GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
49
GitHub Actions
48
Go
3,399
Maven
5,000+
npm
5,000+
NuGet
882
pip
4,618
Pub
13
RubyGems
1,026
Rust
1,205
Swift
52
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
296,153 advisories
Filter by severity
Zohocorp ManageEngine Exchange Reporter Plus versions before 5802 are vulnerable to Stored XSS in...
High
Unreviewed
CVE-2026-4108
was published
Apr 3, 2026
A vulnerability was identified in Casdoor 2.356.0. Affected by this issue is some unknown...
Moderate
Unreviewed
CVE-2026-5467
was published
Apr 3, 2026
Zohocorp ManageEngine Exchange Reporter Plus versions before 5802 are vulnerable to Stored XSS in...
High
Unreviewed
CVE-2026-3879
was published
Apr 3, 2026
Zohocorp ManageEngine Exchange Reporter Plus versions before 5802 are vulnerable to Stored XSS in...
High
Unreviewed
CVE-2026-4107
was published
Apr 3, 2026
Zohocorp ManageEngine Exchange Reporter Plus versions before 5802 are vulnerable to Stored XSS in...
High
Unreviewed
CVE-2026-3880
was published
Apr 3, 2026
Zohocorp ManageEngine Exchange Reporter Plus versions before 5802 are vulnerable to Stored XSS in...
High
Unreviewed
CVE-2026-28703
was published
Apr 3, 2026
Zohocorp ManageEngine Exchange Reporter Plus versions before 5802 are vulnerable to Stored XSS in...
High
Unreviewed
CVE-2026-28754
was published
Apr 3, 2026
Zohocorp ManageEngine Exchange Reporter Plus versions before 5802 are vulnerable to Stored XSS in...
High
Unreviewed
CVE-2026-28756
was published
Apr 3, 2026
A vulnerability was determined in Dialogue App up to 4.3.2 on Android. The affected element is an...
Low
Unreviewed
CVE-2026-5455
was published
Apr 3, 2026
A security flaw has been discovered in PropertyGuru AgentNet Singapore App up to 23.7.10 on...
Low
Unreviewed
CVE-2026-5457
was published
Apr 3, 2026
Incorrect Default Permissions vulnerability in AIRBUS PSS TETRA Connectivity Server on Windows...
Moderate
Unreviewed
CVE-2025-7024
was published
Apr 3, 2026
The Perfmatters plugin for WordPress is vulnerable to arbitrary file deletion via path traversal...
High
Unreviewed
CVE-2026-4350
was published
Apr 3, 2026
A vulnerability was identified in Wahoo Fitness SYSTM App up to 7.2.1 on Android. Impacted is an...
Low
Unreviewed
CVE-2026-5462
was published
Apr 3, 2026
A weakness has been identified in Noelse Individuals & Pro App up to 2.1.7 on Android. This...
Low
Unreviewed
CVE-2026-5458
was published
Apr 3, 2026
A vulnerability was identified in Align Technology My Invisalign App 3.12.4 on Android. The...
Low
Unreviewed
CVE-2026-5456
was published
Apr 3, 2026
An issue was discovered in MariaDB Server before 11.4.10, 11.5.x through 11.8.x before 11.8.6,...
Moderate
Unreviewed
CVE-2026-35549
was published
Apr 3, 2026
Command injection vulnerability in console.run_module_with_output() in pymetasploit3 through...
Critical
Unreviewed
CVE-2026-5463
was published
Apr 3, 2026
A vulnerability has been found in Rico só vantagem pra investir App up to 4.58.32.12421 on...
Low
Unreviewed
CVE-2026-5453
was published
Apr 3, 2026
A vulnerability was found in GRID Organiser App up to 1.0.5 on Android. Impacted is an unknown...
Low
Unreviewed
CVE-2026-5454
was published
Apr 3, 2026
A flaw has been found in UCC CampusConnect App up to 14.3.5 on Android. This vulnerability...
Low
Unreviewed
CVE-2026-5452
was published
Apr 3, 2026
An issue was discovered in Roundcube Webmail 1.6.0 before 1.6.14. Insufficient Cascading Style...
Moderate
Unreviewed
CVE-2026-35540
was published
Apr 3, 2026
An issue was discovered in Roundcube Webmail before 1.5.14 and 1.6.14. Incorrect password...
Moderate
Unreviewed
CVE-2026-35541
was published
Apr 3, 2026
An issue was discovered in Roundcube Webmail before 1.5.14 and 1.6.14. Unsafe deserialization in...
Low
Unreviewed
CVE-2026-35537
was published
Apr 3, 2026
An issue was discovered in Roundcube Webmail before 1.5.14 and 1.6.14. XSS exists because of...
Moderate
Unreviewed
CVE-2026-35539
was published
Apr 3, 2026
An issue was discovered in Roundcube Webmail before 1.5.14 and 1.6.14. Insufficient Cascading...
Moderate
Unreviewed
CVE-2026-35544
was published
Apr 3, 2026
ProTip!
Advisories are also available from the
GraphQL API