GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,239
Erlang
31
GitHub Actions
21
Go
2,007
Maven
5,000+
npm
3,716
NuGet
662
pip
3,388
Pub
11
RubyGems
885
Rust
851
Swift
36
Unreviewed advisories
All unreviewed
5,000+
3,365 advisories
Filter by severity
A vulnerability has been found in code-projects Blood Bank Management System 1.0 and classified...
Moderate
Unreviewed
CVE-2024-10557
was published
Oct 31, 2024
Cross-Site Request Forgery (CSRF) vulnerability in DarkMySite DarkMySite – Advanced Dark Mode...
Moderate
Unreviewed
CVE-2024-50466
was published
Oct 29, 2024
A Cross-Site Request Forgery (CSRF) vulnerability exists in the `install_comfyui` endpoint of the...
Moderate
Unreviewed
CVE-2024-6673
was published
Oct 29, 2024
The ENL Newsletter WordPress plugin through 1.0.1 does not have CSRF checks in some places, which...
Moderate
Unreviewed
CVE-2024-3059
was published
Apr 26, 2024
dingfanzu CMS 1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via /admin...
Moderate
Unreviewed
CVE-2024-48291
was published
Oct 28, 2024
dingfanzu CMS 1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component...
Moderate
Unreviewed
CVE-2024-48191
was published
Oct 28, 2024
A vulnerability, which was classified as problematic, has been found in code-projects Blood Bank...
Moderate
Unreviewed
CVE-2024-10448
was published
Oct 28, 2024
Jenkins docker-build-step Plugin Cross-Site Request Forgery vulnerability
Moderate
CVE-2024-2215
was published
for
org.jenkins-ci.plugins:docker-build-step
(Maven)
Mar 6, 2024
The Fatal Error Notify WordPress plugin before 1.5.3 does not have authorisation and CSRF checks...
Moderate
Unreviewed
CVE-2023-7202
was published
Feb 27, 2024
Cross-site request forgery vulnerability in multiple printers and scanners which implement Web...
Moderate
Unreviewed
CVE-2024-22475
was published
Mar 18, 2024
Content Censorship in the InterPlanetary File System (IPFS) via Kademlia DHT abuse
Moderate
CVE-2023-26248
was published
for
github.com/libp2p/go-libp2p-kad-dht
(Go)
Oct 25, 2024
rdiffweb CSRF could lead to disabling notifications in user profile
Moderate
CVE-2022-3233
was published
for
rdiffweb
(pip)
Sep 22, 2022
rdiffweb CSRF vulnerability in admin area can lead to deletion of repositories and users
Moderate
CVE-2022-3232
was published
for
rdiffweb
(pip)
Sep 18, 2022
rdiffweb Cross-Site Request Forgery vulnerability
Moderate
CVE-2022-3267
was published
for
rdiffweb
(pip)
Sep 23, 2022
The MultiVendorX – The Ultimate WooCommerce Multivendor Marketplace Solution plugin for WordPress...
Moderate
Unreviewed
CVE-2024-9943
was published
Oct 24, 2024
The Transients Manager plugin for WordPress is vulnerable to Cross-Site Request Forgery in all...
Moderate
Unreviewed
CVE-2024-10045
was published
Oct 23, 2024
The Category and Taxonomy Meta Fields plugin for WordPress is vulnerable to Cross-Site Request...
Moderate
Unreviewed
CVE-2024-9588
was published
Oct 22, 2024
Cross-Site Request Forgery (CSRF) vulnerability in Latepoint LatePoint allows Cross Site Request...
Moderate
Unreviewed
CVE-2024-43945
was published
Oct 21, 2024
Cross-Site Request Forgery (CSRF) vulnerability in Infomaniak Staff VOD Infomaniak allows Cross...
Moderate
Unreviewed
CVE-2024-49274
was published
Oct 20, 2024
Cross-Site Request Forgery (CSRF) vulnerability in WPWeb Social Auto Poster allows Cross Site...
Moderate
Unreviewed
CVE-2024-49272
was published
Oct 20, 2024
Cross-Site Request Forgery (CSRF) vulnerability in WP-buy WP Content Copy Protection & No Right...
Moderate
Unreviewed
CVE-2024-49306
was published
Oct 20, 2024
Cross-Site Request Forgery (CSRF) vulnerability in Martin Gibson IdeaPush allows Cross Site...
Moderate
Unreviewed
CVE-2024-49275
was published
Oct 20, 2024
Cross-Site Request Forgery (CSRF) vulnerability in Noor Alam WordPress Image SEO allows Cross...
Moderate
Unreviewed
CVE-2024-49627
was published
Oct 20, 2024
Cross-Site Request Forgery (CSRF) vulnerability in Michael Tran Table of Contents Plus allows...
Moderate
Unreviewed
CVE-2024-49250
was published
Oct 20, 2024
Cross-Site Request Forgery (CSRF) vulnerability in WhileTrue Most And Least Read Posts Widget...
Moderate
Unreviewed
CVE-2024-49628
was published
Oct 20, 2024
ProTip!
Advisories are also available from the
GraphQL API