VulnSea

Tagged “ghsa”

CVEs tagged ghsa, newest first.

3827 CVEsRSS

GHSA-pfvm-w89x-94jwHigh· 7.5
1mo ago

SIPSorcery: Malformed UDP datagram crashes TurnServer receive loop with no restart, disabling TURN UDP relay for all clients (DoS)

SIPSorcery: Malformed UDP datagram crashes TurnServer receive loop with no restart, disabling TURN UDP relay for all clients (DoS)

▾ TwilightSIPSorcery · SIPSorceryvia GHSA
CVE-2026-49262Low· 3.0
1mo ago

In the Aimeos Pagible content management system prior to version 0.10.4, the administrative proxy route (`cmsproxy`) is vulnerable to a Server-Side Request Forgery (SSRF) attack via DNS Rebinding

In the Aimeos Pagible content management system prior to version 0.10.4, the administrative proxy route (`cmsproxy`) is vulnerable to a Server-Side Request Forgery (SSRF) attack via DNS Rebinding. A Time-of-Check to Time-of-Use (TOCTOU) …

▾ Sunlitaimeos · aimeos/pagibleEPSS 0.17%via NVD
CVE-2026-49349Medium· 6.8
1mo ago

regclient is a Docker and OCI Registry Client in Go

regclient is a Docker and OCI Registry Client in Go. Prior to version 0.11.5, credentials for a registry may be inadvertently leaked to external servers. A prerequisite for this attack is a malicious registry server, a malicious blob sto…

▾ Sunlitregclient · github.com/regclient/regclientEPSS 0.31%via NVD
CVE-2026-73247High· 8.6
1mo ago

Kestra is an open-source, event-driven orchestration platform

Kestra is an open-source, event-driven orchestration platform. Prior to 2.0.0, Kestra's core/src/main/java/io/kestra/core/runners/pebble/functions/HttpFunction.java passes the user-controlled http() uri argument to URI.create() and the s…

▾ Twilightkestra · io.kestra:coreEPSS 0.41%via NVD
CVE-2026-73245Medium· 6.5
1mo ago

Kestra is an open-source, event-driven orchestration platform

Kestra is an open-source, event-driven orchestration platform. Prior to 2.0.0-rc6, Kestra's cli/src/main/resources/application.yml serves Micronaut management endpoints on port 8081 without authentication even when Basic Auth protects /a…

▾ Sunlitkestra · io.kestra:kestraEPSS 0.33%via NVD
GHSA-2q33-cf8w-7q23Critical· 9.8
1mo ago

Duplicate Advisory: Microsoft QUIC Remote Code Execution Vulnerability

Duplicate Advisory: Microsoft QUIC Remote Code Execution Vulnerability

▾ MidnightMicrosoft · Microsoft.Native.Quic.MsQuic.OpenSSLvia GHSA
CVE-2026-73087Low
1mo ago

Dozzle is a realtime log viewer for docker containers

Dozzle is a realtime log viewer for docker containers. From 10.5.2 until 10.6.15, the isBlockedIP SSRF guard in internal/notification/dispatcher/webhook.go, used by safeDialContext for webhook notification URLs, does not inspect IPv4 add…

▾ Sunlitamir20 · github.com/amir20/dozzleEPSS 0.46%via NVD
CVE-2026-72925Medium· 6.1
1mo ago

SWC is a TypeScript / JavaScript compiler written in Rust

SWC is a TypeScript / JavaScript compiler written in Rust. Prior to @swc/html 1.15.47-nightly-20260729.1 and swc_html_minifier 59.0.0, the minifyJson processing in crates/swc_html_minifier/src/lib.rs parsed and serialized attacker-contro…

▾ Sunlitswc · @swc/htmlEPSS 0.34%via NVD
CVE-2026-62815Critical· 9.8
1mo ago

Microsoft QUIC Remote Code Execution Vulnerability

Use after free in Microsoft QUIC allows an unauthorized attacker to execute code over a network.

