VulnSea

Tagged “ghsa”

CVEs tagged ghsa, newest first.

3917 CVEsRSS

CVE-2026-27783Medium· 4.3
3mo ago

Gitea: Missing repository-unit authorization on issue-template API endpoints

Gitea: Missing repository-unit authorization on issue-template API endpoints

▾ Sunlitgitea · code.gitea.io/giteaEPSS 0.34%via GHSA
CVE-2026-20706Medium
3mo ago

Gitea: Token scope bypass on web archive download endpoint

Gitea: Token scope bypass on web archive download endpoint

▾ Sunlitgitea · code.gitea.io/giteaEPSS 0.56%via GHSA
CVE-2026-54326Low· 2.5
3mo ago

Pi Agent: Potential XSS in HTML session exports via Markdown URL sanitization bypass

Pi Agent: Potential XSS in HTML session exports via Markdown URL sanitization bypass

▾ Sunlitmariozechner · @mariozechner/pi-coding-agentEPSS 0.17%via GHSA
CVE-2026-12208Medium· 5.3
3mo ago

jsonata: Function Binding Prototype Pollution via hasOwnProperty Override

jsonata: Function Binding Prototype Pollution via hasOwnProperty Override

▾ Sunlitjsonata · jsonataEPSS 0.31%via GHSA
CVE-2026-48853Critical· 9.2PoC
3mo ago

Deserialization of Untrusted Data and Allocation of Resources Without Limits or Throttling vulnerabilities in elixir-grpc grpc allow unauthenticated attackers to crash the BEAM node via atom table exhaustion and, when a decoded term flow…

Deserialization of Untrusted Data and Allocation of Resources Without Limits or Throttling vulnerabilities in elixir-grpc grpc allow unauthenticated attackers to crash the BEAM node via atom table exhaustion and, when a decoded term flow…

▾ Abyssalelixir-grpc · grpcEPSS 0.78%via NVD
CVE-2026-48599High· 7.6PoC
3mo ago

Authorization Bypass Through User-Controlled Key vulnerability in elixir-grpc grpc allows authenticated attackers to access or modify resources belonging to other users by smuggling a conflicting value for any path-bound field via the qu…

Authorization Bypass Through User-Controlled Key vulnerability in elixir-grpc grpc allows authenticated attackers to access or modify resources belonging to other users by smuggling a conflicting value for any path-bound field via the qu…

▾ Midnightelixir-grpc · grpcEPSS 0.34%via NVD
CVE-2026-48854High· 8.7PoC
3mo ago

Allocation of Resources Without Limits or Throttling vulnerability in elixir-grpc grpc allows unauthenticated attackers to exhaust the BEAM's memory and crash the server by streaming a large or slow-trickle unary request body. 'Elixir.G…

Allocation of Resources Without Limits or Throttling vulnerability in elixir-grpc grpc allows unauthenticated attackers to exhaust the BEAM's memory and crash the server by streaming a large or slow-trickle unary request body. 'Elixir.G…

▾ Midnightelixir-grpc · grpcEPSS 0.45%via NVD
CVE-2026-54267High
3mo ago

Angular Client Hydration DOM Clobbering & Response-Cache Poisoning

Angular Client Hydration DOM Clobbering & Response-Cache Poisoning

▾ Twilightangular · @angular/coreEPSS 0.32%via GHSA
CVE-2026-49982High· 8.2
3mo ago

tmp: Type-confusion bypass of _assertPath allows path traversal via non-string prefix/postfix/template

tmp: Type-confusion bypass of _assertPath allows path traversal via non-string prefix/postfix/template

▾ Twilighttmp · tmpEPSS 0.60%via GHSA
CVE-2026-50168High
3mo ago

@angular/platform-server: URL Parser Differential leading to SSRF Allowlist Bypass

@angular/platform-server: URL Parser Differential leading to SSRF Allowlist Bypass

▾ Twilightangular · @angular/platform-serverEPSS 0.24%via GHSA
CVE-2026-50169Medium
3mo ago

Angular Service Worker Policy-Bypass & Credential-Stripping Vulnerabilities

Angular Service Worker Policy-Bypass & Credential-Stripping Vulnerabilities

▾ Sunlitangular · @angular/service-workerEPSS 0.23%via GHSA
CVE-2026-48761Medium
3mo ago

Symfony: HtmlSanitizer UrlAttributeSanitizer Misses URL Attributes

Symfony: HtmlSanitizer UrlAttributeSanitizer Misses URL Attributes

▾ Sunlitsymfony · symfony/html-sanitizerEPSS 0.34%via GHSA
CVE-2026-52725Medium
3mo ago

@angular/core: Angular Template and Dynamic Component Namespace Bypass leading to Cross-Site Scripting (XSS)

@angular/core: Angular Template and Dynamic Component Namespace Bypass leading to Cross-Site Scripting (XSS)

▾ Sunlitangular · @angular/coreEPSS 0.40%via GHSA
CVE-2026-50170High
3mo ago

@angular/common: Information Leak via Default Caching of Credentialed Requests in HttpTransferCache

