GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,717
Maven
5,000+
npm
4,328
NuGet
761
pip
4,105
Pub
12
RubyGems
958
Rust
1,065
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
485 advisories
Filter by severity
The My auctions allegro plugin for WordPress is vulnerable to Local File Inclusion in all...
High
Unreviewed
CVE-2025-12851
was published
Dec 5, 2025
dcat-admin v2.2.3-beta and before is vulnerable to file inclusion in admin/src/Extend...
Critical
Unreviewed
CVE-2025-65656
was published
Dec 2, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
Unknown
Unreviewed
CVE-2025-66115
was published
Nov 21, 2025
The read function in file thinkphp\library\think\template\driver\File.php in ThinkPHP 5.0.24...
Moderate
Unreviewed
CVE-2025-63888
was published
Nov 20, 2025
An unauthenticated remote attacker can execute arbitrary php files and gain full access of the...
Critical
Unreviewed
CVE-2025-41734
was published
Nov 18, 2025
The Category and Product Woocommerce Tabs plugin for WordPress is vulnerable to Local File...
High
Unreviewed
CVE-2025-13088
was published
Nov 18, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-60073
was published
Nov 6, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-60189
was published
Nov 6, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-58995
was published
Nov 6, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-58994
was published
Nov 6, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-62066
was published
Nov 6, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-62067
was published
Nov 6, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-62075
was published
Nov 6, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-60192
was published
Nov 6, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-62053
was published
Nov 6, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-62055
was published
Nov 6, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-64287
was published
Nov 6, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-60240
was published
Nov 6, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-60194
was published
Nov 6, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-60193
was published
Nov 6, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-62045
was published
Nov 6, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
Critical
Unreviewed
CVE-2025-48330
was published
Nov 6, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-60074
was published
Nov 6, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
Critical
Unreviewed
CVE-2025-39466
was published
Nov 6, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
Critical
Unreviewed
CVE-2025-39463
was published
Nov 6, 2025
ProTip!
Advisories are also available from the
GraphQL API