GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,189
Erlang
31
GitHub Actions
19
Go
1,985
Maven
5,000+
npm
3,701
NuGet
657
pip
3,326
Pub
11
RubyGems
882
Rust
836
Swift
35
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
2,354 advisories
Filter by severity
Cross-Site Request Forgery (CSRF) vulnerability in Lars Schenk Responsive Flickr Gallery allows...
High
Unreviewed
CVE-2024-51630
was published
Nov 9, 2024
Cross-Site Request Forgery (CSRF) vulnerability in Chaser324 Featured Posts Scroll allows Stored...
High
Unreviewed
CVE-2024-51647
was published
Nov 9, 2024
An issue was discovered on Epson Expression Home XP255 20.08.FM10I8 devices. POST requests don't...
High
Unreviewed
CVE-2019-20460
was published
Nov 7, 2024
An issue was discovered in Siime Eye 14.1.00000001.3.330.0.0.3.14. There is no CSRF protection.
High
Unreviewed
CVE-2020-11919
was published
Nov 7, 2024
Cross-Site Request Forgery (CSRF) vulnerability in JATOS v3.9.3 that allows attackers to perform...
High
Unreviewed
CVE-2024-51381
was published
Nov 5, 2024
Cross-Site Request Forgery (CSRF) vulnerability in JATOS v3.9.3 allows an attacker to reset the...
High
Unreviewed
CVE-2024-51382
was published
Nov 5, 2024
The WooCommerce Report plugin for WordPress is vulnerable to Cross-Site Request Forgery in all...
High
Unreviewed
CVE-2024-10711
was published
Nov 5, 2024
Piwigo v14.5.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via the Edit album...
High
Unreviewed
CVE-2024-48311
was published
Oct 31, 2024
A cross-site request forgery (CSRF) vulnerability exists in the Web Application functionality of...
High
Unreviewed
CVE-2024-24777
was published
Oct 30, 2024
The Crypto plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to,...
High
Unreviewed
CVE-2024-9990
was published
Oct 29, 2024
Cross-Site Request Forgery (CSRF) vulnerability in Gifford Cheung, Brian Watanabe, Chongsun Ahn...
High
Unreviewed
CVE-2024-49672
was published
Oct 29, 2024
The AMP for WP – Accelerated Mobile Pages plugin for WordPress is vulnerable to Cross-Site...
High
Unreviewed
CVE-2024-9598
was published
Oct 25, 2024
Cross-site request forgery (CSRF) vulnerability in the My Account widget in Liferay Portal 7.4.3...
High
Unreviewed
CVE-2024-26271
was published
Oct 22, 2024
Cross-site request forgery (CSRF) vulnerability in the content page editor in Liferay Portal 7.4...
High
Unreviewed
CVE-2024-26273
was published
Oct 22, 2024
Cross-site request forgery (CSRF) vulnerability in the content page editor in Liferay Portal 7.3...
High
Unreviewed
CVE-2024-26272
was published
Oct 22, 2024
Cross-Site Request Forgery (CSRF) vulnerability in Henrique Rodrigues SafetyForms allows Blind...
High
Unreviewed
CVE-2024-49615
was published
Oct 20, 2024
Cross-Site Request Forgery (CSRF) vulnerability in Bhaskar Dhote Back Link Tracker allows Blind...
High
Unreviewed
CVE-2024-49617
was published
Oct 20, 2024
Cross-Site Request Forgery (CSRF) vulnerability in Fahad Mahmood Endless Posts Navigation allows...
High
Unreviewed
CVE-2024-49629
was published
Oct 20, 2024
Cross-Site Request Forgery (CSRF) vulnerability in Edush Maxim GoogleDrive folder list allows...
High
Unreviewed
CVE-2024-49335
was published
Oct 20, 2024
Cross-Site Request Forgery (CSRF) vulnerability in Avchat.Net AVChat Video Chat allows Stored XSS...
High
Unreviewed
CVE-2024-49605
was published
Oct 20, 2024
Cross-Site Request Forgery (CSRF) vulnerability in Apa APA Register Newsletter Form allows SQL...
High
Unreviewed
CVE-2024-49621
was published
Oct 20, 2024
Cross-Site Request Forgery (CSRF) vulnerability in Apa Apa Banner Slider allows SQL Injection...
High
Unreviewed
CVE-2024-49622
was published
Oct 20, 2024
Cross-Site Request Forgery (CSRF) vulnerability in RudeStan VKontakte Wall Post allows Stored XSS...
High
Unreviewed
CVE-2024-49313
was published
Oct 17, 2024
Cross-Site Request Forgery (CSRF) vulnerability in Ahmet Imamoglu Ahmeti Wp Timeline allows...
High
Unreviewed
CVE-2024-49237
was published
Oct 17, 2024
Cross-Site Request Forgery (CSRF) vulnerability in Arif Nezami Better Author Bio allows Cross...
High
Unreviewed
CVE-2024-49229
was published
Oct 17, 2024
ProTip!
Advisories are also available from the
GraphQL API