VulnSea

Tagged “ghsa”

CVEs tagged ghsa, newest first.

3827 CVEsRSS

CVE-2026-73841High· 8.8
1mo ago

OpenChoreo is a complete, open-source developer platform for Kubernetes

OpenChoreo is a complete, open-source developer platform for Kubernetes. Prior to 1.1.6 and 1.2.3, internal/openchoreo-api/api/handlers/exec.go and internal/openchoreo-api/api/handlers/wirelogs.go authorize component:exec and wirelogs:vi…

▾ Twilightopenchoreo · github.com/openchoreo/openchoreoEPSS 0.81%via NVD
CVE-2026-73840Medium· 5.3
1mo ago

OpenChoreo is a complete, open-source developer platform for Kubernetes

OpenChoreo is a complete, open-source developer platform for Kubernetes. Prior to 1.0.3, 1.1.3, and 1.2.0-rc.2, the POST /api/v1alpha1/autobuild endpoint in internal/openchoreo-api/api/handlers/webhook_handler.go selected a webhook provi…

▾ Sunlitopenchoreo · github.com/openchoreo/openchoreoEPSS 0.35%via NVD
CVE-2026-73667High· 8.8
1mo ago

OpenChoreo is a complete, open-source developer platform for Kubernetes

OpenChoreo is a complete, open-source developer platform for Kubernetes. Prior to 1.0.4, 1.1.4, and 1.2.0-rc.2, OpenChoreo Workflow Plane templates under samples/getting-started/workflow-templates/ interpolated developer-controlled workf…

▾ Twilightopenchoreo · github.com/openchoreo/openchoreoEPSS 0.86%via NVD
CVE-2026-73654High· 8.5
1mo ago

Trigger.dev is a platform for building and deploying fully managed AI agents and workflows

Trigger.dev is a platform for building and deploying fully managed AI agents and workflows. From 3.3.8 until 4.5.6, the PUT /api/v1/runs/:runId/metadata endpoint passes attacker-controlled operation.key values to new JSONHeroPath(operati…

▾ Twilighttrigger.dev · @trigger.dev/coreEPSS 0.62%via NVD
CVE-2026-73559Medium· 6.5
1mo ago

vLLM is an inference and serving engine for large language models

vLLM is an inference and serving engine for large language models. From 0.19.0 until 0.26.0, the /v1/completions CompletionRequest.prompt field in vllm/entrypoints/openai/completion/protocol.py accepts an unbounded list[str] or list[list…

▾ Sunlitvllm · vllmvia NVD
CVE-2026-54526High
1mo ago

Argo Workflows: ArtifactGC.PodSpecPatch bypasses Strict/Secure template reference allow-list (Incomplete fix for CVE-2026-31892)

Argo Workflows: ArtifactGC.PodSpecPatch bypasses Strict/Secure template reference allow-list (Incomplete fix for CVE-2026-31892)

▾ Twilightargoproj · github.com/argoproj/argo-workflows/v4EPSS 0.55%via GHSA
CVE-2026-54249Medium· 6.8
1mo ago

Pydantic AI: Unvalidated UploadedFile references in UI adapters allow server-side file access using the application's credentials

Pydantic AI: Unvalidated UploadedFile references in UI adapters allow server-side file access using the application's credentials

▾ Sunlitpydantic-ai-slim · pydantic-ai-slimEPSS 0.32%via GHSA
GHSA-rm43-82j9-r4mjHigh
1mo ago

atomic-agents-stack: Dashboard HTTP server path traversal allows arbitrary file read

atomic-agents-stack: Dashboard HTTP server path traversal allows arbitrary file read

▾ Twilightatomic-agents-stack · atomic-agents-stackvia GHSA
CVE-2026-59714High· 7.1
1mo ago

Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform

Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.9.5 before 0.10.0, any authenticated user can overwrite the content of a message in a channel they do not belong to (including private and DM ch…

▾ Twilightopen-webui · open-webuiEPSS 0.48%via NVD
CVE-2026-58443Critical· 9.6
1mo ago

code.gitea.io/gitea: Gitea: Unauthorized update of private pull request branches via public-only tokens (CVE-2026-58443)

A flaw was found in Gitea. This vulnerability allows an attacker to use tokens intended for public repositories to modify private pull request (PR) branches. This could lead to unauthorized changes in private code, compromising the integri…

▾ MidnightRed Hat · OpenShift PipelinesEPSS 0.58%via CSAF
CVE-2026-48099High· 7.1
1mo ago

