-
Notifications
You must be signed in to change notification settings - Fork 532
Pull requests: github/advisory-database
Author
Label
Projects
Milestones
Reviews
Assignee
Sort
Pull requests list
[GHSA-vx9q-rhv9-3jvg] aircompressor Snappy and LZ4 Java-based decompressor implementation can leak information from reused output buffer
#7065
opened Feb 24, 2026 by
lhotari
Loading…
[GHSA-qq67-mvv5-fw3g] Astro has Full-Read SSRF in error rendering via Host: header injection
#7055
opened Feb 24, 2026 by
kytta
Loading…
[GHSA-gv5r-9gxr-v74w] Bootstrap Multiselect Vulnerable to CSRF and Reflective XSS via Arbitrary POST Data
#7039
opened Feb 24, 2026 by
abrom
Loading…
[GHSA-8398-gmmx-564h] n8n has a Python sandbox escape
#7029
opened Feb 23, 2026 by
c0rydoras
Loading…
[GHSA-xhvv-3jww-c487] ActiveAdmin CSV Injection leading to sensitive information disclosure
#7011
opened Feb 23, 2026 by
jzee-rx
Loading…
[GHSA-j7j6-7hfx-5522] Duplicate Advisory: Inconsistent Interpretation of HTTP Requests in Waitress
#7001
opened Feb 22, 2026 by
xnuinside
Loading…
[GHSA-2x45-7fc3-mxwq] php-jwt contains weak encryption
#6954
opened Feb 18, 2026 by
derhansen
Loading…
[GHSA-58pw-r2v4-pwjv] Improve advisory details: reference incomplete fix for CVE-2025-11001
Stale
#6791
opened Feb 6, 2026 by
decsecre583
Loading…
[GHSA-x43h-8pfv-xx24] Improve advisory details: reference incomplete fix for CVE-2024-6383
Stale
#6790
opened Feb 6, 2026 by
decsecre583
Loading…
[GHSA-cm59-8rmv-f2cj] Improve advisory details: reference incomplete fix for CVE-2024-5125
Stale
#6789
opened Feb 6, 2026 by
decsecre583
Loading…
[GHSA-8jxr-mccc-mwg8] Improve advisory details: reference incomplete fix for CVE-2024-43795
Stale
#6788
opened Feb 6, 2026 by
decsecre583
Loading…
[GHSA-632q-77qj-c89q] Improve advisory details: reference incomplete fix for CVE-2024-28709
#6787
opened Feb 6, 2026 by
decsecre583
Loading…
[GHSA-r6q2-hw4h-h46w] Race Condition in node-tar Path Reservations via Unicode Ligature Collisions on macOS APFS
#6733
opened Jan 28, 2026 by
ssushant0011
Loading…
[GHSA-77r5-gw3j-2mpf] Next.js Vulnerable to HTTP Request Smuggling
Stale
#6636
opened Jan 10, 2026 by
mistressxalexis
Loading…
ProTip!
Type g p on any issue or pull request to go back to the pull request listing page.