Tagged “ghsa”
CVEs tagged ghsa, newest first.
3917 CVEsRSS
GHSA-r2fx-hp6p-pgrmMedium· 6.5Duplicate Advisory: Internal/webchat command auth could inherit ownerAllowFrom wildcard state
Duplicate Advisory: Internal/webchat command auth could inherit ownerAllowFrom wildcard state
GHSA-vqx6-6j84-2794Medium· 6.5Duplicate Advisory: Hostname checks could treat trailing-dot hosts inconsistently
Duplicate Advisory: Hostname checks could treat trailing-dot hosts inconsistently
GHSA-v383-2wgg-v483High· 8.1Duplicate Advisory: Shell inline-command parsing could miss an allowlist check
Duplicate Advisory: Shell inline-command parsing could miss an allowlist check
GHSA-8hj2-w4c9-fjfqLow· 4.2Duplicate Advisory: BlueBubbles sender policy could match mutable conversation identifiers
Duplicate Advisory: BlueBubbles sender policy could match mutable conversation identifiers
GHSA-g796-jqmx-wf9qMedium· 6.6Duplicate Advisory: macOS Swift exec allowlist missed combined POSIX inline flags
Duplicate Advisory: macOS Swift exec allowlist missed combined POSIX inline flags
GHSA-h9h6-pwqv-j9hvLow· 4.2Duplicate Advisory: Bootstrap token replay could widen pending pairing scopes
Duplicate Advisory: Bootstrap token replay could widen pending pairing scopes
GHSA-vr6h-vxqj-3pjxHigh· 8.1Duplicate Advisory: Host environment sanitizer missed two Node.js control variables
Duplicate Advisory: Host environment sanitizer missed two Node.js control variables
GHSA-8wmm-344f-mpjgMedium· 7.1Duplicate Advisory: Tool group policy callers could accept unvalidated group IDs
Duplicate Advisory: Tool group policy callers could accept unvalidated group IDs
GHSA-2w22-3f6x-3hf4High· 7.1Duplicate Advisory: Workspace-derived service PATH could influence trash command selection
Duplicate Advisory: Workspace-derived service PATH could influence trash command selection
CVE-2026-46448Medium· 5.4OpenStack Nova: Nova scheduler hint injection bypasses Placement resource claims and scheduling constraints
OpenStack Nova: Nova scheduler hint injection bypasses Placement resource claims and scheduling constraints
GHSA-69qj-pvh9-c5wgHigh· 7.5yt-dlp: Arbitrary command injection possible if --exec option used with yt-dlp
yt-dlp: Arbitrary command injection possible if --exec option used with yt-dlp
CVE-2026-54312High· 8.5n8n: Microsoft SQL Node Prototype Pollution
n8n: Microsoft SQL Node Prototype Pollution
CVE-2026-54303Medium· 7.6n8n: Reflected XSS via Facebook, WhatsApp, and Microsoft Teams Trigger Webhook Verification Endpoints
n8n: Reflected XSS via Facebook, WhatsApp, and Microsoft Teams Trigger Webhook Verification Endpoints
CVE-2026-54302High· 7.6n8n: Stored XSS in Chat Trigger Node
n8n: Stored XSS in Chat Trigger Node
GHSA-jwm3-qcfw-c5ppMedium· 5.0n8n: Python Code Node AST Validator Bypass
n8n: Python Code Node AST Validator Bypass
GHSA-h3jj-5f3v-3685Medium· 6.4n8n: Public API Execution Retry Authorization Bypass
n8n: Public API Execution Retry Authorization Bypass
CVE-2026-54314Medium· 5.9n8n: Denial of Service via ZIP decompression in webhook workflow
n8n: Denial of Service via ZIP decompression in webhook workflow
CVE-2026-54307High· 9.6n8n: Credential Exfiltration via Permission Bypass
n8n: Credential Exfiltration via Permission Bypass
CVE-2026-54305High· 9.9n8n: Cross-Tenant Credential Takeover via Dynamic Credentials EE Endpoints
n8n: Cross-Tenant Credential Takeover via Dynamic Credentials EE Endpoints
CVE-2026-54309High· 10.0n8n: MCP Browser HTTP Transport Exposes Unauthenticated Browser-Control Sessions
n8n: MCP Browser HTTP Transport Exposes Unauthenticated Browser-Control Sessions
CVE-2026-54304High· 7.7n8n: SecurityScorecard Node Leaks API Token to User-Controlled Host
n8n: SecurityScorecard Node Leaks API Token to User-Controlled Host
CVE-2026-28744High· 8.1Gitea: Git Smart HTTP Skips Repository Token Scopes for Bearer Tokens
Gitea: Git Smart HTTP Skips Repository Token Scopes for Bearer Tokens
CVE-2026-49468Critical· 9.8PoCLiteLLM: Authentication Bypass via Host Header Injection
LiteLLM: Authentication Bypass via Host Header Injection
GHSA-m3q2-p4fw-w38mLowCross-site scripting via <NoScript> slot content in Nuxt's head components
Cross-site scripting via <NoScript> slot content in Nuxt's head components
CVE-2026-49993Medium@nuxt/webpack-builder and @nuxt/rspack-builder dev server same-origin check bypassed when Sec-Fetch-Site, Origin, and Referer are all absent (incomplete fix for GHSA-6m52-m754-pw2g)
@nuxt/webpack-builder and @nuxt/rspack-builder dev server same-origin check bypassed when Sec-Fetch-Site, Origin, and Referer are all absent (incomplete fix for GHSA-6m52-m754-pw2g)
CVE-2026-49980Critical· 9.8Rclone: Unauthenticated command execution in `rclone rcd --rc-serve` via inline remote instantiation, bypassing CVE-2026-41179 fix
Rclone: Unauthenticated command execution in `rclone rcd --rc-serve` via inline remote instantiation, bypassing CVE-2026-41179 fix
CVE-2026-52797High· 8.5Gogs: Overwriting critical files results in a denial of service
Gogs: Overwriting critical files results in a denial of service
CVE-2026-28699High· 8.1PoCGitea: OAuth2 access token scope enforcement bypass via HTTP Basic authentication
Gitea: OAuth2 access token scope enforcement bypass via HTTP Basic authentication
CVE-2026-26231High· 8.5Gitea: Authorization Bypass via "Allow edits from maintainers" allows unauthorized commits to any readable repo
Gitea: Authorization Bypass via "Allow edits from maintainers" allows unauthorized commits to any readable repo
CVE-2026-25714Medium· 4.3Gitea: Incomplete CVE-2025-68941 fix: /user/orgs missing checkTokenPublicOnly + switch-case logic flaw
Gitea: Incomplete CVE-2025-68941 fix: /user/orgs missing checkTokenPublicOnly + switch-case logic flaw