-
Notifications
You must be signed in to change notification settings - Fork 772
Pull requests: github/advisory-database
Author
Label
Projects
Milestones
Reviews
Assignee
Sort
Pull requests list
[GHSA-fxg7-897c-57mp] Nuxt Ollama: Public Runtime Config Exposes Ollama API Key to Browser Clients
#9637
opened Sep 19, 2026 by
checkmator
Loading…
[GHSA-xq8m-7c5p-c2r6] Auth0 Next.js SDK has Improper Proxy Cache Lookup
#9636
opened Sep 19, 2026 by
nikpivkin
Loading…
[GHSA-5vv4-hvf7-2h46] Command Injection via Unsanitized
locate Output in versions() — systeminformation
#9635
opened Sep 19, 2026 by
nikpivkin
Loading…
[GHSA-c83g-rgw3-j3cx] Browserslist: Unbounded memory growth (no cache eviction) via distinct query results, leading to eventual OOM
#9633
opened Sep 19, 2026 by
leaan88
Loading…
[GHSA-8wpr-639p-ccrj] Nest has a Fastify URL Encoding Middleware Bypass (TOCTOU)
#9632
opened Sep 19, 2026 by
nikpivkin
Loading…
[GHSA-xc6g-ggrc-qq4r] Cross-Site Scripting in sanitize-html
#9631
opened Sep 19, 2026 by
nikpivkin
Loading…
[GHSA-p2x3-8689-cwpg] Parse Server's GraphQL WebSocket endpoint bypasses security middleware
#9630
opened Sep 19, 2026 by
nikpivkin
Loading…
[GHSA-25hc-qcg6-38wj] socket.io has an unhandled 'error' event
#9629
opened Sep 19, 2026 by
nikpivkin
Loading…
[GHSA-984m-rj28-8c6x] Plone unauthorized member addition vulnerability
#9627
opened Sep 19, 2026 by
nikpivkin
Loading…
[GHSA-22jr-vc7j-g762] Potential buffer overflow in psd-tools
#9626
opened Sep 19, 2026 by
nikpivkin
Loading…
[GHSA-jr78-w6w5-m8f8] Add Semantic MediaWiki fix commit reference
#9625
opened Sep 19, 2026 by
TayfurYldz
Loading…
[GHSA-q5fm-9mx6-44f4] Add Semantic MediaWiki fix commit reference
#9624
opened Sep 19, 2026 by
TayfurYldz
Loading…
[GHSA-v25g-mvwr-f5fp] Add webhookd fix commit reference
#9623
opened Sep 19, 2026 by
TayfurYldz
Loading…
[GHSA-78v8-vpjp-cjqh] PDM wheel installation leads to Path Traversal via overridden write_to_fs
#9621
opened Sep 19, 2026 by
nikpivkin
Loading…
[GHSA-5p3h-7fwh-92rc] Remote Code Execution due to Full Controled File Write in mlflow
#9620
opened Sep 19, 2026 by
nikpivkin
Loading…
[GHSA-cjvr-mfj7-j4j8] Incorrect Authorization and Exposure of Sensitive Information to an Unauthorized Actor in scrapy
#9619
opened Sep 19, 2026 by
nikpivkin
Loading…
[GHSA-3vx7-xff6-h2vx] OpenStack Nova instance migration process does not stop when instance is deleted
#9618
opened Sep 19, 2026 by
nikpivkin
Loading…
[GHSA-x8wj-cqmp-3wmm] Cross-site Scripting in Zenario CMS
#9616
opened Sep 19, 2026 by
nikpivkin
Loading…
[GHSA-rgg3-3wh7-w935] Unrestricted Upload of File with Dangerous Type in Zenario CMS
#9615
opened Sep 19, 2026 by
nikpivkin
Loading…
[GHSA-9vh6-qfv6-vcqp] snipe-IT vulnerable to host header injection
#9614
opened Sep 19, 2026 by
nikpivkin
Loading…
[GHSA-rh9f-gr6q-mpc4] moonshine Stored Cross-Site Scripting Vulnerability in Create Admin
#9613
opened Sep 19, 2026 by
nikpivkin
Loading…
[GHSA-r8cr-4f9w-7r75] Correct Netmaker patched version
#9612
opened Sep 19, 2026 by
TayfurYldz
Loading…
[GHSA-h2qv-fj59-j46j] Add Netty HAProxy fix commit references
#9611
opened Sep 19, 2026 by
TayfurYldz
Loading…
Previous Next
ProTip!
Exclude everything labeled
bug with -label:bug.