unreviewed
CVE-2025-34305
was published
Oct 28, 2025
IPFire versions prior to 2.29 (Core Update 198) contain a stored cross-site scripting (XSS)...
Moderate
Unreviewed
CVE-2025-34315
was published
Oct 28, 2025
ProTip!
Advisories are also available from the
GraphQL API