GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,224
Erlang
31
GitHub Actions
19
Go
1,990
Maven
5,000+
npm
3,706
NuGet
661
pip
3,336
Pub
11
RubyGems
884
Rust
845
Swift
36
Unreviewed advisories
All unreviewed
5,000+
6,148 advisories
Filter by severity
MZK-DP300N firmware versions 1.04 and earlier contains a cross-site request forger vulnerability....
Moderate
Unreviewed
CVE-2024-45372
was published
Sep 26, 2024
Cross-Site Request Forgery (CSRF) vulnerability in GiveWP.This issue affects GiveWP: from n/a...
Moderate
Unreviewed
CVE-2024-47315
was published
Sep 25, 2024
Cross-Site Request Forgery (CSRF) vulnerability in Dnesscarkey Use Any Font allows Cross Site...
Moderate
Unreviewed
CVE-2024-47305
was published
Sep 25, 2024
A vulnerability in the web UI feature of Cisco IOS Software and Cisco IOS XE Software could allow...
Moderate
Unreviewed
CVE-2024-20414
was published
Sep 25, 2024
A vulnerability in the web-based management interface of Cisco IOS XE Software could allow an...
High
Unreviewed
CVE-2024-20437
was published
Sep 25, 2024
dingfanzu CMS 1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via...
Moderate
Unreviewed
CVE-2024-46600
was published
Sep 25, 2024
dingfanzu CMS 1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via /admin...
Moderate
Unreviewed
CVE-2024-46485
was published
Sep 25, 2024
Cross-Site Request Forgery (CSRF) in strawberry-graphql
Moderate
CVE-2024-47082
was published
for
strawberry-graphql
(pip)
Sep 25, 2024
The adstxt Plugin WordPress plugin through 1.0.0 does not have CSRF check in place when updating...
Moderate
Unreviewed
CVE-2024-7892
was published
Sep 25, 2024
The Easy PayPal Events plugin for WordPress is vulnerable to Cross-Site Request Forgery in all...
Moderate
Unreviewed
CVE-2024-8476
was published
Sep 25, 2024
The Premium Packages – Sell Digital Products Securely plugin for WordPress is vulnerable to Cross...
Moderate
Unreviewed
CVE-2024-7386
was published
Sep 25, 2024
The BA Book Everything plugin for WordPress is vulnerable to Cross-Site Request Forgery in all...
High
Unreviewed
CVE-2024-8795
was published
Sep 24, 2024
FrogCMS v0.9.5 was discovered to contain a Cross-Site Request Forgery (CSRF) via /admin/?/user/add
High
Unreviewed
CVE-2024-46394
was published
Sep 19, 2024
FrogCMS V0.9.5 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via ...
High
Unreviewed
CVE-2024-46086
was published
Sep 18, 2024
Cross-Site Request Forgery (CSRF) vulnerability in LikeBtn Like Button Rating allows Cross-Site...
High
Unreviewed
CVE-2024-44064
was published
Sep 18, 2024
FrogCMS V0.9.5 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via ...
High
Unreviewed
CVE-2024-46085
was published
Sep 17, 2024
FrogCMS V0.9.5 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via ...
High
Unreviewed
CVE-2024-46362
was published
Sep 17, 2024
The PropertyHive plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions...
High
Unreviewed
CVE-2024-8490
was published
Sep 17, 2024
The Review Ratings WordPress plugin through 1.6 does not have CSRF check in some places, and is...
Moderate
Unreviewed
CVE-2024-8052
was published
Sep 17, 2024
The Posts reminder WordPress plugin through 0.20 does not have CSRF check in place when updating...
Moderate
Unreviewed
CVE-2024-8093
was published
Sep 17, 2024
The Accordion Image Menu WordPress plugin through 3.1.3 does not have CSRF check in some places,...
Moderate
Unreviewed
CVE-2024-8092
was published
Sep 17, 2024
The Enhanced Search Box WordPress plugin through 0.6.1 does not have CSRF check in place when...
Moderate
Unreviewed
CVE-2024-8091
was published
Sep 17, 2024
The infolinks Ad Wrap WordPress plugin through 1.0.2 does not have CSRF check in place when...
Moderate
Unreviewed
CVE-2024-8044
was published
Sep 17, 2024
The Vikinghammer Tweet WordPress plugin through 0.2.4 does not have CSRF check in some places,...
Moderate
Unreviewed
CVE-2024-8043
was published
Sep 17, 2024
The Visual Sound (old) WordPress plugin through 1.06 does not have CSRF check in place when...
Moderate
Unreviewed
CVE-2024-8047
was published
Sep 17, 2024
ProTip!
Advisories are also available from the
GraphQL API