GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,697
Erlang
34
GitHub Actions
28
Go
2,289
Maven
5,000+
npm
3,936
NuGet
708
pip
3,706
Pub
12
RubyGems
919
Rust
959
Swift
38
Unreviewed advisories
All unreviewed
5,000+
1,390 advisories
Filter by severity
A Server-side request forgery (SSRF) vulnerability has been identified in the SMA1000 Appliance...
High
Unreviewed
CVE-2025-40595
was published
May 14, 2025
The Ninja Forms Webhooks plugin for WordPress is vulnerable to Server-Side Request Forgery in all...
Moderate
Unreviewed
CVE-2024-13940
was published
May 14, 2025
Yifang CMS v2.0.2 is vulnerable to Server-Side Request Forgery (SSRF) in /api/file/getRemoteContent.
Critical
Unreviewed
CVE-2025-45887
was published
May 9, 2025
Server-Side Request Forgery (SSRF) in Azure allows an authorized attacker to perform spoofing...
Critical
Unreviewed
CVE-2025-29972
was published
May 9, 2025
Server-Side Request Forgery (SSRF) in Microsoft Power Apps allows an unauthorized attacker to...
Critical
Unreviewed
CVE-2025-47733
was published
May 9, 2025
Server-Side Request Forgery (SSRF) vulnerability in ThimPress WP Pipes allows Server Side Request...
Moderate
Unreviewed
CVE-2025-47664
was published
May 7, 2025
Server-Side Request Forgery (SSRF) vulnerability in WPWebinarSystem WebinarPress allows Server...
Moderate
Unreviewed
CVE-2025-47635
was published
May 7, 2025
Server-Side Request Forgery (SSRF) vulnerability in Varun Dubey Wbcom Designs - Activity Link...
Moderate
Unreviewed
CVE-2025-47548
was published
May 7, 2025
Server-Side Request Forgery (SSRF) vulnerability in Iulia Cazan Easy Replace Image allows Server...
Moderate
Unreviewed
CVE-2025-47483
was published
May 7, 2025
Server-Side Request Forgery (SSRF) vulnerability in Oliver Campion Display Remote Posts Block...
Moderate
Unreviewed
CVE-2025-47484
was published
May 7, 2025
Server-Side Request Forgery (SSRF) vulnerability in solacewp Solace Extra allows Server Side...
Moderate
Unreviewed
CVE-2025-47464
was published
May 7, 2025
MrDoc v0.95 and before is vulnerable to Server-Side Request Forgery (SSRF) in the validate_url...
Moderate
Unreviewed
CVE-2025-45250
was published
May 6, 2025
Sematell ReplyOne 7.4.3.0 allows SSRF via the application server API.
High
Unreviewed
CVE-2024-48907
was published
May 2, 2025
IBM Concert Software 1.0.0 through 1.0.5 is vulnerable to server-side request forgery (SSRF)....
Moderate
Unreviewed
CVE-2024-55910
was published
May 2, 2025
The Gravity Forms WebHooks plugin for WordPress is vulnerable to Server-Side Request Forgery in...
Moderate
Unreviewed
CVE-2024-13845
was published
May 1, 2025
A Server-side request forgery (SSRF) vulnerability has been identified in the SMA1000 Appliance...
High
Unreviewed
CVE-2025-2170
was published
Apr 30, 2025
DevExpress before 23.1.3 allows AsyncDownloader SSRF.
Moderate
Unreviewed
CVE-2023-35817
was published
Apr 28, 2025
A vulnerability was found in playeduxyz PlayEdu 开源培训系统 up to 1.8 and classified as problematic....
Moderate
Unreviewed
CVE-2025-4012
was published
Apr 28, 2025
A vulnerability, which was classified as problematic, has been found in ChurchCRM 5.16.0....
Moderate
Unreviewed
CVE-2025-3954
was published
Apr 27, 2025
The ShopLentor – WooCommerce Builder for Elementor & Gutenberg +20 Modules – All in One Solution ...
Moderate
Unreviewed
CVE-2025-3775
was published
Apr 25, 2025
Server-Side Request Forgery (SSRF) vulnerability in Ankur Vishwakarma WP AVCL Automation Helper ...
Moderate
Unreviewed
CVE-2025-46531
was published
Apr 24, 2025
Server-Side Request Forgery (SSRF) vulnerability in josheli Simple Google Photos Grid allows...
Moderate
Unreviewed
CVE-2025-46503
was published
Apr 24, 2025
Server-Side Request Forgery (SSRF) vulnerability in Derek Springer BeerXML Shortcode allows...
Moderate
Unreviewed
CVE-2025-46511
was published
Apr 24, 2025
Server-Side Request Forgery (SSRF) vulnerability in Adam Pery Animate allows Server Side Request...
Moderate
Unreviewed
CVE-2025-46443
was published
Apr 24, 2025
PostHog database_schema Server-Side Request Forgery Information Disclosure Vulnerability. This...
High
Unreviewed
CVE-2025-1522
was published
Apr 23, 2025
ProTip!
Advisories are also available from the
GraphQL API