GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,731
Erlang
35
GitHub Actions
29
Go
2,308
Maven
5,000+
npm
3,949
NuGet
711
pip
3,727
Pub
12
RubyGems
920
Rust
964
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
47 advisories
Filter by severity
Path Traversal: '.../...//' vulnerability in bslthemes Tastyc allows PHP Local File Inclusion...
High
Unreviewed
CVE-2025-27010
was published
May 19, 2025
Path Traversal vulnerability in WHMPress WHMpress allows Relative Path Traversal. This issue...
High
Unreviewed
CVE-2025-39492
was published
May 16, 2025
Path Traversal vulnerability in WHMPress WHMpress allows Path Traversal. This issue affects...
High
Unreviewed
CVE-2025-39491
was published
May 16, 2025
Path Traversal vulnerability in ilmosys Open Close WooCommerce Store allows PHP Local File...
High
Unreviewed
CVE-2025-47649
was published
May 7, 2025
Path Traversal vulnerability in Fernando Briano List category posts allows PHP Local File...
High
Unreviewed
CVE-2025-47636
was published
May 7, 2025
Path Traversal: '.../...//' vulnerability in ThimPress Ivy School allows PHP Local File Inclusion...
High
Unreviewed
CVE-2025-39470
was published
Apr 18, 2025
Path Traversal vulnerability in Trusty Plugins Shop Products Filter allows PHP Local File...
High
Unreviewed
CVE-2025-32585
was published
Apr 11, 2025
SAP Capital Yield Tax Management has directory traversal vulnerability due to insufficient path...
High
Unreviewed
CVE-2025-30014
was published
Apr 8, 2025
Path Traversal vulnerability in Bit Apps Bit Assist allows Path Traversal. This issue affects Bit...
High
Unreviewed
CVE-2025-30834
was published
Apr 1, 2025
Path Traversal vulnerability in NotFound GetShop ecommerce allows Path Traversal. This issue...
High
Unreviewed
CVE-2024-54362
was published
Mar 28, 2025
Path Traversal vulnerability in NotFound WizShop allows PHP Local File Inclusion. This issue...
High
Unreviewed
CVE-2025-25122
was published
Mar 3, 2025
Path Traversal vulnerability in wpjobportal WP Job Portal allows PHP Local File Inclusion. This...
High
Unreviewed
CVE-2025-26935
was published
Feb 25, 2025
A CWE-35 "Path Traversal" in maxtime/api/database/database.lua (setActive endpoint) in Q-Free...
High
Unreviewed
CVE-2025-26356
was published
Feb 12, 2025
A CWE-35 "Path Traversal" in maxtime/api/database/database.lua (copy endpoint) in Q-Free MaxTime...
High
Unreviewed
CVE-2025-26354
was published
Feb 12, 2025
Improper handling of input variables lead to multiple path traversal vulnerabilities in the...
High
Unreviewed
CVE-2025-22205
was published
Feb 4, 2025
Path Traversal vulnerability in MORKVA Morkva UA Shipping allows PHP Local File Inclusion. This...
High
Unreviewed
CVE-2025-24685
was published
Jan 27, 2025
Path Traversal vulnerability in ElementInvader ElementInvader Addons for Elementor allows PHP...
High
Unreviewed
CVE-2025-22786
was published
Jan 15, 2025
Path Traversal vulnerability in SMSA Express SMSA Shipping allows Path Traversal.This issue...
High
Unreviewed
CVE-2024-49249
was published
Jan 7, 2025
Path Traversal: '.../...//' vulnerability in DeluxeThemes Userpro allows Path Traversal.This...
High
Unreviewed
CVE-2024-56214
was published
Dec 31, 2024
Some Huawei home music system products have a path traversal vulnerability. Successful...
High
Unreviewed
CVE-2023-7263
was published
Dec 28, 2024
Huawei Home Music System has a path traversal vulnerability. Successful exploitation of this...
High
Unreviewed
CVE-2023-7300
was published
Dec 26, 2024
Path Traversal: '.../...//' vulnerability in VibeThemes WPLMS allows Path Traversal.This issue...
High
Unreviewed
CVE-2024-56049
was published
Dec 18, 2024
Path Traversal: '.../...//' vulnerability in VibeThemes WPLMS allows Path Traversal.This issue...
High
Unreviewed
CVE-2024-56055
was published
Dec 18, 2024
Path Traversal vulnerability in NotFound ARForms allows Path Traversal.This issue affects ARForms...
High
Unreviewed
CVE-2024-54216
was published
Dec 6, 2024
Path Traversal: '.../...//' vulnerability in Softpulse Infotech SP Blog Designer allows PHP Local...
High
Unreviewed
CVE-2024-52498
was published
Nov 28, 2024
ProTip!
Advisories are also available from the
GraphQL API