GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,134
Erlang
29
GitHub Actions
19
Go
1,941
Maven
5,000+
npm
3,678
NuGet
645
pip
3,297
Pub
11
RubyGems
877
Rust
830
Swift
35
Unreviewed advisories
All unreviewed
5,000+
2,384 advisories
Filter by severity
Typo3 Arbitrary file upload and XML External Entity processing
Moderate
GHSA-2p4f-vc9q-r5vp
was published
for
typo3/flow
(Composer)
Jun 5, 2024
By-passing Protection of PharStreamWrapper Interceptor
Moderate
GHSA-4v5g-8pq2-32m2
was published
for
typo3/phar-stream-wrapper
(Composer)
Jun 5, 2024
Time-Based Information Disclosure Vulnerability in Flow
Moderate
GHSA-r6mm-wmhf-849m
was published
for
typo3/flow
(Composer)
Jun 5, 2024
Privilege Escalation in TYPO3 Neos
Moderate
GHSA-wr3c-6c22-m9v6
was published
for
typo3/neos
(Composer)
Jun 5, 2024
Typo3 Cross-Site Scripting in Language Pack Handling
Moderate
GHSA-259v-xm34-p7fr
was published
for
typo3/cms
(Composer)
Jun 5, 2024
Typo3 Broken Access Control in Import Module
Moderate
GHSA-f5rr-9r84-wwqf
was published
for
typo3/cms
(Composer)
Jun 5, 2024
Typo3 Arbitrary Code Execution and Cross-Site Scripting in Backend API
Moderate
GHSA-hww5-6x85-mc24
was published
for
typo3/cms
(Composer)
Jun 5, 2024
Typo3 Security Misconfiguration in Frontend Session Handling
Moderate
GHSA-qr5f-6fcv-w69q
was published
for
typo3/cms
(Composer)
Jun 5, 2024
Typo3 Security Misconfiguration in User Session Handling
Moderate
GHSA-g9rv-6g56-65h8
was published
for
typo3/cms
(Composer)
Jun 5, 2024
Typo3 Information Disclosure in Backend User Interface
Moderate
GHSA-q9c4-9v5m-597p
was published
for
typo3/cms
(Composer)
Jun 5, 2024
Typo3 Information Disclosure in User Authentication
Moderate
GHSA-m96r-7vqm-j95g
was published
for
typo3/cms
(Composer)
Jun 5, 2024
Cross-Site Scripting in TYPO3 CMS Backend
Moderate
GHSA-v4qr-8h2v-qpjx
was published
for
typo3/cms
(Composer)
Jun 5, 2024
Cross-Site Scripting in TYPO3 CMS
Moderate
GHSA-5gr6-97fv-52cc
was published
for
typo3/cms
(Composer)
Jun 5, 2024
Insecure Unserialize in TYPO3 Backend
Moderate
GHSA-c7rj-92xr-wprg
was published
for
typo3/cms
(Composer)
Jun 5, 2024
Cache Flooding in TYPO3 Frontend
Moderate
GHSA-pw2q-qwvj-gh43
was published
for
typo3/cms
(Composer)
Jun 5, 2024
Authentication Bypass in TYPO3 Frontend
Moderate
GHSA-mh3r-6cp5-hc2j
was published
for
typo3/cms
(Composer)
Jun 5, 2024
Authentication Bypass in TYPO3 CMS
Moderate
GHSA-6f9m-v7mp-7jjq
was published
for
typo3/cms
(Composer)
Jun 5, 2024
Information Disclosure in TYPO3 CMS
Moderate
GHSA-g46h-v2cc-6c94
was published
for
typo3/cms
(Composer)
Jun 5, 2024
Cross-Site Scripting (XSS) vulnerability in typolinks
Moderate
GHSA-p5c5-gmj4-g48f
was published
for
typo3/cms
(Composer)
Jun 5, 2024
Cross-Site Scripting (XSS) in TYPO3 Backend
Moderate
GHSA-hq37-rfjc-mr8h
was published
for
typo3/cms
(Composer)
Jun 5, 2024
Cross-Site Scripting in third party library mso/idna-convert
Moderate
GHSA-qmwf-j7g7-f5jw
was published
for
typo3/cms
(Composer)
Jun 5, 2024
Information Disclosure in TYPO3 Backend
Moderate
GHSA-vpr3-rc99-2wpr
was published
for
typo3/cms
(Composer)
Jun 5, 2024
SQL Injection in TYPO3 Frontend Login
Moderate
GHSA-j86x-pjmr-9m6w
was published
for
typo3/cms
(Composer)
Jun 5, 2024
Insecure Unserialize in TYPO3 Import/Export
Moderate
GHSA-xvcp-33rc-j8gq
was published
for
typo3/cms
(Composer)
Jun 5, 2024
Cross-Site Scripting in TYPO3 Backend
Moderate
GHSA-86r8-4g3w-7xjp
was published
for
typo3/cms
(Composer)
Jun 5, 2024
ProTip!
Advisories are also available from the
GraphQL API