-
Notifications
You must be signed in to change notification settings - Fork 529
Pull requests: github/advisory-database
Author
Label
Projects
Milestones
Reviews
Assignee
Sort
Pull requests list
[GHSA-qv2v-m59f-v5fw] Insecure randomness in socket.io
#6839
opened Feb 11, 2026 by
quanghuynh10111-png
Loading…
[GHSA-m7xq-9374-9rvx] Mongoose search injection vulnerability
#6838
opened Feb 11, 2026 by
asrar-mared
Loading…
Comprehensive improvements: Disabling alerts and reviewing changes
#6837
opened Feb 11, 2026 by
asrar-mared
•
Draft
[GHSA-qvhc-9v3j-5rfw] Microsoft Security Advisory CVE-2026-21218 | .NET Security Feature Bypass Vulnerability
#6836
opened Feb 11, 2026 by
MattKilgore
Loading…
[GHSA-rcmh-qjqh-p98v] Nodemailer’s addressparser is vulnerable to DoS caused by recursive calls
#6835
opened Feb 10, 2026 by
uko3211
Loading…
[GHSA-436v-jg82-p533] Deserialization of untrusted data in Azure SDK allows an...
#6834
opened Feb 10, 2026 by
scottaddie
Loading…
[GHSA-v98v-ff95-f3cp] n8n Vulnerable to Remote Code Execution via Expression Injection
#6823
opened Feb 10, 2026 by
111ddea
Loading…
[GHSA-mrrh-fwg8-r2c3] tj-actions changed-files through 45.0.7 allows remote attackers to discover secrets by reading actions logs.
#6821
opened Feb 10, 2026 by
EthanThePhoenix38
Loading…
Add CVSS 3.1 score for GHSA-vmhw-fhj6-m3g5 (angular-http-server Path Traversal)
#6820
opened Feb 10, 2026 by
sunnypatell
Loading…
Add CVSS 3.1 score for GHSA-w7q7-vjp8-7jv4 (typeorm SQL Injection)
#6819
opened Feb 10, 2026 by
sunnypatell
Loading…
Add CVSS 3.1, CWE, and CVE alias for GHSA-52rh-5rpj-c3w6 (node-irc)
#6818
opened Feb 10, 2026 by
sunnypatell
Loading…
[GHSA-87r5-mp6g-5w5j] All versions of the package jsonpath are vulnerable to...
#6815
opened Feb 9, 2026 by
saivarun3407
Loading…
[GHSA-6fgp-m6q4-j3q5] The Pydantic-AI MCP Run Python tool configures the Deno...
#6814
opened Feb 9, 2026 by
saivarun3407
Loading…
[GHSA-pfv4-wmph-5gc6] The Python code being run by 'runPython' or ...
#6812
opened Feb 9, 2026 by
saivarun3407
Loading…
[GHSA-c244-p6m5-vqj6] Authentication Bypass by Alternate Name vulnerability in...
#6811
opened Feb 9, 2026 by
saivarun3407
Loading…
[GHSA-5g2w-9f8g-g5q7] Apache Airflow versions before 3.1.7, has vulnerability...
#6810
opened Feb 9, 2026 by
saivarun3407
Loading…
[GHSA-pm44-x5x7-24c4] Apache Airflow versions 3.1.0 through 3.1.6 contain an...
#6809
opened Feb 9, 2026 by
saivarun3407
Loading…
[GHSA-58pw-r2v4-pwjv] Improve advisory details: reference incomplete fix for CVE-2025-11001
#6791
opened Feb 6, 2026 by
decsecre583
Loading…
[GHSA-x43h-8pfv-xx24] Improve advisory details: reference incomplete fix for CVE-2024-6383
#6790
opened Feb 6, 2026 by
decsecre583
Loading…
[GHSA-cm59-8rmv-f2cj] Improve advisory details: reference incomplete fix for CVE-2024-5125
#6789
opened Feb 6, 2026 by
decsecre583
Loading…
[GHSA-8jxr-mccc-mwg8] Improve advisory details: reference incomplete fix for CVE-2024-43795
#6788
opened Feb 6, 2026 by
decsecre583
Loading…
[GHSA-632q-77qj-c89q] Improve advisory details: reference incomplete fix for CVE-2024-28709
#6787
opened Feb 6, 2026 by
decsecre583
Loading…
[GHSA-vg7j-7cwx-8wgw] Mongoose search injection vulnerability
#6784
opened Feb 5, 2026 by
ljharb
Loading…
[GHSA-r6q2-hw4h-h46w] Race Condition in node-tar Path Reservations via Unicode Ligature Collisions on macOS APFS
#6733
opened Jan 28, 2026 by
ssushant0011
Loading…
[GHSA-rqff-837h-mm52] Authorization bypass in url-parse
Keep
#6723
opened Jan 26, 2026 by
ljharb
Loading…
Previous Next
ProTip!
Mix and match filters to narrow down what you’re looking for.