-
Notifications
You must be signed in to change notification settings - Fork 775
Pull requests: github/advisory-database
Author
Label
Projects
Milestones
Reviews
Assignee
Sort
Pull requests list
[GHSA-2xpw-w6gg-jr37] urllib3 streaming API improperly handles highly compressed data
#9665
opened Sep 22, 2026 by
Chi-Song-Owen
Loading…
[GHSA-prx4-c736-33x3] A vulnerability has been found in SourceCodester Online...
#9663
opened Sep 21, 2026 by
MuhammadAmmar-Hacker
Loading…
[GHSA-qqmf-gpg7-g8gw] PyTorch Lightning allows arbitrary code execution through checkpoint _instantiator hyperparameters
#9662
opened Sep 21, 2026 by
gabrieldernbach
Loading…
Fix lightning fixed version (2.6.6) and add pytorch-lightning to GHSA-qqmf-gpg7-g8gw
#9660
opened Sep 21, 2026 by
drago-balto
Loading…
Correct fix commit reference for GHSA-4q2v-9p7v-3v22 (CVE-2025-22227)
#9659
opened Sep 21, 2026 by
anthonydahanne
Loading…
[GHSA-2v4p-qf9q-27wj] gRPC-Go xDS servers: Denial of Service (DoS) via crash due to missing
:authority and Host headers
#9658
opened Sep 21, 2026 by
juliankrone
Loading…
[GHSA-375g-39jq-vq7m] Potential buffer overflow in CBOR2 decoder
#9657
opened Sep 21, 2026 by
Chi-Song-Owen
Loading…
[GHSA-vjqc-q4mp-2rvf] CakePHP: Multiple methods in FunctionsBuilder vulnerable to SQL injection
#9656
opened Sep 21, 2026 by
mfn
Loading…
[GHSA-335q-cpqh-m68h] Uncontrolled resource consumption vulnerability in the...
#9655
opened Sep 21, 2026 by
nsx-maximverbruggen
Loading…
[GHSA-qqmf-gpg7-g8gw] PyTorch Lightning allows arbitrary code execution through checkpoint _instantiator hyperparameters
#9653
opened Sep 21, 2026 by
msft-lina
Loading…
[GHSA-gqch-g4w5-7qcw] MLflow: CreateModelVersion source validation does not check READ permission on referenced run_id
#9652
opened Sep 20, 2026 by
Fanxy13
Loading…
[GHSA-2v4p-qf9q-27wj] gRPC-Go xDS servers: Denial of Service (DoS) via crash due to missing
:authority and Host headers
#9651
opened Sep 20, 2026 by
karelvanhecke
Loading…
[GHSA-8p3j-58qw-jhp4] Add finder credit and Ubuntu USN reference (CVE-2022-0530)
#9650
opened Sep 20, 2026 by
ByteHackr
Loading…
[GHSA-wj94-fvj2-f29x] Add finder credit and Ubuntu USN reference (CVE-2022-0529)
#9649
opened Sep 20, 2026 by
ByteHackr
Loading…
[GHSA-66cv-5wq4-p78m] Add finder credit and affected package range (CVE-2026-81829)
#9648
opened Sep 20, 2026 by
ByteHackr
Loading…
[GHSA-pghw-ch4m-h3f9] Add finder credit and fix reference (CVE-2026-78367)
#9647
opened Sep 20, 2026 by
ByteHackr
Loading…
[GHSA-c9ff-59g8-m36q] Add finder credit and affected Maven ranges (CVE-2026-84218)
#9645
opened Sep 20, 2026 by
ByteHackr
Loading…
[GHSA-jhqm-m4j3-wqq2] Add finder credit (CVE-2026-79655)
#9646
opened Sep 20, 2026 by
ByteHackr
Loading…
[GHSA-r79c-pqj3-577x] Super-linter is vulnerable to command injection via crafted filenames in Super-linter Action
#9644
opened Sep 20, 2026 by
identity-wael
Loading…
[GHSA-9m44-rr2w-ppp7] Swift Crypto: X-Wing HPKE Decapsulation Accepts Malformed Ciphertext Length
#9643
opened Sep 20, 2026 by
identity-wael
Loading…
[GHSA-q3g2-m552-3r9c] swift-nio-http2: Missing CR/LF/NUL validation in header values
#9642
opened Sep 20, 2026 by
identity-wael
Loading…
[GHSA-4xqx-pqpj-9fqw] gajira-create GitHub action vulnerable to arbitrary code execution
#9641
opened Sep 20, 2026 by
sharadverma638
Loading…
[GHSA-jgm3-qmp2-c4p7] Vendure: Unauthenticated ReDoS via
regex filter on SQLite backends
#9640
opened Sep 20, 2026 by
checkmator
Loading…
[GHSA-q97c-8qh3-fpc6] phpseclib — non-constant-time X25519 scalar multiplication permits full private-key recovery
#9639
opened Sep 20, 2026 by
hexblot
Loading…
[GHSA-5h8j-6crg-7rmw] LMdeploy has Remote Code Execution by Pickle Deserialization via zmq_rpc.call_and_response() in InterLM/lmdeploy
#9638
opened Sep 19, 2026 by
checkmator
Loading…
Previous Next
ProTip!
Adding no:label will show everything without a label.