GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,969
Erlang
39
GitHub Actions
38
Go
2,623
Maven
5,000+
npm
4,256
NuGet
760
pip
4,047
Pub
12
RubyGems
953
Rust
1,052
Swift
45
Unreviewed advisories
All unreviewed
5,000+
452 advisories
Filter by severity
The Premium Portfolio Features for Phlox theme plugin for WordPress is vulnerable to Local File...
High
Unreviewed
CVE-2025-12497
was published
Nov 5, 2025
The Elegance Menu plugin for WordPress is vulnerable to Local File Inclusion in all versions up...
High
Unreviewed
CVE-2025-11704
was published
Nov 4, 2025
The WPCOM Member plugin for WordPress is vulnerable to Local File Inclusion in all versions up to...
High
Unreviewed
CVE-2025-11920
was published
Nov 1, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-64363
was published
Oct 31, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-64364
was published
Oct 31, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-64359
was published
Oct 31, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-64360
was published
Oct 31, 2025
Nagios XI versions prior to 2024R1.1.4 contain a local file inclusion (LFI) vulnerability via its...
High
Unreviewed
CVE-2024-14002
was published
Oct 31, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-64284
was published
Oct 29, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-64216
was published
Oct 29, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-64195
was published
Oct 29, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-62868
was published
Oct 24, 2025
Inclusion of Functionality from Untrusted Control Sphere, Improper Control of Filename for...
Critical
Unreviewed
CVE-2025-11023
was published
Oct 23, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-62029
was published
Oct 22, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-62054
was published
Oct 22, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
Critical
Unreviewed
CVE-2025-58967
was published
Oct 22, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-59558
was published
Oct 22, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-59550
was published
Oct 22, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-59564
was published
Oct 22, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-59555
was published
Oct 22, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-58955
was published
Oct 22, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
Critical
Unreviewed
CVE-2025-58958
was published
Oct 22, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-49935
was published
Oct 22, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-49921
was published
Oct 22, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
Moderate
Unreviewed
CVE-2025-48338
was published
Oct 22, 2025
ProTip!
Advisories are also available from the
GraphQL API