-
Notifications
You must be signed in to change notification settings - Fork 529
Pull requests: github/advisory-database
Author
Label
Projects
Milestones
Reviews
Assignee
Sort
Pull requests list
[GHSA-qvhc-9v3j-5rfw] Microsoft Security Advisory CVE-2026-21218 | .NET Security Feature Bypass Vulnerability
#6855
opened Feb 13, 2026 by
bribrothers
Loading…
[GHSA-v62p-rq8g-8h59] pbkdf2 silently disregards Uint8Array input, returning static keys
#6853
opened Feb 12, 2026 by
ljharb
Loading…
Add CVSS 3.1 score for GHSA-r6ph-v2qm-q3c2 (cryptography Subgroup Attack)
#6852
opened Feb 12, 2026 by
sunnypatell
Loading…
Add CVSS 3.1 score for GHSA-cfh3-3jmp-rvhc (Pillow OOB Write via PSD)
#6851
opened Feb 12, 2026 by
sunnypatell
Loading…
Add CVSS 3.1 score for GHSA-2q4j-m29v-hq73 (pypdf Infinite Loop)
#6850
opened Feb 12, 2026 by
sunnypatell
Loading…
Add CVSS 3.1 score for GHSA-xfhx-r7ww-5995 (Keras DoS via HDF5 Loading)
#6849
opened Feb 12, 2026 by
sunnypatell
Loading…
Add CVSS 3.1 score for GHSA-38vq-g6vr-w8wf (SentencePiece Heap Overflow)
#6848
opened Feb 12, 2026 by
sunnypatell
Loading…
Add CVSS 3.1 score for GHSA-6426-9fv3-65x8 (Django SQL Injection)
#6847
opened Feb 12, 2026 by
sunnypatell
Loading…
Add CVSS 3.1 score for GHSA-x4h9-gwv3-r4m4 (ruby-saml Signature Bypass)
#6846
opened Feb 12, 2026 by
sunnypatell
Loading…
[GHSA-58pw-r2v4-pwjv] Improve advisory details: reference incomplete fix for CVE-2025-11001
#6791
opened Feb 6, 2026 by
decsecre583
Loading…
[GHSA-x43h-8pfv-xx24] Improve advisory details: reference incomplete fix for CVE-2024-6383
#6790
opened Feb 6, 2026 by
decsecre583
Loading…
[GHSA-cm59-8rmv-f2cj] Improve advisory details: reference incomplete fix for CVE-2024-5125
#6789
opened Feb 6, 2026 by
decsecre583
Loading…
[GHSA-8jxr-mccc-mwg8] Improve advisory details: reference incomplete fix for CVE-2024-43795
#6788
opened Feb 6, 2026 by
decsecre583
Loading…
[GHSA-632q-77qj-c89q] Improve advisory details: reference incomplete fix for CVE-2024-28709
#6787
opened Feb 6, 2026 by
decsecre583
Loading…
[GHSA-vg7j-7cwx-8wgw] Mongoose search injection vulnerability
#6784
opened Feb 5, 2026 by
ljharb
Loading…
[GHSA-r6q2-hw4h-h46w] Race Condition in node-tar Path Reservations via Unicode Ligature Collisions on macOS APFS
Stale
#6733
opened Jan 28, 2026 by
ssushant0011
Loading…
[GHSA-rqff-837h-mm52] Authorization bypass in url-parse
Keep
#6723
opened Jan 26, 2026 by
ljharb
Loading…
[GHSA-xgcg-2hvp-fj6w] A cross-site scripting (XSS) vulnerability exists in...
Stale
#6716
opened Jan 26, 2026 by
berkpseSICKAG
Loading…
[GHSA-77c8-xpc7-q24c] The built-in XY Chart plugin is vulnerable to a DOM XSS...
Stale
#6715
opened Jan 26, 2026 by
berkpseSICKAG
Loading…
[GHSA-w5j6-7wpf-g6rw] A security vulnerability in the /apis/dashboard.grafana...
Stale
#6714
opened Jan 26, 2026 by
berkpseSICKAG
Loading…
[GHSA-98pr-9hw5-crg3] An open redirect vulnerability has been identified in...
Stale
#6713
opened Jan 26, 2026 by
berkpseSICKAG
Loading…
[GHSA-8v38-pw62-9cw2] url-parse Incorrectly parses URLs that include an '@'
Keep
#6700
opened Jan 24, 2026 by
ljharb
Loading…
[GHSA-m494-w24q-6f7w] JDBC Driver for SQL Server has improper input validation issue
Stale
#6638
opened Jan 12, 2026 by
gdsmith
Loading…
[GHSA-77r5-gw3j-2mpf] Next.js Vulnerable to HTTP Request Smuggling
#6636
opened Jan 10, 2026 by
mistressxalexis
Loading…
[GHSA-x4c5-c7rf-jjgv] @octokit/endpoint has a Regular Expression in parse that Leads to ReDoS Vulnerability Due to Catastrophic Backtracking
Stale
#6573
opened Dec 22, 2025 by
G-Rath
Loading…
ProTip!
Mix and match filters to narrow down what you’re looking for.