VulnSea

Tagged “ghsa”

CVEs tagged ghsa, newest first.

3827 CVEsRSS

GHSA-v396-v7q4-x2qjHigh
2mo ago

GitPython unsafe clone option gate bypass through joined short options

GitPython unsafe clone option gate bypass through joined short options

▾ TwilightGitPython · GitPythonvia GHSA
GHSA-2f96-g7mh-g2hxHigh· 8.8
2mo ago

GitPython: Command Injection via git long-option prefix abbreviation bypass of CVE-2026-42215 blocklist

GitPython: Command Injection via git long-option prefix abbreviation bypass of CVE-2026-42215 blocklist

▾ TwilightGitPython · GitPythonvia GHSA
GHSA-frvp-7c67-39w9Medium· 5.9
2mo ago

Node.js Adapter for Hono: Path traversal in `serve-static` on Windows via encoded backslash (`%5C`)

Node.js Adapter for Hono: Path traversal in `serve-static` on Windows via encoded backslash (`%5C`)

▾ Sunlithono · @hono/node-servervia GHSA
CVE-2026-59897Medium· 4.8
2mo ago

Hono: API Gateway v1 adapter can drop a distinct repeated request header value during de-duplication

Hono: API Gateway v1 adapter can drop a distinct repeated request header value during de-duplication

▾ Sunlithono · honoEPSS 0.18%via GHSA
CVE-2026-59895Medium· 6.1
2mo ago

Hono: Server-Side XSS via JSX Escaping Bypass in cx() Utility

Hono: Server-Side XSS via JSX Escaping Bypass in cx() Utility

▾ Sunlithono · honoEPSS 0.33%via GHSA
CVE-2026-59896Medium· 6.5
2mo ago

hono/jsx does not isolate context per request, leading to cross-request data disclosure

hono/jsx does not isolate context per request, leading to cross-request data disclosure

▾ Sunlithono · honoEPSS 0.30%via GHSA
CVE-2026-54291High
2mo ago

PostgreSQL JDBC Driver: Silent channel-binding authentication downgrade via unsupported certificate algorithms

PostgreSQL JDBC Driver: Silent channel-binding authentication downgrade via unsupported certificate algorithms

▾ Twilightpostgresql · org.postgresql:postgresqlEPSS 0.24%via GHSA
GHSA-8whx-365g-h9vvLow
2mo ago

Loofah `allowed_uri?` does not detect `javascript:` URIs split by named whitespace character references

Loofah `allowed_uri?` does not detect `javascript:` URIs split by named whitespace character references

▾ Sunlitloofah · loofahvia GHSA
CVE-2026-55831High· 7.5
2mo ago

io.netty/netty-codec-http: Netty: Denial of Service via SPDY SETTINGS frame processing (CVE-2026-55831)

A flaw was found in Netty, a network application framework. A remote attacker, by sending a specially crafted SPDY/3.1 SETTINGS frame, could cause the SPDY SETTINGS decoder to create a large number of map entries. This excessive processing…

▾ TwilightRed Hat · Red Hat JBoss EAP 8.1 for RHEL 8EPSS 0.66%via CSAF
CVE-2026-55833High· 7.5
2mo ago

netty: io.netty/netty-codec-http: Netty: Denial of Service via SPDY header decompression amplification (CVE-2026-55833)

A flaw was found in Netty, a network application framework. A remote attacker could exploit a vulnerability in the SPDY header decoding process. By sending a specially crafted, small compressed header block, the attacker can cause it to ex…

▾ TwilightRed Hat · Red Hat JBoss EAP 8.1 for RHEL 8EPSS 0.66%via CSAF
CVE-2026-59198Medium· 6.5
2mo ago

Pillow TGA RLE encoder can serialize up to ~57 KB of adjacent heap data into generated images

Pillow TGA RLE encoder can serialize up to ~57 KB of adjacent heap data into generated images

▾ Sunlitpillow · pillowEPSS 0.50%via OSV
CVE-2026-59727Low
2mo ago

Astro: Cross-site scripting via unescaped transition:* directive values on hydrated islands

Astro: Cross-site scripting via unescaped transition:* directive values on hydrated islands

▾ Sunlitastro · astroEPSS 0.54%via GHSA
CVE-2026-59728Medium· 4.3
2mo ago

@astrojs/rss: XML Injection via Unescaped RSS Feed Fields

@astrojs/rss: XML Injection via Unescaped RSS Feed Fields

▾ Sunlitastrojs · @astrojs/rssEPSS 0.37%via GHSA
CVE-2026-59729Medium
2mo ago

Astro: XSS via unescaped spread attribute names in renderHTMLElement (incomplete fix for CVE-2026-54298)

Astro: XSS via unescaped spread attribute names in renderHTMLElement (incomplete fix for CVE-2026-54298)

▾ Sunlitastro · astroEPSS 0.54%via GHSA
CVE-2026-59730Low
2mo ago

@astrojs/node: Backslash-prefixed paths not recognized as internal by trailing-slash redirect

