GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
49
GitHub Actions
50
Go
3,630
Maven
5,000+
npm
5,000+
NuGet
928
pip
4,850
Pub
13
RubyGems
1,045
Rust
1,301
Swift
53
Unreviewed advisories
All unreviewed
5,000+
156,829 advisories
Filter by severity
A vulnerability was identified in Totolink N300RH 6.1c.1353_B20190305. This impacts the function...
Moderate
Unreviewed
CVE-2026-7633
was published
May 2, 2026
A vulnerability has been found in ChatGPTNextWeb NextChat up to 2.16.1. Affected is the function...
Moderate
Unreviewed
CVE-2026-7644
was published
May 2, 2026
The Dokan: AI Powered WooCommerce Multivendor Marketplace Solution plugin for WordPress is...
Moderate
Unreviewed
CVE-2026-3504
was published
May 2, 2026
A vulnerability has been found in innocommerce InnoShop up to 0.7.8. The affected element is the...
Moderate
Unreviewed
CVE-2026-7630
was published
May 2, 2026
The NextMove Lite – Thank You Page for WooCommerce plugin for WordPress is vulnerable to Stored...
Moderate
Unreviewed
CVE-2026-0703
was published
May 2, 2026
A vulnerability was determined in code-projects Online Hospital Management System 1.0. This...
Moderate
Unreviewed
CVE-2026-7632
was published
May 2, 2026
The Premium Addons for Elementor – Powerful Elementor Templates & Widgets plugin for WordPress is...
Moderate
Unreviewed
CVE-2026-4790
was published
May 2, 2026
A vulnerability was found in TRENDnet TEW-821DAP up to 1.12B01. This impacts the function...
Moderate
Unreviewed
CVE-2026-7611
was published
May 2, 2026
IEEE 802.11 protocol dissector crash in Wireshark 4.6.0 to 4.6.4
Moderate
Unreviewed
CVE-2026-6525
was published
May 2, 2026
The Quiz Maker by AYS plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ...
Moderate
Unreviewed
CVE-2026-6817
was published
May 2, 2026
The Total theme for WordPress is vulnerable to Stored Cross-Site Scripting via post titles in...
Moderate
Unreviewed
CVE-2026-5077
was published
May 2, 2026
The Royal Addons for Elementor plugin for WordPress is vulnerable to unauthorized modification of...
Moderate
Unreviewed
CVE-2026-4024
was published
May 2, 2026
The FundPress – WordPress Donation Plugin for WordPress is vulnerable to authorization bypass in...
Moderate
Unreviewed
CVE-2026-4650
was published
May 2, 2026
The Geo Mashup plugin for WordPress is vulnerable to time-based blind SQL Injection via the ...
Moderate
Unreviewed
CVE-2026-6457
was published
May 2, 2026
A weakness has been identified in TRENDnet TEW-821DAP 1.12B01. This issue affects the function...
Moderate
Unreviewed
CVE-2026-7606
was published
May 2, 2026
The Booking for Appointments and Events Calendar – Amelia plugin for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2026-6449
was published
May 2, 2026
The My Social Feeds – Social Feeds Embedder plugin for WordPress is vulnerable to Sensitive...
Moderate
Unreviewed
CVE-2026-6446
was published
May 2, 2026
The Call for Price for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site...
Moderate
Unreviewed
CVE-2026-6447
was published
May 2, 2026
The Ona theme for WordPress is vulnerable to Server-Side Request Forgery in all versions up to,...
Moderate
Unreviewed
CVE-2026-6812
was published
May 2, 2026
The Jeg Kit for Elementor – Powerful Addons for Elementor, Widgets & Templates for WordPress...
Moderate
Unreviewed
CVE-2026-6916
was published
May 2, 2026
The Essential Blocks – Page Builder Gutenberg Blocks, Patterns & Templates plugin for WordPress...
Moderate
Unreviewed
CVE-2026-4658
was published
May 2, 2026
The Simple Link Directory plugin for WordPress is vulnerable to Stored Cross-Site Scripting via...
Moderate
Unreviewed
CVE-2026-7209
was published
May 2, 2026
The Widgets for Social Photo Feed plugin for WordPress is vulnerable to unauthorized access of...
Moderate
Unreviewed
CVE-2025-14726
was published
May 2, 2026
The Maxi Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the `/wp...
Moderate
Unreviewed
CVE-2026-6378
was published
May 2, 2026
The App Builder – Create Native Android & iOS Apps On The Flight plugin for WordPress is...
Moderate
Unreviewed
CVE-2026-7638
was published
May 2, 2026
ProTip!
Advisories are also available from the
GraphQL API