GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,134
Erlang
29
GitHub Actions
19
Go
1,941
Maven
5,000+
npm
3,681
NuGet
650
pip
3,298
Pub
11
RubyGems
877
Rust
830
Swift
35
Unreviewed advisories
All unreviewed
5,000+
973 advisories
Filter by severity
Drupal core Open Redirect vulnerability
Moderate
GHSA-wxfg-253g-m7r4
was published
for
drupal/drupal
(Composer)
May 15, 2024
Drupal Anonymous Open Redirect
Moderate
GHSA-x6v2-xmrq-574j
was published
for
drupal/drupal
(Composer)
May 15, 2024
Drupal External URL injection through URL aliases leading to Open Redirect
Moderate
GHSA-r67r-42wx-c8r7
was published
for
drupal/drupal
(Composer)
May 15, 2024
Drupal core Open Redirect vulnerability
Moderate
GHSA-6gf6-24h2-66j4
was published
for
drupal/core
(Composer)
May 15, 2024
Drupal Anonymous Open Redirect
Moderate
GHSA-gfvf-2f25-f34r
was published
for
drupal/core
(Composer)
May 15, 2024
Drupal External URL injection through URL aliases leading to Open Redirect
Moderate
GHSA-7f4f-p7mq-p4fv
was published
for
drupal/core
(Composer)
May 15, 2024
A vulnerability in the web-based management interface of Cisco Crosswork Network Services...
Moderate
Unreviewed
CVE-2024-20369
was published
May 15, 2024
When a network error occurred during page load, the prior content could have remained in view...
High
Unreviewed
CVE-2024-4773
was published
May 14, 2024
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in ILLID Share This Image.This...
Moderate
Unreviewed
CVE-2024-33930
was published
May 2, 2024
An issue in Wifire Hotspot v.4.5.3 allows a local attacker to execute arbitrary code via a...
High
Unreviewed
CVE-2024-26504
was published
May 1, 2024
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Deepen Bajracharya Video...
Moderate
Unreviewed
CVE-2024-33584
was published
Apr 29, 2024
Portainer before 2.20.0 allows redirects when the target is not index.yaml.
Critical
Unreviewed
CVE-2024-33661
was published
Apr 26, 2024
Privilege Escalation in Kubernetes
Moderate
CVE-2020-8559
was published
for
k8s.io/apimachinery
(Go)
Apr 24, 2024
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Foliovision FV Flowplayer...
Moderate
Unreviewed
CVE-2024-32078
was published
Apr 24, 2024
cg vulnerable to an Open Redirect Vulnerability on Referer Header
Moderate
GHSA-w228-rfpx-fhm4
was published
for
cg
(pip)
Apr 23, 2024
The SolarWinds Platform was susceptible to a Arbitrary Open Redirection Vulnerability. A...
High
Unreviewed
CVE-2024-28076
was published
Apr 18, 2024
Keycloak Cross-site Scripting (XSS) via assertion consumer service URL in SAML POST-binding flow
Moderate
CVE-2023-6717
was published
for
org.keycloak:keycloak-services
(Maven)
Apr 17, 2024
Keycloak path traversal vulnerability in the redirect validation
High
CVE-2024-2419
was published
for
org.keycloak:keycloak-services
(Maven)
Apr 17, 2024
Spring Framework URL Parsing with Host Validation
High
CVE-2024-22262
was published
for
org.springframework:spring-web
(Maven)
Apr 16, 2024
gradio Server-Side Request Forgery vulnerability
Moderate
CVE-2024-1183
was published
for
gradio
(pip)
Apr 16, 2024
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Freshworks Freshdesk ...
Moderate
Unreviewed
CVE-2024-32129
was published
Apr 15, 2024
An Open Redirect vulnerability was found in Sipwise C5 NGCP Dashboard below mr11.5.1. The Open...
Low
Unreviewed
CVE-2024-28344
was published
Apr 10, 2024
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in WP OAuth Server OAuth Server...
Moderate
Unreviewed
CVE-2024-31253
was published
Apr 10, 2024
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Appcheap.Io App Builder.This...
Moderate
Unreviewed
CVE-2024-31282
was published
Apr 10, 2024
A DOM-based open redirection in the returnUrl parameter of INSTINCT UI Web Client 6.5.0 allows...
High
Unreviewed
CVE-2024-28287
was published
Apr 2, 2024
ProTip!
Advisories are also available from the
GraphQL API