-
Notifications
You must be signed in to change notification settings - Fork 529
Pull requests: github/advisory-database
Author
Label
Projects
Milestones
Reviews
Assignee
Sort
Pull requests list
[GHSA-v62p-rq8g-8h59] pbkdf2 silently disregards Uint8Array input, returning static keys
#6853
opened Feb 12, 2026 by
ljharb
Loading…
Add CVSS 3.1 score for GHSA-r6ph-v2qm-q3c2 (cryptography Subgroup Attack)
#6852
opened Feb 12, 2026 by
sunnypatell
Loading…
Add CVSS 3.1 score for GHSA-cfh3-3jmp-rvhc (Pillow OOB Write via PSD)
#6851
opened Feb 12, 2026 by
sunnypatell
Loading…
Add CVSS 3.1 score for GHSA-2q4j-m29v-hq73 (pypdf Infinite Loop)
#6850
opened Feb 12, 2026 by
sunnypatell
Loading…
Add CVSS 3.1 score for GHSA-xfhx-r7ww-5995 (Keras DoS via HDF5 Loading)
#6849
opened Feb 12, 2026 by
sunnypatell
Loading…
Add CVSS 3.1 score for GHSA-38vq-g6vr-w8wf (SentencePiece Heap Overflow)
#6848
opened Feb 12, 2026 by
sunnypatell
Loading…
Add CVSS 3.1 score for GHSA-6426-9fv3-65x8 (Django SQL Injection)
#6847
opened Feb 12, 2026 by
sunnypatell
Loading…
Add CVSS 3.1 score for GHSA-x4h9-gwv3-r4m4 (ruby-saml Signature Bypass)
#6846
opened Feb 12, 2026 by
sunnypatell
Loading…
[GHSA-qvhc-9v3j-5rfw] Microsoft Security Advisory CVE-2026-21218 | .NET Security Feature Bypass Vulnerability
#6845
opened Feb 12, 2026 by
yusuke-koyoshi
Loading…
[GHSA-qvhc-9v3j-5rfw] Microsoft Security Advisory CVE-2026-21218 | .NET Security Feature Bypass Vulnerability
#6844
opened Feb 12, 2026 by
bribrothers
Loading…
[GHSA-vx5f-vmr6-32wf] cap-go/capacitor-native-biometric Authentication Bypass
#6843
opened Feb 11, 2026 by
itz-d0dgy-2nd
Loading…
[GHSA-r8w2-w357-9pjv] XDocReport affected by a Server-Side Template Injection (SSTI) vulnerability
#6840
opened Feb 11, 2026 by
kevinleturc
Loading…
[GHSA-qv2v-m59f-v5fw] Insecure randomness in socket.io
#6839
opened Feb 11, 2026 by
quanghuynh10111-png
Loading…
[GHSA-m7xq-9374-9rvx] Mongoose search injection vulnerability
#6838
opened Feb 11, 2026 by
asrar-mared
Loading…
Comprehensive improvements: Disabling alerts and reviewing changes
#6837
opened Feb 11, 2026 by
asrar-mared
•
Draft
[GHSA-qvhc-9v3j-5rfw] Microsoft Security Advisory CVE-2026-21218 | .NET Security Feature Bypass Vulnerability
#6836
opened Feb 11, 2026 by
MattKilgore
Loading…
[GHSA-rcmh-qjqh-p98v] Nodemailer’s addressparser is vulnerable to DoS caused by recursive calls
#6835
opened Feb 10, 2026 by
uko3211
Loading…
[GHSA-436v-jg82-p533] Deserialization of untrusted data in Azure SDK allows an...
#6834
opened Feb 10, 2026 by
scottaddie
Loading…
[GHSA-v98v-ff95-f3cp] n8n Vulnerable to Remote Code Execution via Expression Injection
#6823
opened Feb 10, 2026 by
111ddea
Loading…
[GHSA-58pw-r2v4-pwjv] Improve advisory details: reference incomplete fix for CVE-2025-11001
#6791
opened Feb 6, 2026 by
decsecre583
Loading…
[GHSA-x43h-8pfv-xx24] Improve advisory details: reference incomplete fix for CVE-2024-6383
#6790
opened Feb 6, 2026 by
decsecre583
Loading…
[GHSA-cm59-8rmv-f2cj] Improve advisory details: reference incomplete fix for CVE-2024-5125
#6789
opened Feb 6, 2026 by
decsecre583
Loading…
[GHSA-8jxr-mccc-mwg8] Improve advisory details: reference incomplete fix for CVE-2024-43795
#6788
opened Feb 6, 2026 by
decsecre583
Loading…
[GHSA-632q-77qj-c89q] Improve advisory details: reference incomplete fix for CVE-2024-28709
#6787
opened Feb 6, 2026 by
decsecre583
Loading…
[GHSA-vg7j-7cwx-8wgw] Mongoose search injection vulnerability
#6784
opened Feb 5, 2026 by
ljharb
Loading…
Previous Next
ProTip!
Exclude everything labeled
bug with -label:bug.