WsgiDAV is a generic and extendable WebDAV server based on WSGI

WsgiDAV is a generic and extendable WebDAV server based on WSGI. WsgiDAV 4.3.3 and prior can allow a WebDAV request path containing an encoded parent-directory segment to escape the configured filesystem share root in a specific path lay…

▾ Twilightwsgidav · wsgidavEPSS 0.41%via NVD
CVE-2026-49856Medium· 4.3
1mo ago

@jshookmcp/jshook is an MCP server that gives AI agents tools for JavaScript analysis and security research

@jshookmcp/jshook is an MCP server that gives AI agents tools for JavaScript analysis and security research. In version 0.3.1, he network domain has a central SSRF authorization policy that blocks private, loopback, link-local, and reser…

▾ Sunlitjshookmcp · @jshookmcp/jshookEPSS 0.28%via NVD
CVE-2026-49857High· 7.4
1mo ago

auth-fetch-mcp is an MCP server that lets AI assistants fetch content from authenticated web pages

auth-fetch-mcp is an MCP server that lets AI assistants fetch content from authenticated web pages. Version 3.0.1 implements SSRF protection in `assertSafeUrl()` (`src/security.ts`) to block requests to private and loopback addresses. Ho…

▾ Twilightauth-fetch-mcp · auth-fetch-mcpEPSS 0.49%via NVD
CVE-2026-49864High
1mo ago

wetty provides terminal access in browser over http/https

wetty provides terminal access in browser over http/https. Prior to version 3.0.4, the wetty client decodes a base64 filename from the file-download escape sequence and interpolates it raw into a Toastify HTML string (`escapeMarkup: fals…

▾ Twilightwetty · wettyEPSS 0.44%via NVD
CVE-2026-49473High· 8.8
1mo ago

@cedar-policy/authorization-for-expressjs is an open-source Express.js middleware that integrates Cedar authorization into Express applications by mapping HTTP requests to Cedar actions and evaluating authorization policies before allowi…

@cedar-policy/authorization-for-expressjs is an open-source Express.js middleware that integrates Cedar authorization into Express applications by mapping HTTP requests to Cedar actions and evaluating authorization policies before allowi…

▾ Twilightcedar-policy · @cedar-policy/authorization-for-expressjsEPSS 0.47%via NVD
CVE-2026-48791Low· 2.0
1mo ago

sigstore-java is a sigstore java client for interacting with sigstore infrastructure

sigstore-java is a sigstore java client for interacting with sigstore infrastructure. Version 2.0.0 erroneously removed verification of the integrated (Rekor entry) time) against the Fulcio certificate. Version 2.1.0 re-added this verifi…

▾ Sunlitsigstore · dev.sigstore:sigstore-javaEPSS 0.07%via NVD
CVE-2026-49820Medium· 4.7
1mo ago

Probo is a self-hostable governance, risk, and compliance (GRC) platform built for engineering and security teams

Probo is a self-hostable governance, risk, and compliance (GRC) platform built for engineering and security teams. Probo's `saferedirect` package validates redirect URLs used across authentication flows (OIDC, SAML, session transfer, OAu…

▾ Sunlitprobo · go.probo.inc/proboEPSS 0.42%via NVD
CVE-2026-49478High· 8.7⚖ disputed
1mo ago

Fulcio is a certificate authority for issuing code signing certificates for an OpenID Connect (OIDC) identity

Fulcio is a certificate authority for issuing code signing certificates for an OpenID Connect (OIDC) identity. Versions through 1.8.5 improperly follow cross-host redirects and attach Kubernetes ServiceAccount tokens during OIDC discover…

▾ TwilightRed Hat · Red Hat OpenShift Container Platform 4EPSS 0.28%via NVD
CVE-2026-48702High· 7.5
1mo ago

Rekor is a software supply chain transparency log

Rekor is a software supply chain transparency log. Starting in version 0.3.0 and prior to version 1.5.2, the `Package.Unmarshal()` function in `pkg/types/alpine/apk.go` decompresses the signature and control gzip members of an APK file i…

▾ TwilightRed Hat · Red Hat Hardened ImagesEPSS 0.46%via NVD
GHSA-xx34-6cjg-prh8Critical· 8.6
1mo ago

Duplicate Advisory: The publish-access gate treats encrypted notebooks as publicly accessible by default, allowing anonymous readers to retrieve fully decrypted document content while a notebook is unlocked

Duplicate Advisory: The publish-access gate treats encrypted notebooks as publicly accessible by default, allowing anonymous readers to retrieve fully decrypted document content while a notebook is unlocked

▾ Midnightsiyuan-note · github.com/siyuan-note/siyuan/kernelvia GHSA
GHSA-mxjf-vfmv-qfm6Medium· 5.8
1mo ago

