GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,963
Erlang
39
GitHub Actions
38
Go
2,615
Maven
5,000+
npm
4,255
NuGet
760
pip
4,036
Pub
12
RubyGems
953
Rust
1,049
Swift
45
Unreviewed advisories
All unreviewed
5,000+
384 advisories
Filter by severity
The WPCOM Member plugin for WordPress is vulnerable to Local File Inclusion in all versions up to...
High
Unreviewed
CVE-2025-11920
was published
Nov 1, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-64360
was published
Oct 31, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-64359
was published
Oct 31, 2025
Nagios XI versions prior to 2024R1.1.4 contain a local file inclusion (LFI) vulnerability via its...
High
Unreviewed
CVE-2024-14002
was published
Oct 31, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-64284
was published
Oct 29, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-64216
was published
Oct 29, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-64195
was published
Oct 29, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-62868
was published
Oct 24, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-62029
was published
Oct 22, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-62054
was published
Oct 22, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-59550
was published
Oct 22, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-59555
was published
Oct 22, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-59564
was published
Oct 22, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-59558
was published
Oct 22, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-58955
was published
Oct 22, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-49935
was published
Oct 22, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-49921
was published
Oct 22, 2025
The Woocommerce Category and Products Accordion Panel plugin for WordPress is vulnerable to Local...
High
Unreviewed
CVE-2025-11722
was published
Oct 15, 2025
The Tiny Bootstrap Elements Light plugin for WordPress is vulnerable to Local File Inclusion in...
High
Unreviewed
CVE-2025-9991
was published
Sep 30, 2025
The Bei Fen – WordPress Backup Plugin plugin for WordPress is vulnerable to Local File Inclusion...
High
Unreviewed
CVE-2025-9993
was published
Sep 30, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-60153
was published
Sep 26, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-60126
was published
Sep 26, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-60150
was published
Sep 26, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-59588
was published
Sep 22, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-58973
was published
Sep 22, 2025
ProTip!
Advisories are also available from the
GraphQL API