Skip to content

GitHub Advisory Database

Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.

Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.

33,834 advisories

Loading
Improper neutralization of input during web page generation ('cross-site scripting')... Moderate Unreviewed
CVE-2026-8167 was published Jul 28, 2026
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')... Moderate Unreviewed
CVE-2026-66390 was published Jul 27, 2026
Ekushey Project Manager CRM through version 5.0 contains a stored cross-site scripting... Moderate Unreviewed
CVE-2026-66031 was published Jul 27, 2026
Ekushey Project Manager CRM through version 5.0 ccontains a stored cross-site scripting... Moderate Unreviewed
CVE-2026-66030 was published Jul 27, 2026
Ekushey Project Manager CRM through version 5.0 contains a stored cross-site scripting... Moderate Unreviewed
CVE-2026-66029 was published Jul 27, 2026
The Sina Extension for Elementor WordPress plugin before 3.10.2 does not escape a value... Moderate Unreviewed
CVE-2026-14190 was published Jul 27, 2026
The Advanced Ads WordPress plugin before 2.0.23 does not sanitize and escape a shortcode... Moderate Unreviewed
CVE-2026-10082 was published Jul 27, 2026
Stored condition values could also execute HTML/JavaScript in administrator summaries. Moderate Unreviewed
CVE-2026-63281 was published Jul 22, 2026
Contributor Cross Site Scripting (XSS) in Gallery PhotoBlocks <= 1.3.3 versions. Moderate Unreviewed
CVE-2026-66448 was published Jul 27, 2026
Contributor Cross Site Scripting (XSS) in Location Weather <= 3.0.6 versions. Moderate Unreviewed
CVE-2026-66433 was published Jul 27, 2026
Contributor Cross Site Scripting (XSS) in Open User Map <= 1.4.46 versions. Moderate Unreviewed
CVE-2026-66445 was published Jul 27, 2026
Author Cross Site Scripting (XSS) in Orbit Fox by ThemeIsle <= 3.0.7 versions. Moderate Unreviewed
CVE-2026-65563 was published Jul 27, 2026
ProTip! Advisories are also available from the GraphQL API