Essential vulnerability data for your ecosystem
Advisories is a comprehensive open API service that provides professional-quality security vulnerability metadata for numerous open source software ecosystems for free
Comprehensive vulnerability database
Access unified vulnerability data from multiple sources including package registries, software repositories, and vulnerability databases, giving you a comprehensive view of security threats across your entire open source stack.
Latest vulnerabilities
View allethyca-fides has a DOM-based XSS vulnerability in fides.js via fides_description override
Apostrophe has stored XSS via javascript: URL in Image Widget Link
Apostrophe has a Weak Password Recovery Mechanism for Forgotten Password and Improper Input Validation
Apostrophe has authenticated SSRF in rich-text widget import via @apostrophecms/area/validate-widget
Get complete security visibility
Access unified vulnerability data from multiple sources including package registries, software repositories, and vulnerability databases, giving you a comprehensive view of security threats across your entire open source stack.
Stay ahead of security risks
Identify which packages and projects in your dependencies are affected by security advisories, empowering you to make informed decisions and address vulnerabilities before they become critical threats to your systems.
Integrate seamlessly into your workflow
Enjoy 5,000 requests per hour rate limits and comprehensive REST API documentation, allowing you to easily incorporate security intelligence into your development and security management processes.
Get started
Find a project and see it in our dashboard, with statistics on responsiveness, productivity, finance and more available to compare over time.