-
Notifications
You must be signed in to change notification settings - Fork 703
Pull requests: github/advisory-database
Author
Label
Projects
Milestones
Reviews
Assignee
Sort
Pull requests list
[GHSA-72hv-8253-57qq] jackson-core: Number Length Constraint Bypass in Async Parser Leads to Potential DoS Condition
#8980
opened Aug 4, 2026 by
anthonydahanne
Loading…
[GHSA-7hhx-w23w-fg5v] Hugging Face Transformers Perceiver Model Deserialization...
#8977
opened Aug 4, 2026 by
jesvinjames
Loading…
[GHSA-7gcf-g7xr-8hxj] serde_with: KeyValueMap serialization panics on empty sequence or map entries
#8976
opened Aug 4, 2026 by
iliana
Loading…
[GHSA-xvcm-6775-5m9r] Immutabl: Hash-collision algorithmic complexity denial of service in Immutable.Map/Set
#8975
opened Aug 4, 2026 by
36degrees
Loading…
[GHSA-f786-75f3-74xj] OSV-SCALIBR has NULL Pointer Dereference
#8974
opened Aug 4, 2026 by
0xXA
Loading…
[GHSA-866g-f22w-33x8] @ai-sdk/provider-utils has an Uncontrolled Resource Consumption issue
#8973
opened Aug 4, 2026 by
tractorcow
Loading…
Add @n8n/task-runner to affected packages for GHSA-jjpj-p2wh-qf23
#8971
opened Aug 3, 2026 by
brittf619
Loading…
Add n8n-workflow to affected packages for GHSA-vpcf-gvg4-6qwr
#8970
opened Aug 3, 2026 by
brittf619
Loading…
Add n8n-nodes-base to affected packages for GHSA-wxx7-mcgf-j869
#8969
opened Aug 3, 2026 by
brittf619
Loading…
[GHSA-ph9p-34f9-6g65] tmp has Path Traversal via unsanitized prefix/postfix that enables directory escape
#8968
opened Aug 3, 2026 by
TPAlves
Loading…
[GHSA-qwww-vcr4-c8h2] React Router: RSC Mode CSRF Bypass Allows Action Execution Before 400 Response
#8966
opened Aug 3, 2026 by
ryanthemanuel
Loading…
[GHSA-qwww-vcr4-c8h2] React Router: RSC Mode CSRF Bypass Allows Action Execution Before 400 Response
#8965
opened Aug 3, 2026 by
benfranke
Loading…
[GHSA-2r2c-cx56-8933] JLine3 Telnet server: Unauthenticated Remote DoS via Unbounded Telnet NAWS Terminal Geometry
#8964
opened Aug 3, 2026 by
ychernysh
Loading…
[GHSA-47qp-hqvx-6r3f] JLine3 Telnet server: Unauthenticated Remote Memory Exhaustion via Unbounded Telnet NEW-ENVIRON Variables
#8963
opened Aug 3, 2026 by
ychernysh
Loading…
[GHSA-qwww-vcr4-c8h2] React Router: RSC Mode CSRF Bypass Allows Action Execution Before 400 Response
#8962
opened Aug 3, 2026 by
Jojo134
Loading…
[GHSA-hcjr-322h-429r] Improper Handling of URL Encoding (Hex Encoding)...
#8960
opened Aug 3, 2026 by
anderruiz
Loading…
[GHSA-m3q2-p4fw-w38m] Cross-site scripting via <NoScript> slot content in Nuxt's head components
#8958
opened Aug 3, 2026 by
sealonohana
Loading…
[GHSA-934w-87qh-qr26] Nuxt: Reflected XSS in
<NuxtLink> via unsanitised javascript: or data: URL
#8957
opened Aug 3, 2026 by
sealonohana
Loading…
[GHSA-72h4-7f42-rjh6] The Pronamic Pay plugin for WordPress is vulnerable to...
#8956
opened Aug 3, 2026 by
ictbeheer
Loading…
[GHSA-2v37-7h3g-55p8] nanoid (Nano ID) before 5.1.6 contains an infinite loop...
#8955
opened Aug 3, 2026 by
ai
Loading…
[GHSA-q4gv-pjmh-c735] Add v1.1.3 as patched version for release-1.1 backport
#8953
opened Aug 3, 2026 by
inbharajmani
Loading…
[GHSA-4c65-9gqf-4w8h] Record 0.5.10 as the fixed version for cai-framework
#8950
opened Aug 2, 2026 by
tonytonycoder11
Loading…
Previous Next
ProTip!
Find all pull requests that aren't related to any open issues with -linked:issue.