GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Malware advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
114
GitHub Actions
55
Go
4,608
Maven
5,000+
npm
5,000+
NuGet
1,103
pip
5,000+
Pub
13
RubyGems
1,146
Rust
1,528
Swift
62
Unreviewed advisories
All unreviewed
5,000+
Malware advisories
All malware
5,000+
Composer
2
Go
18
Maven
2
npm
5,000+
NuGet
264
pip
5,000+
RubyGems
3,510
Rust
19
44,605 advisories
Filter by severity
A vulnerability was found in Typora up to 1.13.8/1.14.6. This vulnerability affects unknown code...
Low
Unreviewed
CVE-2026-82805
was published
Aug 31, 2026
A vulnerability was found in code-projects Online Shopping System 1.0. Affected by this...
Low
Unreviewed
CVE-2026-82700
was published
Aug 31, 2026
Improper neutralization of input during web page generation in Apache Wicket.
org.apache.wicket...
Moderate
Unreviewed
CVE-2026-76985
was published
Aug 31, 2026
Improper neutralization of input during web page generation in Apache Wicket.
org.apache.wicket...
Moderate
Unreviewed
CVE-2026-76986
was published
Aug 31, 2026
Joomla Extension - joomshaper.com - Stored Cross-Site Scripting (XSS) in MegaMenu Layout...
High
Unreviewed
CVE-2026-78077
was published
Aug 31, 2026
Improper neutralization of input during web page generation in Apache Wicket.
org.apache.wicket...
Moderate
Unreviewed
CVE-2026-76982
was published
Aug 31, 2026
AjaxEditableChoiceLabel in wicket-extensions, when constructed with a non-null IChoiceRenderer,...
Moderate
Unreviewed
CVE-2026-75802
was published
Aug 31, 2026
Improper neutralization of input during web page generation in Apache Wicket.
The <wicket:label>...
Moderate
Unreviewed
CVE-2026-76983
was published
Aug 31, 2026
Improper neutralization of input during web page generation in Apache Wicket.
org.apache.wicket...
Moderate
Unreviewed
CVE-2026-76984
was published
Aug 31, 2026
Aix-DB through 1.2.4 renders markdown with raw HTML enabled into v-html bindings without...
Moderate
Unreviewed
CVE-2026-82881
was published
Aug 31, 2026
pdfme schemas before 5.5.10 contains a cross-site scripting vulnerability in the...
Low
Unreviewed
CVE-2026-82865
was published
Aug 31, 2026
@pdfme/schemas before 5.5.9 contains a cross-site scripting vulnerability in the Select schema...
Moderate
Unreviewed
CVE-2026-82867
was published
Aug 31, 2026
@pdfme/schemas before 5.5.9 contains a cross-site scripting vulnerability in the SVG schema...
Moderate
Unreviewed
CVE-2026-82868
was published
Aug 31, 2026
A security vulnerability has been detected in yaojingang GEOFlow up to 2.1.0. This affects an...
Low
Unreviewed
CVE-2026-82664
was published
Aug 31, 2026
A vulnerability has been found in code-projects Simple Inventory System 1.0. This affects an...
Low
Unreviewed
CVE-2026-82625
was published
Aug 31, 2026
A security vulnerability has been detected in code-projects Employee Leave Managing System 1.0....
Low
Unreviewed
CVE-2026-82622
was published
Aug 31, 2026
NSP is vulnerable to a stored XSS due to insufficient validation or encoding of user-controlled...
Moderate
Unreviewed
CVE-2026-40464
was published
Aug 31, 2026
A weakness has been identified in SeaCMS up to 13.6. This affects an unknown part of the file ...
Low
Unreviewed
CVE-2026-82601
was published
Aug 31, 2026
A flaw has been found in SourceCodester Queue Management System 1.0. This affects an unknown part...
Low
Unreviewed
CVE-2026-82554
was published
Aug 30, 2026
SiYuan before v3.8.1 contains a stored cross-site scripting vulnerability in confirmDialog()...
Critical
Unreviewed
CVE-2026-82653
was published
Aug 30, 2026
WWBN AVideo contains an unauthenticated reflected cross-site scripting vulnerability in the...
Moderate
Unreviewed
CVE-2026-82646
was published
Aug 30, 2026
SiYuan before v3.8.1 fails to properly escape block name, alias, and memo fields in hint,...
Critical
Unreviewed
CVE-2026-82654
was published
Aug 30, 2026
Readest is an open-source e-book reader built on Tauri. In versions prior to 0.11.16, EPUB...
High
Unreviewed
CVE-2026-82642
was published
Aug 30, 2026
A vulnerability was identified in Beetel 450TC3 01.00.00_01. This vulnerability affects unknown...
Low
Unreviewed
CVE-2026-82488
was published
Aug 30, 2026
A security vulnerability has been detected in coppermine-gallery Coppermine Photo Gallery up to 1...
Low
Unreviewed
CVE-2026-82482
was published
Aug 30, 2026
ProTip!
Advisories are also available from the
GraphQL API