@angular/common: Information Leak via Default Caching of Credentialed Requests in HttpTransferCache

▾ Twilightangular · @angular/commonEPSS 0.43%via GHSA
CVE-2026-50171High
3mo ago

@angular/common: Denial of Service (DoS) via OOM in Number Formatting (digitsInfo)

@angular/common: Denial of Service (DoS) via OOM in Number Formatting (digitsInfo)

▾ Twilightangular · @angular/commonEPSS 0.26%via GHSA
CVE-2026-50184Medium
3mo ago

@angular/service-worker: Request Credential & Cache Policy Stripping

@angular/service-worker: Request Credential & Cache Policy Stripping

▾ Sunlitangular · @angular/service-workerEPSS 0.21%via GHSA
CVE-2026-49356Low· 3.2
3mo ago

@babel/core: Arbitrary File Read via sourceMappingURL Comment

@babel/core: Arbitrary File Read via sourceMappingURL Comment

▾ Sunlitbabel · @babel/coreEPSS 0.15%via GHSA
CVE-2026-53571HighPoC
3mo ago

vite: `server.fs.deny` bypass on Windows alternate paths

vite: `server.fs.deny` bypass on Windows alternate paths

▾ Midnightvite · viteEPSS 0.58%via GHSA
CVE-2026-53632Medium
3mo ago

launch-editor: NTLMv2 hash disclosure via UNC path handling on Windows

launch-editor: NTLMv2 hash disclosure via UNC path handling on Windows

▾ Sunlitlaunch-editor · launch-editorEPSS 0.41%via GHSA
CVE-2026-53655Medium
3mo ago

node-tar applies PAX size override to intermediary GNU long-name/long-link headers, causing tar parser interpretation differential (file smuggling)

node-tar applies PAX size override to intermediary GNU long-name/long-link headers, causing tar parser interpretation differential (file smuggling)

▾ Sunlittar · tarEPSS 0.16%via GHSA
CVE-2026-50555High
3mo ago

@angular/platform-server: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

@angular/platform-server: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

▾ Twilightangular · @angular/platform-serverEPSS 0.27%via GHSA
CVE-2026-50557Medium
3mo ago

Angular: Template and Attribute Namespace Sanitization Bypass (XSS)

Angular: Template and Attribute Namespace Sanitization Bypass (XSS)

▾ Sunlitangular · @angular/coreEPSS 0.34%via GHSA
CVE-2026-54265Medium
3mo ago

@angular/compiler: Two-Way Property Binding Sanitization Bypass (XSS)

@angular/compiler: Two-Way Property Binding Sanitization Bypass (XSS)

▾ Sunlitangular · @angular/compilerEPSS 0.34%via GHSA
CVE-2026-54266High
3mo ago

@angular/common: Weak 32-Bit Cache Key Hashing in `HttpTransferCache` Leading to Cross-Request Data Leakage and State Poisoning

@angular/common: Weak 32-Bit Cache Key Hashing in `HttpTransferCache` Leading to Cross-Request Data Leakage and State Poisoning

▾ Twilightangular · @angular/commonEPSS 0.13%via GHSA
CVE-2026-54268High
3mo ago

@angular/common: Denial of Service (DoS) via OOM in Date Formatting (formatDate)

@angular/common: Denial of Service (DoS) via OOM in Date Formatting (formatDate)

▾ Twilightangular · @angular/commonEPSS 0.58%via GHSA
CVE-2026-54264High
3mo ago

@angular/service-worker: Sensitive Header Leakage on Cross-Origin Redirects in Angular Service Worker

@angular/service-worker: Sensitive Header Leakage on Cross-Origin Redirects in Angular Service Worker

▾ Twilightangular · @angular/service-workerEPSS 0.39%via GHSA
CVE-2026-54269Medium· 5.3
3mo ago

protobufjs : Schema-derived names can shadow runtime-significant properties

protobufjs : Schema-derived names can shadow runtime-significant properties

▾ Sunlitprotobufjs · protobufjsEPSS 0.40%via GHSA
CVE-2026-48489High
3mo ago

Symfony: Security Firewall Bypass via failure_forward Subrequest: Unauthenticated Access to access_control-Protected GET Routes

Symfony: Security Firewall Bypass via failure_forward Subrequest: Unauthenticated Access to access_control-Protected GET Routes

▾ Twilightsymfony · symfony/security-httpEPSS 0.60%via GHSA
CVE-2026-48524Low· 3.7
3mo ago

PyJWKClient unbounded JWKS endpoint requests via attacker-controlled kid values (DoS)

PyJWKClient unbounded JWKS endpoint requests via attacker-controlled kid values (DoS)

▾ Sunlitpyjwt · pyjwtEPSS 0.32%via OSV
CVE-2026-48712High· 7.5
3mo ago

protobufjs: Denial of service through unbounded Any expansion during JSON conversion

protobufjs: Denial of service through unbounded Any expansion during JSON conversion

▾ Twilightprotobufjs · protobufjsEPSS 0.46%via GHSA
CVEs tagged “ghsa” — page 122 · VulnSea