▾ MidnightMicrosoft · Windows 11 version 23H2EPSS 0.97%via CVEORG
CVE-2026-62900Medium· 5.9
1mo ago

.NET Information Disclosure Vulnerability

Improper removal of sensitive information before storage or transfer in .NET allows an unauthorized attacker to disclose information over a network.

▾ SunlitMicrosoft · .NET 10.0EPSS 0.75%via CVEORG
CVE-2026-73222High· 8.8
1mo ago

Claude Code Templates is a CLI tool for configuring and monitoring Claude Code

Claude Code Templates is a CLI tool for configuring and monitoring Claude Code. Prior to 1.29.4, the Claude Code Studio server launched by the --studio option in cli-tool/src/sandbox-server.js binds to all interfaces on port 3444, permit…

▾ Twilightclaude-code-templates · claude-code-templatesEPSS 0.32%via NVD
CVE-2026-73232High· 7.5
1mo ago

ffuf is a fast web fuzzer written in Go

ffuf is a fast web fuzzer written in Go. Prior to 2.2.0, ffuf allows a malicious target server to cause an out-of-memory denial of service because the response size guard in pkg/runner/simple.go checks only the compressed Content-Length …

▾ Twilightffuf · github.com/ffuf/ffuf/v2EPSS 0.63%via NVD
CVE-2026-72921High· 8.1
1mo ago

SeaweedFS is a distributed storage system

SeaweedFS is a distributed storage system. Prior to 4.24, the weed/server/filer_server_handlers.go allowed_prefixes authorization check used strings.HasPrefix on raw path strings, so a filer JWT scoped to /tenant1 also authorized sibling…

▾ Twilightseaweedfs · github.com/seaweedfs/seaweedfsEPSS 0.43%via NVD
CVE-2026-72920Critical· 9.8
1mo ago

SeaweedFS is a distributed storage system

SeaweedFS is a distributed storage system. Prior to 4.24, the filer registers the SeaweedIdentityAccessManagement gRPC service without mandatory authentication when jwt.filer_signing.key is unset, allowing any client that can reach the f…

▾ Midnightseaweedfs · github.com/seaweedfs/seaweedfsEPSS 0.78%via NVD
CVE-2026-73231High· 7.8
1mo ago

Faker generates massive amounts of fake data in the browser and Node.js

Faker generates massive amounts of fake data in the browser and Node.js. Prior to 10.5.0, the faker.helpers.fake method in src/modules/helpers/eval.ts allows attacker-controlled fake templates to access the Function constructor through f…

▾ Twilightfaker-js · @faker-js/fakerEPSS 0.21%via NVD
CVE-2026-73086High· 7.4
1mo ago

nanoid is a secure, URL-friendly, unique string ID generator for JavaScript

nanoid is a secure, URL-friendly, unique string ID generator for JavaScript. Prior to versions 3.3.12 and 5.1.11, the nanoid(size) function in index.js and index.cjs coerces the user-influenced size parameter to a signed 32-bit integer, …

▾ Twilightnanoid · nanoidEPSS 0.30%via NVD
CVE-2026-73229Medium· 4.3
1mo ago

Django REST framework is a powerful and flexible toolkit for building Web APIs

Django REST framework is a powerful and flexible toolkit for building Web APIs. Prior to 3.17.2, Django REST Framework's rest_framework/renderers.py AdminRenderer.render() uses override_method() to simulate GET and directly invokes view.…

▾ Sunlitdjangorestframework · djangorestframeworkEPSS 0.37%via NVD
CVE-2026-73228Medium· 5.3
1mo ago

Django REST framework is a toolkit for building Web APIs

Django REST framework is a toolkit for building Web APIs. Prior to 3.17.2, Django REST Framework's request.data parsing in rest_framework/request.py Request._parse() passes the underlying HttpRequest stream to JSONParser and FormParser f…

▾ Sunlitdjangorestframework · djangorestframeworkEPSS 0.56%via NVD
CVE-2026-73088High· 7.5
1mo ago

