VulnSea

Tagged “ghsa”

CVEs tagged ghsa, newest first.

3812 CVEsRSS

CVE-2026-86081High· 7.1
2w ago

n8n is an open source workflow automation platform

n8n is an open source workflow automation platform. Prior to 1.123.76, 2.37.7, and 2.38.2, the Git node clone operation matched an attacker-controlled destination path against the default N8N_BLOCK_FILE_PATTERNS regular expression. The p…

▾ Twilightn8n-io · n8nEPSS 0.56%via NVD
CVE-2026-86080Medium· 5.3
2w ago

n8n is an open source workflow automation platform

n8n is an open source workflow automation platform. Prior to 1.123.76, 2.37.7, and 2.38.2, the GitHub Trigger generated a webhook secret but discarded it when GitHub returned HTTP 422 and the node reused an existing webhook. Workflow sta…

▾ Sunlitn8n · n8nEPSS 0.26%via NVD
CVE-2026-86079Medium· 6.5
2w ago

n8n is an open source workflow automation platform

n8n is an open source workflow automation platform. Prior to 1.123.76, 2.37.7, and 2.38.2, the Elasticsearch and ElasticSecurity nodes interpolated workflow-controlled index and document identifiers directly into REST request paths. An i…

▾ Sunlitn8n · n8nEPSS 0.49%via NVD
CVE-2026-86078Medium· 6.5
2w ago

n8n is an open source workflow automation platform

n8n is an open source workflow automation platform. Prior to 2.37.7 and 2.38.2, the Instance AI workflow summary used node names and connection keys from stored workflows as ordinary object keys. A workflow submitted through the REST API…

▾ Sunlitn8n · n8nEPSS 0.59%via NVD
CVE-2026-86077Medium· 6.5
2w ago

n8n is an open source workflow automation platform

n8n is an open source workflow automation platform. Prior to 2.37.7 and 2.38.2, the /chat WebSocket route accepted a resumeToken and resumed a paused execution without checking that the target node supported chat messages. An anonymous f…

▾ Sunlitn8n · n8nEPSS 0.43%via NVD
CVE-2026-86076High· 8.8
2w ago

n8n is an open source workflow automation platform

n8n is an open source workflow automation platform. Prior to 1.123.76, 2.37.7, and 2.38.2, the expression compiler sanitizer resolved through dynamically scoped this and did not reject reserved class member names. A class field named __s…

▾ Twilightn8n · n8nEPSS 0.79%via NVD
CVE-2026-86075High· 7.5
2w ago

n8n is an open source workflow automation platform

n8n is an open source workflow automation platform. Prior to 2.37.7 and 2.38.2, the OAuth Dynamic Client Registration endpoint bounded redirect_uris but accepted arbitrarily large client_name and grant_types values. An unauthenticated re…

▾ Twilightn8n · n8nEPSS 0.61%via NVD
GHSA-v3f6-m9j2-437pMedium· 5.9
2w ago

Duplicate Advisory: Microsoft Security Advisory CVE-2026-69304 – ASP.NET Core Denial of Service Vulnerability

Duplicate Advisory: Microsoft Security Advisory CVE-2026-69304 – ASP.NET Core Denial of Service Vulnerability

▾ SunlitMicrosoft · Microsoft.AspNetCore.Server.IISIntegrationvia GHSA
GHSA-rgj7-g3m4-5g8cHigh
2w ago

sharp: Vulnerabilities in libheif: GHSA-g89c-p67h-r497 and GHSA-2jg2-4ch7-h545

sharp: Vulnerabilities in libheif: GHSA-g89c-p67h-r497 and GHSA-2jg2-4ch7-h545

▾ Twilightsharp · sharpvia GHSA
GHSA-j95f-988m-3j2fHigh
2w ago

Tiptap: Quadratic ReDoS in block and inline Markdown attribute parsing

Tiptap: Quadratic ReDoS in block and inline Markdown attribute parsing

▾ Twilighttiptap · @tiptap/corevia GHSA
GHSA-8m3c-c648-2xjjMedium· 5.9
2w ago

Nodemailer: resolveContent() on a MailMessage bypasses disableFileAccess/disableUrlAccess when called with the legacy signature

Nodemailer: resolveContent() on a MailMessage bypasses disableFileAccess/disableUrlAccess when called with the legacy signature

▾ Sunlitnodemailer · nodemailervia GHSA
GHSA-2xp9-vwfh-vxw4Critical
2w ago

Next.js: Unauthenticated Remote Code Execution in Image Optimization API when AVIF files are used

Next.js: Unauthenticated Remote Code Execution in Image Optimization API when AVIF files are used

▾ Midnightnext · nextvia GHSA
GHSA-26w7-cxv4-gfx2Critical· 9.8
2w ago

Astro: Remote code execution through AVIF image optimization

Astro: Remote code execution through AVIF image optimization

▾ Midnightastro · astrovia GHSA
CVE-2026-81525High· 8.1
2w ago

mongodb: Reject "." and NUL bytes in database and collection names

mongodb: Reject "." and NUL bytes in database and collection names

▾ Twilightmongodb · mongodb/mongodbEPSS 0.48%via GHSA
CVE-2026-15603Medium· 5.3
2w ago

morgan vulnerable to Log Forging via unescaped Unicode line separators

morgan vulnerable to Log Forging via unescaped Unicode line separators

▾ Sunlitmorgan · morganEPSS 0.29%via GHSA
GHSA-wmmp-3585-3rmpMedium· 6.5
2w ago

Nodemailer: IDN/Punycode domain allow-list bypass leads to email delivery to an attacker-controlled domain

Nodemailer: IDN/Punycode domain allow-list bypass leads to email delivery to an attacker-controlled domain

