VulnSea

Tagged “ghsa”

CVEs tagged ghsa, newest first.

3886 CVEsRSS

GHSA-wvrh-2f4m-924vMedium· 5.5
3mo ago

ChatterBot: Symlink-Following Arbitrary Write via UbuntuCorpusTrainer

ChatterBot: Symlink-Following Arbitrary Write via UbuntuCorpusTrainer

▾ SunlitChatterBot · ChatterBotvia GHSA
GHSA-cw6h-ffmh-x6vhMedium· 6.5
3mo ago

Anki: User scripts in iframes have access to the internal Anki API

Anki: User scripts in iframes have access to the internal Anki API

▾ Sunlitaqt · aqtvia GHSA
GHSA-4cc2-g9w2-fhf6Medium· 5.9
3mo ago

Zeep: Server-Side Request Forgery (SSRF)

Zeep: Server-Side Request Forgery (SSRF)

▾ Sunlitzeep · zeepvia GHSA
CVE-2026-11941Medium· 5.6
3mo ago

Cloudflare Quiche: Use-after-free in connection ID iterator FFI functions

Cloudflare Quiche: Use-after-free in connection ID iterator FFI functions

▾ Sunlitquiche · quicheEPSS 0.25%via GHSA
GHSA-c3xh-98xp-6qhfHigh
3mo ago

githubtoplanguages: Command Injection via Issue Title in Discord Notification Workflow

githubtoplanguages: Command Injection via Issue Title in Discord Notification Workflow

▾ Twilightgouef · gouef/githubtoplanguagesvia GHSA
GHSA-f4xh-w4cj-qxq8High· 7.7
3mo ago

LangSmith SDK TracingMiddleware: Arbitrary server-side file read

LangSmith SDK TracingMiddleware: Arbitrary server-side file read

▾ Twilightlangsmith · langsmithvia GHSA
GHSA-h5x8-xp6m-x6q4High· 7.1
3mo ago

@jhb.software/payload-cloudinary-plugin: Arbitrary Cloudinary API Parameter Signing

@jhb.software/payload-cloudinary-plugin: Arbitrary Cloudinary API Parameter Signing

▾ Twilightjhb.software · @jhb.software/payload-cloudinary-pluginvia GHSA
GHSA-g2gw-q38m-vjfcHigh
3mo ago

Lokka: Azure Resource Manager URL path validation issue

Lokka: Azure Resource Manager URL path validation issue

▾ Twilightmerill · @merill/lokkavia GHSA
GHSA-4xgf-cpjx-pc3jMedium· 5.3
3mo ago

pydantic-settings: NestedSecretsSettingsSource follows symlinks outside secrets_dir, enabling local file read and bypassing secrets_dir_max_size

pydantic-settings: NestedSecretsSettingsSource follows symlinks outside secrets_dir, enabling local file read and bypassing secrets_dir_max_size

▾ Sunlitpydantic-settings · pydantic-settingsvia GHSA
GHSA-h5rg-8p7f-47g2Medium· 4.1
3mo ago

SurrealDB: SSRF via JWKS URL — Redirect Following in JWT Key Fetch

SurrealDB: SSRF via JWKS URL — Redirect Following in JWT Key Fetch

▾ Sunlitsurrealdb · surrealdbvia GHSA
GHSA-cc8f-fcx3-gpjrHigh· 7.7
3mo ago

SurrealDB: Arbitrary file read via DEFINE ANALYZER mapper() filter

SurrealDB: Arbitrary file read via DEFINE ANALYZER mapper() filter

▾ Twilightsurrealdb · surrealdbvia GHSA
GHSA-h4h3-3rfj-x6fqMedium· 4.3
3mo ago

SurrealDB: Indexed ORDER BY leaks the value ordering of a SELECT-restricted field

SurrealDB: Indexed ORDER BY leaks the value ordering of a SELECT-restricted field

▾ Sunlitsurrealdb · surrealdbvia GHSA
GHSA-hv6h-hc26-q48pMedium· 4.3
3mo ago

SurrealDB: Field-level SELECT permissions bypassed via graph and reference traversals

SurrealDB: Field-level SELECT permissions bypassed via graph and reference traversals

▾ Sunlitsurrealdb · surrealdbvia GHSA
GHSA-jv2j-mqmw-xvv5Medium· 6.5
3mo ago

SurrealDB: Denial of Service via deep operator chains

SurrealDB: Denial of Service via deep operator chains

▾ Sunlitsurrealdb · surrealdbvia GHSA
GHSA-869j-r97x-hx2gHigh
3mo ago

Anki's local HTTP server does not sufficiently validate requests

Anki's local HTTP server does not sufficiently validate requests

▾ Twilightaqt · aqtvia GHSA
CVE-2026-58399Critical
3mo ago

@acastellon/auth: Authentication bypass via spoofable headers in validateToken()