Browserslist is a configuration tool for sharing target browsers and Node.js versions between front-end tools

Browserslist is a configuration tool for sharing target browsers and Node.js versions between front-end tools. Prior to 4.28.7, normalizeStats() in node.js, reached unconditionally through getStat() and loadStat() on every browserslist()…

▾ TwilightRed Hat · Red Hat Enterprise Linux 8EPSS 0.66%via NVD
CVE-2026-73089High· 7.5
1mo ago

Browserslist is a configuration tool for sharing target browsers and Node.js versions between front-end tools

Browserslist is a configuration tool for sharing target browsers and Node.js versions between front-end tools. Prior to 4.28.7, index.js retains every distinct `(queries, context)` result in cache and every parseQueries() AST in parseCac…

▾ TwilightRed Hat · Red Hat Enterprise Linux 8EPSS 0.66%via NVD
GHSA-4jjw-pwvw-q6w3Medium· 6.2
1mo ago

Duplicate Advisory: Nuxt dev server discloses project root and workspace UUID via the Chrome DevTools workspace endpoint

Duplicate Advisory: Nuxt dev server discloses project root and workspace UUID via the Chrome DevTools workspace endpoint

▾ Sunlitnuxt · nuxtvia GHSA
CVE-2026-62902Medium· 6.5
1mo ago

.NET Information Disclosure Vulnerability

Inclusion of functionality from untrusted control sphere in .NET allows an unauthorized attacker to disclose information over a network.

▾ SunlitMicrosoft · .NET 8.0EPSS 0.87%via CVEORG
CVE-2026-62901High· 7.5
1mo ago

.NET Denial of Service Vulnerability

Unchecked input for loop condition in .NET allows an unauthorized attacker to deny service over a network.

▾ TwilightMicrosoft · .NET 10.0EPSS 1.2%via CVEORG
CVE-2026-62886High· 7.8
1mo ago

Integer overflow or wraparound in .NET allows an unauthorized attacker to elevate privileges locally.

Integer overflow or wraparound in .NET allows an unauthorized attacker to elevate privileges locally.

▾ Twilightmicrosoft · visual_studio_2022EPSS 0.47%via NVD
CVE-2026-62909High· 7.8
1mo ago

.NET Elevation of Privilege Vulnerability

Uncaught exception in .NET allows an authorized attacker to elevate privileges locally.

▾ TwilightMicrosoft · .NET 10.0EPSS 0.26%via CVEORG
CVE-2026-70354High· 7.8
1mo ago

.NET Core Remote Code Execution Vulnerability

Out-of-bounds write in .NET allows an unauthorized attacker to execute code locally.

▾ TwilightMicrosoft · .NET 10.0EPSS 0.36%via CVEORG
CVE-2026-62897High· 7.0
1mo ago

.NET Framework Remote Code Execution Vulnerability

Integer overflow or wraparound in .NET Framework allows an unauthorized attacker to execute code locally.

▾ TwilightMicrosoft · .NET 10.0EPSS 0.37%via CVEORG
CVE-2026-62871High· 7.8
1mo ago

.NET Elevation of Privilege Vulnerability

Out-of-bounds write in .NET allows an unauthorized attacker to execute code locally.

▾ TwilightMicrosoft · .NET 8.0EPSS 0.47%via CVEORG
CVE-2026-62898High· 7.5
1mo ago

Microsoft QUIC Information Disclosure Vulnerability

Use after free in Microsoft QUIC allows an unauthorized attacker to disclose information over a network.

▾ TwilightMicrosoft · .NET 10.0EPSS 1.0%via CVEORG
CVE-2026-62899Medium· 5.9
1mo ago

.NET Security Feature Bypass Vulnerability

Inconsistent interpretation of http requests ('http request/response smuggling') in .NET allows an unauthorized attacker to bypass a security feature over a network.

▾ SunlitMicrosoft · .NET 10.0EPSS 0.75%via CVEORG
CVEs tagged “ghsa” — page 48 · VulnSea