▾ Sunlitnodemailer · nodemailervia GHSA
GHSA-cc9r-2j5m-2m83Medium· 6.5
2w ago

Nodemailer: Recipient-domain validation bypass via RFC 5322 comment mis-parsing leads to email delivery to an attacker-controlled domain

Nodemailer: Recipient-domain validation bypass via RFC 5322 comment mis-parsing leads to email delivery to an attacker-controlled domain

▾ Sunlitnodemailer · nodemailervia GHSA
GHSA-2x7j-588g-ccc2High· 7.5
2w ago

Nodemailer: Quadratic (O(n²)) time complexity in addressparser allows remote denial of service via a crafted address list

Nodemailer: Quadratic (O(n²)) time complexity in addressparser allows remote denial of service via a crafted address list

▾ Twilightnodemailer · nodemailervia GHSA
GHSA-2q42-4q24-7rgvHigh· 7.1
2w ago

OpenAPI3 version value escapes `emitterOutputDir` and overwrites YAML/JSON outside the output tree

OpenAPI3 version value escapes `emitterOutputDir` and overwrites YAML/JSON outside the output tree

▾ Twilighttypespec · @typespec/openapi3via GHSA
CVE-2026-86996Medium· 5.4
2w ago

n8n is an open source workflow automation platform

n8n is an open source workflow automation platform. Prior to 2.37.7 and 2.38.2, the workflow setting named This workflow can be called by was enforced by the Execute Workflow node but not when a workflow was attached to an Agent as a too…

▾ Sunlitn8n · n8nEPSS 0.29%via NVD
CVE-2026-81192High· 7.0
2w ago

`OpenTelemetry.Resources.Host` NuGet package, which provides OpenTelemetry resource detectors for host, is affected by an untrusted search path vulnerability on macOS

`OpenTelemetry.Resources.Host` NuGet package, which provides OpenTelemetry resource detectors for host, is affected by an untrusted search path vulnerability on macOS. Prior to version 1.16.0-beta.2, the `host.id` resource attribute dete…

▾ Twilightopen-telemetry · opentelemetry-dotnet-contribEPSS 0.18%via NVD
GHSA-q72m-f2r4-w4cwHigh· 8.8
2w ago

Duplicate Advisory: Microsoft Security Advisory CVE-2026-69522 – .NET and Visual Studio Remote Code Execution Vulnerability

Duplicate Advisory: Microsoft Security Advisory CVE-2026-69522 – .NET and Visual Studio Remote Code Execution Vulnerability

▾ TwilightMicrosoft · Microsoft.DiaSymReader.Nativevia GHSA
CVE-2026-86073High· 7.6
2w ago

n8n is an open source workflow automation platform

n8n is an open source workflow automation platform. Prior to 2.37.7 and 2.38.1, the OAuth token endpoint bound an authorization code's first access token to the consented resource but did not bind its refresh token. Refreshing checked on…

▾ Twilightn8n · n8nEPSS 0.39%via NVD
GHSA-57v5-wqx3-cgj4Medium· 5.8
2w ago

SiYuan: Database view structure (all view names, layout types and per-field visibility) is returned to anonymous readers by /api/av/getAt…

SiYuan: Database view structure (all view names, layout types and per-field visibility) is returned to anonymous readers by /api/av/getAttributeViewFieldViews

▾ Sunlitsiyuan-note · github.com/siyuan-note/siyuan/kernelvia OSV
CVE-2026-72790Medium· 5.8
2w ago

SiYuan: Notebook name, document count, size and timestamps are returned for any notebook, including notebooks hidden from readers, by /ap…

SiYuan: Notebook name, document count, size and timestamps are returned for any notebook, including notebooks hidden from readers, by /api/notebook/getNotebookInfo

▾ Sunlitsiyuan-note · github.com/siyuan-note/siyuan/kernelEPSS 0.33%via OSV
CVE-2026-86074High· 7.1
2w ago

n8n is an open source workflow automation platform

n8n is an open source workflow automation platform. Prior to 2.37.7 and 2.38.2, the Instance AI credential setup flow accepted a credential test or verification URL without checking that it matched the workflow node's origin. Attacker-co…

▾ Twilightn8n · n8nEPSS 0.38%via NVD
CVE-2026-71328High· 8.8
2w ago

Heap-based buffer overflow in Visual Studio allows an unauthorized attacker to execute code over a network.

Heap-based buffer overflow in Visual Studio allows an unauthorized attacker to execute code over a network.

▾ Twilightmicrosoft · visual_studio_2022EPSS 0.76%via NVD
CVE-2026-69522High· 8.8
2w ago

Heap-based buffer overflow in Visual Studio allows an unauthorized attacker to execute code over a network.

Heap-based buffer overflow in Visual Studio allows an unauthorized attacker to execute code over a network.

▾ TwilightMicrosoft · .NET 10.0EPSS 0.91%via NVD
CVE-2026-69439High· 8.8
2w ago

Heap-based buffer overflow in .NET and Visual Studio allows an unauthorized attacker to elevate privileges over a network.

Heap-based buffer overflow in .NET and Visual Studio allows an unauthorized attacker to elevate privileges over a network.

▾ TwilightMicrosoft · .NET 10.0EPSS 0.86%via NVD
CVE-2026-69304Medium· 5.9
2w ago

Improper handling of highly compressed data (data amplification) in ASP.NET Core allows an unauthorized attacker to deny service over a network.

Improper handling of highly compressed data (data amplification) in ASP.NET Core allows an unauthorized attacker to deny service over a network.

▾ SunlitMicrosoft · .NET 10.0EPSS 0.90%via NVD
CVEs tagged “ghsa” — page 20 · VulnSea