GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,454
Erlang
33
GitHub Actions
22
Go
2,153
Maven
5,000+
npm
3,818
NuGet
693
pip
3,492
Pub
12
RubyGems
902
Rust
903
Swift
38
Unreviewed advisories
All unreviewed
5,000+
114 advisories
Filter by severity
Directory Traversal (Local File Inclusion) vulnerability in Tikit (now Advanced) eMarketing...
Moderate
Unreviewed
CVE-2023-49031
was published
Mar 3, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-27264
was published
Mar 3, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-25109
was published
Mar 3, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-23945
was published
Mar 3, 2025
The WHMpress - WHMCS WordPress Integration Plugin plugin for WordPress is vulnerable to Local...
Critical
Unreviewed
CVE-2024-9193
was published
Feb 28, 2025
The Traveler theme for WordPress is vulnerable to Local File Inclusion in all versions up to, and...
High
Unreviewed
CVE-2024-12811
was published
Feb 28, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-26964
was published
Feb 25, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-26979
was published
Feb 25, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-26957
was published
Feb 25, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-26985
was published
Feb 25, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-26932
was published
Feb 25, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-27272
was published
Feb 24, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-26757
was published
Feb 22, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-26760
was published
Feb 22, 2025
The Responsive Addons for Elementor – Free Elementor Addons Plugin and Elementor Templates plugin...
High
Unreviewed
CVE-2024-13353
was published
Feb 21, 2025
The Team Builder For WPBakery Page Builder(Formerly Visual Composer) plugin for WordPress is...
High
Unreviewed
CVE-2024-13592
was published
Feb 19, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-22656
was published
Feb 18, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-25141
was published
Feb 7, 2025
The BoomBox Theme Extensions plugin for WordPress is vulnerable to Local File Inclusion in all...
High
Unreviewed
CVE-2024-12859
was published
Feb 3, 2025
The Jupiter X Core plugin for WordPress is vulnerable to Local File Inclusion to Remote Code...
High
Unreviewed
CVE-2025-0366
was published
Feb 1, 2025
Network access can be used to execute arbitrary code with elevated privileges.
This
issue...
Critical
Unreviewed
CVE-2024-48841
was published
Jan 27, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
Moderate
Unreviewed
CVE-2025-24782
was published
Jan 27, 2025
The ThemeREX Addons plugin for WordPress is vulnerable to Local File Inclusion in all versions up...
High
Unreviewed
CVE-2025-0682
was published
Jan 25, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
Moderate
Unreviewed
CVE-2025-24733
was published
Jan 24, 2025
IBM Maximo Asset Management 7.6.1.3 MXAPIASSET API is vulnerable to unrestricted file upload...
Moderate
Unreviewed
CVE-2024-45077
was published
Jan 24, 2025
ProTip!
Advisories are also available from the
GraphQL API