webtrees online genealogy
88%
Total Score
88
100
94
100
One contributor made about 91% of the 243 commits in the last three months, while eight others contributed and the repository is user-owned rather than organization-owned. The active secondary contributors partly compensate, but concentration remains a maintenance-resilience concern.
Composer build tooling is present, but no security-scanning tools were detected. The missing scanner is a modest hygiene gap, not evidence of abandonment or unsafe behavior by itself.
| Title | Versions | Severity |
|---|---|---|
CVE-2024-22723 fisharebest/webtrees is vulnerable to Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in versions 0.0.0 - 2.1.18. | 0.0.0 - 2.1.18 | Medium |
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
psr/cache Version 3.0.0 | — | — |
aura/router Version 3.4.2 | — | — |
nyholm/psr7 Version 1.8.2 | — | — |
ramsey/uuid Version 4.9.2 | — | — |
nesbot/carbon Version 3.11.4 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.