-
Notifications
You must be signed in to change notification settings - Fork 507
Pull requests: github/advisory-database
Author
Label
Projects
Milestones
Reviews
Assignee
Sort
Pull requests list
[GHSA-2267-xqcf-gw2m] FacturaScripts is Vulnerable to Stored Cross-Site Scripting (XSS) via XML File Upload
#6602
opened Jan 2, 2026 by
vettrivel007
Loading…
[GHSA-mrfv-m5wm-5w6w] libsodium before ad3004e, in atypical use cases involving...
#6599
opened Jan 1, 2026 by
loganaden
Loading…
[GHSA-vj76-c3g6-qr5v] tar-fs has a symlink validation bypass if destination directory is predictable with a specific tarball
#6581
opened Dec 27, 2025 by
kristentr
Loading…
[GHSA-5j98-mcp5-4vw2] glob CLI: Command injection via -c/--cmd executes matches with shell:true
#6576
opened Dec 23, 2025 by
sbgitZZ
Loading…
[GHSA-x4c5-c7rf-jjgv] @octokit/endpoint has a Regular Expression in parse that Leads to ReDoS Vulnerability Due to Catastrophic Backtracking
#6573
opened Dec 22, 2025 by
G-Rath
Loading…
[GHSA-f6mr-38g8-39rg] Ollama Platform has missing authentication enabling attackers to perform model management operations
#6571
opened Dec 22, 2025 by
Ankush-Pathak
Loading…
ProTip!
Find all pull requests that aren't related to any open issues with -linked:issue.