@acastellon/auth: Authentication bypass via spoofable headers in validateToken()

▾ Midnightacastellon · @acastellon/authEPSS 0.97%via GHSA
CVE-2026-54386Medium· 6.1
3mo ago

marimo contains a reflected cross-site scripting vulnerability in the notebook page

marimo contains a reflected cross-site scripting vulnerability in the notebook page

▾ Sunlitmarimo · marimoEPSS 0.40%via GHSA
CVE-2026-55744High· 8.1
3mo ago

Cotonti: Cross-Site Request Forgery in the Personal File Storage (PFS) module

Cotonti: Cross-Site Request Forgery in the Personal File Storage (PFS) module

▾ Twilightcotonti · cotonti/cotontiEPSS 0.20%via GHSA
CVE-2026-55742Critical· 9.6
3mo ago

Cotonti: Cross-Site Request Forgery in the administration rights handler

Cotonti: Cross-Site Request Forgery in the administration rights handler

▾ Midnightcotonti · cotonti/cotontiEPSS 0.21%via GHSA
CVE-2026-55745Medium· 5.4
3mo ago

Cotonti: Cross-Site Request Forgery in the Personal File Storage (PFS) module

Cotonti: Cross-Site Request Forgery in the Personal File Storage (PFS) module

▾ Sunlitcotonti · cotonti/cotontiEPSS 0.14%via GHSA
CVE-2026-55746High· 7.6
3mo ago

Cotonti: Stored Cross-Site Scripting in the Personal File Storage (PFS) module

Cotonti: Stored Cross-Site Scripting in the Personal File Storage (PFS) module

▾ Twilightcotonti · cotonti/cotontiEPSS 0.30%via GHSA
CVE-2026-55671Low
3mo ago

ZITADEL: Server-Side Request Forgery (SSRF) and Denylist Bypass in Outgoing HTTP Components

ZITADEL: Server-Side Request Forgery (SSRF) and Denylist Bypass in Outgoing HTTP Components

▾ Sunlitzitadel · github.com/zitadel/zitadelEPSS 0.41%via GHSA
CVE-2026-53864High· 8.1
3mo ago

OpenClaw: Host environment sanitizer missed two Node.js control variables

OpenClaw: Host environment sanitizer missed two Node.js control variables

▾ Twilightopenclaw · openclawEPSS 0.43%via GHSA
CVE-2026-53843High· 8.8
3mo ago

OpenClaw: Pairing-scoped device session could restore revoked node token authority

OpenClaw: Pairing-scoped device session could restore revoked node token authority

▾ Twilightopenclaw · openclawEPSS 0.49%via GHSA
CVE-2026-53866High· 8.1
3mo ago

OpenClaw: Shell inline-command parsing could miss an allowlist check

OpenClaw: Shell inline-command parsing could miss an allowlist check

▾ Twilightopenclaw · openclawEPSS 0.45%via GHSA
CVE-2026-53842High· 7.1
3mo ago

OpenClaw: Workspace .env CLOUDSDK_PYTHON could influence Gmail setup gcloud execution

OpenClaw: Workspace .env CLOUDSDK_PYTHON could influence Gmail setup gcloud execution

▾ Twilightopenclaw · openclawEPSS 0.20%via GHSA
CVE-2026-53863Medium
3mo ago

OpenClaw: Tool group policy callers could accept unvalidated group IDs

OpenClaw: Tool group policy callers could accept unvalidated group IDs

▾ Sunlitopenclaw · openclawEPSS 0.29%via GHSA
CVE-2026-55229High· 7.5PoC
3mo ago

Gotenberg: SSRF via LibreOffice document processing

Gotenberg: SSRF via LibreOffice document processing

▾ Midnightgotenberg · github.com/gotenberg/gotenberg/v8EPSS 1.5%via GHSA
CVE-2026-55886Medium
3mo ago

jodit: Prototype pollution in Jodit via Jodit.modules.Helpers.set()

jodit: Prototype pollution in Jodit via Jodit.modules.Helpers.set()

▾ Sunlitjodit · joditEPSS 0.53%via GHSA
CVE-2026-55388High· 8.1
3mo ago

piscina: Prototype Pollution Gadget → RCE via inherited options.filename

piscina: Prototype Pollution Gadget → RCE via inherited options.filename

▾ Twilightpiscina · piscinaEPSS 0.45%via GHSA
CVEs tagged “ghsa” — page 109 · VulnSea