A database of PHP security advisories
-
Updated
Nov 12, 2025 - PHP
A database of PHP security advisories
Damn Vulnerable Web Application Docker container
Python script to detect vulnerabilities inside PHP source code using static analysis, based on regex
OWSAP Damn Vulnerable Web Sockets (DVWS) is a vulnerable web application which works on web sockets for client-server communication.
Added Laravel functionality to Enlightn Security Checker. Adds a command to check for, and optionally emails you, vulnerabilities when they affect you.
Manage all logistical information for a pentest including clients, contacts, employees, findings, projects, scoping, and vulnerabilities.
Legacy CLI, please upgrade to https://github.com/debricked/cli
Provides information if your SilverStripe application uses dependencies with known vulnerabilities.
A Laravel package that proactively monitors your dependencies for security vulnerabilities by running automated composer audits and sending notifications via webhooks and email
simple code directory brute
"InsecureTrust_Bank: Educational repo demonstrating web app vulnerabilities like SQL injection & XSS for security awareness. Use responsibly.
A PHP/MySQL application (with dockerized version) demonstrating common yet dangerous web app vulnerabilities, along with their fixes
Automated Tools Pentest
laraSec is a Laravel package that will scan your composer dependencies and alerts you about potention security vulnerabilities.
A very basic library for interacting with the WPScan Vulnerability Database API.
A collection of simple vulnerable web apps for testing vulnerability scanners or educational purposes.
LaraVuln, a simple web application aimed at security test labs and application development. Can be done by many test methods such as black box, white box and gray box, this web can be used for web security.
My publically disclosed vulnerability reports.
Add a description, image, and links to the vulnerabilities topic page so that developers can more easily learn about it.
To associate your repository with the vulnerabilities topic, visit your repo's landing page and select "manage topics."