@astrojs/node: Backslash-prefixed paths not recognized as internal by trailing-slash redirect

▾ Sunlitastrojs · @astrojs/nodeEPSS 0.46%via GHSA
CVE-2026-12590Low· 3.7
2mo ago

body-parser vulnerable to denial of service when invalid limit value silently disables size enforcement

body-parser vulnerable to denial of service when invalid limit value silently disables size enforcement

▾ Sunlitbody-parser · body-parserEPSS 0.41%via GHSA
GHSA-hp3v-mfqw-h74cLow· 3.7
2mo ago

@astrojs/netlify generates an overly-broad Netlify Image CDN allowlist because remotePatterns.pathname metacharacters are not escaped

@astrojs/netlify generates an overly-broad Netlify Image CDN allowlist because remotePatterns.pathname metacharacters are not escaped

▾ Sunlitastrojs · @astrojs/netlifyvia GHSA
GHSA-8mv7-9c27-98vcMedium
2mo ago

Astro: composable `astro/hono` pipeline bypasses `security.checkOrigin` when `middleware()` is absent or misordered

Astro: composable `astro/hono` pipeline bypasses `security.checkOrigin` when `middleware()` is absent or misordered

▾ Sunlitastro · astrovia GHSA
GHSA-f283-ghqc-fg79Medium· 5.3
2mo ago

Guzzle: Unbounded response cookies risk denial of service

Guzzle: Unbounded response cookies risk denial of service

▾ Sunlitguzzlehttp · guzzlehttp/guzzlevia GHSA
GHSA-wm3w-8rrp-j577Medium· 5.9
2mo ago

Guzzle: Host-only cookie scope is not preserved

Guzzle: Host-only cookie scope is not preserved

▾ Sunlitguzzlehttp · guzzlehttp/guzzlevia GHSA
GHSA-h95v-h523-3mw8Medium· 5.9
2mo ago

Guzzle: URI fragments disclosed in redirect Referer headers

Guzzle: URI fragments disclosed in redirect Referer headers

▾ Sunlitguzzlehttp · guzzlehttp/guzzlevia GHSA
CVE-2026-61736Critical· 9.3PoC
2mo ago

LightRAG: CORS Wildcard + Credentials Enables Any-Origin Credentialed Requests

LightRAG: CORS Wildcard + Credentials Enables Any-Origin Credentialed Requests

▾ Abyssallightrag-hku · lightrag-hkuEPSS 1.4%via GHSA
GHSA-94pj-82f3-465wMedium· 5.3
2mo ago

Guzzle: Proxy-Authorization headers can be sent to origin servers

Guzzle: Proxy-Authorization headers can be sent to origin servers

▾ Sunlitguzzlehttp · guzzlehttp/guzzlevia GHSA
CVE-2026-61740Critical
2mo ago

LightRAG is Vulnerable to Authentication Bypass: hardcoded DEFAULT_TOKEN_SECRET and public /auth-status defeat LIGHTRAG_API_KEY protection

LightRAG is Vulnerable to Authentication Bypass: hardcoded DEFAULT_TOKEN_SECRET and public /auth-status defeat LIGHTRAG_API_KEY protection

▾ Midnightlightrag-hku · lightrag-hkuEPSS 0.66%via GHSA
CVE-2026-61835High· 7.7
2mo ago

Directus: SSRF Protection Bypass via 0.0.0.0 in File Import

Directus: SSRF Protection Bypass via 0.0.0.0 in File Import

▾ Twilightdirectus · directusEPSS 0.41%via GHSA
CVE-2026-61836High· 8.6
2mo ago

Directus: Authorization-dependent response served from unsegmented cache key

Directus: Authorization-dependent response served from unsegmented cache key

▾ Twilightdirectus · directusEPSS 0.47%via GHSA
CVE-2026-13311High· 7.5
2mo ago

shell-quote: Quadratic-complexity Denial of Service in `parse()` (CWE-407)

shell-quote: Quadratic-complexity Denial of Service in `parse()` (CWE-407)

▾ Twilightshell-quote · shell-quoteEPSS 0.60%via GHSA
CVE-2026-59875Medium· 5.3
2mo ago

node-tar: Uncaught Exception DoS via NUL byte in PAX path/linkpath records

node-tar: Uncaught Exception DoS via NUL byte in PAX path/linkpath records

▾ Sunlittar · tarEPSS 0.51%via GHSA
CVE-2026-59947Medium· 4.7
2mo ago

Composer: URL-embedded HTTP-Basic username leaks to verbose logs (GitHub PAT exposure)

Composer: URL-embedded HTTP-Basic username leaks to verbose logs (GitHub PAT exposure)

▾ Sunlitcomposer · composer/composerEPSS 0.14%via GHSA
CVE-2026-59946Medium· 6.1
2mo ago

Composer: Path traversal in package bin field lets dependencies chmod arbitrary host files

Composer: Path traversal in package bin field lets dependencies chmod arbitrary host files

▾ Sunlitcomposer · composer/composerEPSS 0.17%via GHSA
CVEs tagged “ghsa” — page 74 · VulnSea