GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,963
Erlang
39
GitHub Actions
38
Go
2,615
Maven
5,000+
npm
4,255
NuGet
760
pip
4,036
Pub
12
RubyGems
953
Rust
1,049
Swift
45
Unreviewed advisories
All unreviewed
5,000+
3,731 advisories
Filter by severity
The Check Plagiarism plugin for WordPress is vulnerable to unauthorized modification of data due...
Moderate
Unreviewed
CVE-2025-11172
was published
Oct 24, 2025
The Microsoft Azure Storage for WordPress plugin for WordPress is vulnerable to Unauthorized...
Moderate
Unreviewed
CVE-2025-10749
was published
Oct 24, 2025
The Originality.ai AI Checker plugin for WordPress is vulnerable to unauthorized access of data...
Moderate
Unreviewed
CVE-2025-10901
was published
Oct 24, 2025
Liferay Portal and DXP do not properly restrict access to OpenAPI
Moderate
CVE-2025-62256
was published
for
com.liferay:com.liferay.portal.security.auth.verifier
(Maven)
Oct 23, 2025
Jira Align is vulnerable to an authorization issue. A low-privilege user can access unexpected...
Moderate
Unreviewed
CVE-2025-22178
was published
Oct 22, 2025
Missing Authorization vulnerability in WPXPO WowRevenue revenue.This issue affects WowRevenue:...
Moderate
Unreviewed
CVE-2025-62070
was published
Oct 22, 2025
Missing Authorization vulnerability in Rustaurius Front End Users front-end-only-users.This issue...
Moderate
Unreviewed
CVE-2025-62072
was published
Oct 22, 2025
Missing Authorization vulnerability in Repuso Social proof testimonials and reviews by Repuso...
Moderate
Unreviewed
CVE-2025-62071
was published
Oct 22, 2025
Missing Authorization vulnerability in Sovlix MeetingHub meetinghub.This issue affects MeetingHub...
Moderate
Unreviewed
CVE-2025-62073
was published
Oct 22, 2025
Missing Authorization vulnerability in VeronaLabs WP SMS wp-sms.This issue affects WP SMS: from n...
Moderate
Unreviewed
CVE-2025-62006
was published
Oct 22, 2025
Missing Authorization vulnerability in POSIMYTH UiChemy uichemy.This issue affects UiChemy: from...
Moderate
Unreviewed
CVE-2025-62013
was published
Oct 22, 2025
Missing Authorization vulnerability in Made Neat Acknowledgify acknowledgify.This issue affects...
Moderate
Unreviewed
CVE-2025-62021
was published
Oct 22, 2025
Missing Authorization vulnerability in StellarWP Event Tickets event-tickets.This issue affects...
Moderate
Unreviewed
CVE-2025-62027
was published
Oct 22, 2025
Missing Authorization vulnerability in WPMU DEV - Your All-in-One WordPress Platform SmartCrawl...
Moderate
Unreviewed
CVE-2025-62048
was published
Oct 22, 2025
Missing Authorization vulnerability in Horea Radu One Page Express Companion one-page-express...
Moderate
Unreviewed
CVE-2025-62052
was published
Oct 22, 2025
Missing Authorization vulnerability in WPZOOM Recipe Card Blocks for Gutenberg & Elementor recipe...
Moderate
Unreviewed
CVE-2025-62019
was published
Oct 22, 2025
Missing Authorization vulnerability in AndonDesign UDesign Core u-design-core allows Exploiting...
Moderate
Unreviewed
CVE-2025-53236
was published
Oct 22, 2025
Missing Authorization vulnerability in FantasticPlugins SUMO Memberships for WooCommerce...
Moderate
Unreviewed
CVE-2025-52757
was published
Oct 22, 2025
Missing Authorization vulnerability in Syed Balkhi Smash Balloon Social Post Feed custom-facebook...
Moderate
Unreviewed
CVE-2025-49937
was published
Oct 22, 2025
Missing Authorization vulnerability in accessiBe Web Accessibility By accessiBe accessibe allows...
Moderate
Unreviewed
CVE-2025-49920
was published
Oct 22, 2025
Missing Authorization vulnerability in etruel WPeMatico RSS Feed Fetcher wpematico allows...
Moderate
Unreviewed
CVE-2025-49922
was published
Oct 22, 2025
Missing Authorization vulnerability in jjlemstra Whydonate wp-whydonate allows Accessing...
Moderate
Unreviewed
CVE-2025-49899
was published
Oct 22, 2025
Missing Authorization vulnerability in bdthemes ZoloBlocks zoloblocks allows Exploiting...
Moderate
Unreviewed
CVE-2025-49903
was published
Oct 22, 2025
Missing Authorization vulnerability in StellarWP WPComplete wpcomplete allows Accessing...
Moderate
Unreviewed
CVE-2025-49906
was published
Oct 22, 2025
Missing Authorization vulnerability in CoSchedule CoSchedule coschedule-by-todaymade allows...
Moderate
Unreviewed
CVE-2025-49913
was published
Oct 22, 2025
ProTip!
Advisories are also available from the
GraphQL API