GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,096
Erlang
29
GitHub Actions
19
Go
1,925
Maven
5,000+
npm
3,654
NuGet
638
pip
3,263
Pub
10
RubyGems
873
Rust
823
Swift
35
Unreviewed advisories
All unreviewed
5,000+
6,012 advisories
Filter by severity
The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction &...
Moderate
Unreviewed
CVE-2024-8520
was published
Oct 4, 2024
A Cross-Site Request Forgery (CSRF) in Gestsup v3.2.46 allows attackers to arbitrarily edit user...
Moderate
Unreviewed
CVE-2023-52060
was published
Feb 13, 2024
The TEM Opera Plus FM Family Transmitter application interface allows users to perform certain...
High
Unreviewed
CVE-2024-41987
was published
Oct 3, 2024
A security vulnerability in HPE IceWall Agent products could be exploited remotely to cause a...
Moderate
Unreviewed
CVE-2024-42504
was published
Oct 3, 2024
MZK-DP300N firmware versions 1.04 and earlier contains a cross-site request forger vulnerability....
Moderate
Unreviewed
CVE-2024-45372
was published
Sep 26, 2024
A vulnerability in the web UI feature of Cisco IOS Software and Cisco IOS XE Software could allow...
Moderate
Unreviewed
CVE-2024-20414
was published
Sep 25, 2024
Cross site request forgery in Kiteworks OwnCloud allows an unauthenticated attacker to forge...
Moderate
Unreviewed
CVE-2023-7273
was published
Oct 1, 2024
Cross-Site Request Forgery (CSRF) in Luigi
High
CVE-2018-1000843
was published
for
luigi
(pip)
Dec 20, 2018
The infolinks Ad Wrap WordPress plugin through 1.0.2 does not have CSRF check in place when...
Moderate
Unreviewed
CVE-2024-8044
was published
Sep 17, 2024
Certain switch models from PLANET Technology have a web application that is vulnerable to Cross...
High
Unreviewed
CVE-2024-8458
was published
Sep 30, 2024
The Favicon Generator (CLOSED) WordPress plugin before 2.1 does not validate files to be uploaded...
High
Unreviewed
CVE-2024-7863
was published
Sep 13, 2024
The Visual Sound (old) WordPress plugin through 1.06 does not have CSRF check in place when...
Moderate
Unreviewed
CVE-2024-8047
was published
Sep 17, 2024
Kotti CSRF in the local roles implementation
High
CVE-2018-9856
was published
for
Kotti
(pip)
Jul 12, 2018
The Posts reminder WordPress plugin through 0.20 does not have CSRF check in place when updating...
Moderate
Unreviewed
CVE-2024-8093
was published
Sep 17, 2024
Advantech ADAM-5630 contains a cross-site request forgery (CSRF) vulnerability. It allows an...
High
Unreviewed
CVE-2024-28948
was published
Sep 27, 2024
The Review Ratings WordPress plugin through 1.6 does not have CSRF check in some places, and is...
Moderate
Unreviewed
CVE-2024-8052
was published
Sep 17, 2024
The Special Feed Items WordPress plugin through 1.0.1 does not have CSRF check in some places,...
Moderate
Unreviewed
CVE-2024-8051
was published
Sep 17, 2024
The Enhanced Search Box WordPress plugin through 0.6.1 does not have CSRF check in place when...
Moderate
Unreviewed
CVE-2024-8091
was published
Sep 17, 2024
The Accordion Image Menu WordPress plugin through 3.1.3 does not have CSRF check in some places,...
Moderate
Unreviewed
CVE-2024-8092
was published
Sep 17, 2024
The Vikinghammer Tweet WordPress plugin through 0.2.4 does not have CSRF check in some places,...
Moderate
Unreviewed
CVE-2024-8043
was published
Sep 17, 2024
Kallithea cross-site request forgery (CSRF) vulnerability
High
CVE-2015-0276
was published
for
Kallithea
(pip)
May 13, 2022
IPython vulnerable to cross site request forgery (CSRF)
High
CVE-2015-5607
was published
for
ipython
(pip)
May 17, 2022
A vulnerability was found in bg5sbk MiniCMS up to 1.11 and classified as problematic. This issue...
Moderate
Unreviewed
CVE-2024-9281
was published
Sep 27, 2024
A vulnerability was found in bg5sbk MiniCMS 1.11. It has been classified as problematic. Affected...
Moderate
Unreviewed
CVE-2024-9282
was published
Sep 27, 2024
A Cross-Site Request Forgery (CSRF) vulnerability exists in kishan0725's Hospital Management...
Moderate
Unreviewed
CVE-2024-45983
was published
Sep 26, 2024
ProTip!
Advisories are also available from the
GraphQL API