-
Notifications
You must be signed in to change notification settings - Fork 736
Pull requests: github/advisory-database
Author
Label
Projects
Milestones
Reviews
Assignee
Sort
Pull requests list
[GHSA-q5p4-3w6j-xg73] UnoPim before 2.1.5 contains an authenticated file upload...
#9344
opened Sep 4, 2026 by
MAVERICK-VF142
Loading…
[GHSA-35p6-xmwp-9g52] undici vulnerable to HTTP response queue poisoning via keep-alive socket reuse
#9342
opened Sep 4, 2026 by
itsmemarysy01-sudo
Loading…
[GHSA-43wq-xrcm-3vgr] @discordjs/opus vulnerable to Denial of Service
#9341
opened Sep 4, 2026 by
westonsteimel
Loading…
GHSA-fr84-p27r-73vj: add npm package and version range for ssh-mcp
#9340
opened Sep 4, 2026 by
tufantunc
Loading…
[GHSA-v56q-mh7h-f735] Immutable.js
List 32-bit trie overflow → unrecoverable DoS
#9339
opened Sep 4, 2026 by
ravali-ch15
Loading…
[GHSA-q5pp-gvjg-h7v4] Correct PyPI package name from
apm to apm-cli
#9338
opened Sep 4, 2026 by
ank-builder
Loading…
Fix npm introduced version for GHSA-f962-v9hr-pfg5
#9337
opened Sep 4, 2026 by
jeffwidman
Member
Loading…
[GHSA-38x9-25wx-7fg2] Correct Go package name to canonical module path
#9336
opened Sep 4, 2026 by
ank-builder
Loading…
[ghsa-f44q-634c-jvwv] add NRDAX technique reference
#9330
opened Sep 3, 2026 by
simonmorley
Loading…
[ghsa-438q-jx8f-cccv] add NRDAX technique reference
#9329
opened Sep 3, 2026 by
simonmorley
Loading…
[ghsa-2x7m-gf85-3745] add NRDAX technique reference
#9328
opened Sep 3, 2026 by
simonmorley
Loading…
[ghsa-29x4-r6jv-ff4w] add NRDAX technique reference
#9327
opened Sep 3, 2026 by
simonmorley
Loading…
[GHSA-crf3-v9rr-v7hj] fastjson has a remote code execution (RCE) vulnerability
#9326
opened Sep 3, 2026 by
zc-18
Loading…
[GHSA-28wg-ghj8-5hjv] nanoid: non-secure generators can loop indefinitely with negative size
#9325
opened Sep 3, 2026 by
nullpoetry
Loading…
[GHSA-cvhv-g4rq-3hmw] Add upstream fix commit reference
#9322
opened Sep 2, 2026 by
Junaid-PK
Loading…
[GHSA-mgvc-8q2h-5pgc] Spring Boot has an Authentication Bypass under Actuator CloudFoundry endpoints
#9321
opened Sep 2, 2026 by
shaked-seal
Loading…
[GHSA-jwv3-5hgf-82ww] python-cryptography: Duplicate self-signed intermediates can cause exponential path-building
#9320
opened Sep 2, 2026 by
frenzymadness
Loading…
[GHSA-6956-f2gq-2c74] The extension passes the raw value of a form field...
#9319
opened Sep 2, 2026 by
cweiske
Loading…
[GHSA-qx8r-cr7v-r5mp] Apache Wicket enforces the upload limits configured on a ...
#9317
opened Sep 2, 2026 by
oscerd
Loading…
[GHSA-hx44-pxvx-pqrv] AjaxEditableChoiceLabel in wicket-extensions, when constr...
#9316
opened Sep 2, 2026 by
oscerd
Loading…
[GHSA-gfx8-6vm5-ghqh] Improper validation of resource URL attributes in Apache ...
#9315
opened Sep 2, 2026 by
oscerd
Loading…
[GHSA-f53h-v4wv-fq5x] Improper neutralization of input during web page generati...
#9314
opened Sep 2, 2026 by
oscerd
Loading…
[GHSA-85wm-m62p-pph5] Improper neutralization of input during web page generati...
#9313
opened Sep 2, 2026 by
oscerd
Loading…
Previous Next
ProTip!
Filter pull requests by the default branch with base:main.