Duplicate Advisory: Notebook name, document count, size and timestamps are returned for any notebook, including notebooks hidden from readers, by /api/notebook/getNotebookInfo

Duplicate Advisory: Notebook name, document count, size and timestamps are returned for any notebook, including notebooks hidden from readers, by /api/notebook/getNotebookInfo

▾ Sunlitsiyuan-note · github.com/siyuan-note/siyuan/kernelvia GHSA
CVE-2026-73294Critical· 9.9
1mo ago

Semaphore UI is a web interface for managing DevOps tools

Semaphore UI is a web interface for managing DevOps tools. Prior to 2.18.17 and 2.19.5-beta2, repository git_url handling passes an attacker-controlled --upload-pack option to CmdGitClient.GetLastRemoteCommitHash through POST /api/projec…

▾ Midnightsemaphoreui · github.com/semaphoreui/semaphoreEPSS 0.65%via NVD
CVE-2026-73262Medium· 5.4
1mo ago

Prowler is a cloud security platform

Prowler is a cloud security platform. Prior to 5.37.0, Prowler's HTML output formatter in prowler/lib/outputs/html/html.py inserted finding.resource_tags, assembled by unroll_dict and parse_html_string, into generated reports without HTM…

▾ Sunlitprowler · prowlerEPSS 0.30%via NVD
CVE-2026-73292High· 8.3PoC
1mo ago

Semaphore UI is a web interface for managing DevOps tools

Semaphore UI is a web interface for managing DevOps tools. Prior to 2.18.21, the /api/users/{id}/password endpoint accepts a cross-site request using the authenticated user's semaphore session cookie without CSRF protection or current-pa…

▾ Midnightsemaphoreui · github.com/semaphoreui/semaphoreEPSS 0.23%via NVD
CVE-2026-73293High· 8.8
1mo ago

Semaphore UI is a web interface for managing DevOps tools

Semaphore UI is a web interface for managing DevOps tools. Prior to 2.18.19 and from 2.19.0-alpha3 until 2.19.5-beta5, ProjectMiddleware and GetProjectOrGlobalRoleBySlug allow a project manager to use POST /api/project/{id}/roles to cre…

▾ Twilightsemaphoreui · github.com/semaphoreui/semaphoreEPSS 0.57%via NVD
CVE-2026-73295Medium· 5.4
1mo ago

Material for MkDocs is a powerful documentation framework built on top of MkDocs

Material for MkDocs is a powerful documentation framework built on top of MkDocs. From 7.2.0 until 9.7.7, the mountSearchSuggest function in src/templates/assets/javascripts/components/search/suggest/index.ts contains a DOM-based cross-s…

▾ Sunlitmkdocs-material · mkdocs-materialEPSS 0.33%via NVD
CVE-2026-72789High· 8.6
1mo ago

SiYuan before v3.7.4 fails to properly validate publish access for encrypted notebooks, treating them as publicly accessible by default

SiYuan before v3.7.4 fails to properly validate publish access for encrypted notebooks, treating them as publicly accessible by default. Anonymous readers can enumerate and retrieve fully decrypted document content from unlocked encrypte…

▾ Twilightsiyuan-note · github.com/siyuan-note/siyuan/kernelEPSS 0.50%via NVD
CVE-2026-9318Medium· 5.4
1mo ago

tablib prior to 3.10.0 contains a stored cross-site scripting vulnerability in the HTML export functionality that allows attackers to execute arbitrary JavaScript by embedding malicious payloads in dataset titles, which are interpolated …

tablib prior to 3.10.0 contains a stored cross-site scripting vulnerability in the HTML export functionality that allows attackers to execute arbitrary JavaScript by embedding malicious payloads in dataset titles, which are interpolated …

▾ Sunlittablib · tablibEPSS 0.30%via NVD
CVE-2026-54917HighPoC
1mo ago

SeaweedFS: Path traversal in the S3 and Iceberg REST gateways allows cross-bucket access

SeaweedFS: Path traversal in the S3 and Iceberg REST gateways allows cross-bucket access

▾ Midnightseaweedfs · github.com/seaweedfs/seaweedfsEPSS 1.6%via OSV
GHSA-jwjp-4649-v8jpHigh· 7.5
1mo ago

SIPSorcery vulnerable to Denial of Service via out-of-bounds read in SCTP SACK chunk parsing

SIPSorcery vulnerable to Denial of Service via out-of-bounds read in SCTP SACK chunk parsing

▾ TwilightSIPSorcery · SIPSorceryvia GHSA
CVEs tagged “ghsa” — page 47 · VulnSea