GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,963
Erlang
39
GitHub Actions
38
Go
2,615
Maven
5,000+
npm
4,255
NuGet
760
pip
4,036
Pub
12
RubyGems
953
Rust
1,049
Swift
45
Unreviewed advisories
All unreviewed
5,000+
3,731 advisories
Filter by severity
The Qi Blocks plugin for WordPress is vulnerable to Missing Authorization in all versions up to,...
Moderate
Unreviewed
CVE-2025-12180
was published
Nov 1, 2025
The Privacy Policy Generator, Terms & Conditions Generator WordPress Plugin : WP Legal Pages...
Moderate
Unreviewed
CVE-2025-11816
was published
Nov 1, 2025
Missing Authorization vulnerability in f1logic Insert PHP Code Snippet insert-php-code-snippet...
Moderate
Unreviewed
CVE-2025-64356
was published
Oct 31, 2025
Missing Authorization vulnerability in WebToffee Smart Coupons for WooCommerce wt-smart-coupons...
Moderate
Unreviewed
CVE-2025-64358
was published
Oct 31, 2025
The ERI File Library plugin for WordPress is vulnerable to unauthorized access of data due to a...
Moderate
Unreviewed
CVE-2025-12041
was published
Oct 31, 2025
The The Events Calendar plugin for WordPress is vulnerable to unauthorized access due to a...
Moderate
Unreviewed
CVE-2025-12175
was published
Oct 31, 2025
The FuseWP – WordPress User Sync to Email List & Marketing Automation (Mailchimp, Constant...
Moderate
Unreviewed
CVE-2025-11975
was published
Oct 31, 2025
The AppPresser – Mobile App Framework plugin for WordPress is vulnerable to unauthorized access...
Moderate
Unreviewed
CVE-2025-11881
was published
Oct 30, 2025
The Translate WordPress and go Multilingual – Weglot plugin for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2025-10008
was published
Oct 30, 2025
Jenkins Publish to Bitbucket Plugin is missing a permissions check
Moderate
CVE-2025-64150
was published
for
org.jenkins-ci.plugins:publish-to-bitbucket
(Maven)
Oct 29, 2025
Jenkins Publish to Bitbucket Plugin is missing a permissions check
Moderate
CVE-2025-64148
was published
for
org.jenkins-ci.plugins:publish-to-bitbucket
(Maven)
Oct 29, 2025
The Call Now Button – The #1 Click to Call Button for WordPress plugin for WordPress is...
Moderate
Unreviewed
CVE-2025-11587
was published
Oct 29, 2025
The Call Now Button – The #1 Click to Call Button for WordPress plugin for WordPress is...
Moderate
Unreviewed
CVE-2025-11632
was published
Oct 29, 2025
Jenkins Start Windocks Containers Plugin is missing a permission check
Moderate
CVE-2025-64139
was published
for
org.jenkins-ci.plugins:windocks-start-container
(Maven)
Oct 29, 2025
Jenkins MCP Server Plugin does not perform permission checks in multiple MCP tools
Moderate
CVE-2025-64132
was published
for
io.jenkins.plugins:mcp-server
(Maven)
Oct 29, 2025
Jenkins Themis Plugin is missing a permission check
Moderate
CVE-2025-64137
was published
for
org.jenkins-ci.plugins:themis
(Maven)
Oct 29, 2025
Jenkins Nexus Task Runner Plugin is missing a permission check
Moderate
CVE-2025-64142
was published
for
org.jenkins-ci.plugins:nexus-task-runner
(Maven)
Oct 29, 2025
Missing Authorization vulnerability in BoldGrid Client Invoicing by Sprout Invoices sprout...
Moderate
Unreviewed
CVE-2025-64229
was published
Oct 29, 2025
Missing Authorization vulnerability in Evergreen Content Poster Evergreen Content Poster...
Moderate
Unreviewed
CVE-2025-64234
was published
Oct 29, 2025
Missing Authorization vulnerability in Premmerce Premmerce Wholesale Pricing for WooCommerce...
Moderate
Unreviewed
CVE-2025-64285
was published
Oct 29, 2025
Missing Authorization vulnerability in StylemixThemes Masterstudy Elementor Widgets masterstudy...
Moderate
Unreviewed
CVE-2025-64211
was published
Oct 29, 2025
Missing Authorization vulnerability in Strategy11 Team Business Directory business-directory...
Moderate
Unreviewed
CVE-2025-64219
was published
Oct 29, 2025
Missing Authorization vulnerability in StylemixThemes MasterStudy LMS Pro masterstudy-lms...
Moderate
Unreviewed
CVE-2025-64212
was published
Oct 29, 2025
Missing Authorization vulnerability in StylemixThemes Masterstudy Elementor Widgets masterstudy...
Moderate
Unreviewed
CVE-2025-64210
was published
Oct 29, 2025
Missing Authorization vulnerability in WpEstate wpresidence wpresidence allows Exploiting...
Moderate
Unreviewed
CVE-2025-64199
was published
Oct 29, 2025
ProTip!
Advisories are also available from the
GraphQL API