VulnSea

Tagged “ghsa”

CVEs tagged ghsa, newest first.

3827 CVEsRSS

CVE-2026-50274High· 7.5
2mo ago

github.com/DataDog/dd-trace-go: Datadog dd-trace-go: Denial of Service via malicious baggage headers (CVE-2026-50274)

A flaw was found in Datadog dd-trace-go, a Go client library. A remote, unauthenticated attacker can exploit this vulnerability by sending a request with a specially crafted baggage header containing an arbitrarily large number of key-valu…

▾ TwilightRed Hat · github.com/DataDog/dd-trace-goEPSS 0.79%via CSAF
CVE-2026-44891High· 7.5
2mo ago

io.netty/netty-codec-stomp: Netty: Denial of Service vulnerability in STOMP decoder (CVE-2026-44891)

A flaw was found in Netty, a network application framework, specifically within the StompSubframeDecoder component. This vulnerability allows a remote attacker to cause a denial of service (DoS) by sending a large number of small headers. …

▾ TwilightRed Hat · Red Hat JBoss Enterprise Application Platform 7EPSS 0.73%via CSAF
CVE-2026-54171Medium· 6.5
2mo ago

excon: Excon: Information disclosure via unstripped sensitive headers during redirects (CVE-2026-54171)

A flaw was found in Excon, a Ruby HTTP client library. The RedirectFollower middleware, responsible for handling redirects, failed to remove sensitive header information when a request was redirected to a new target. This oversight could l…

▾ SunlitRed Hat · Red Hat 3scale API Management Platform 2EPSS 0.43%via CSAF
CVE-2026-49834Medium· 5.9
2mo ago

github.com/sigstore/sigstore-go: sigstore-go: Security Policy Bypass via Compromised Log (CVE-2026-49834)

A flaw was found in sigstore-go, a Go library for Sigstore signing and verification. This vulnerability allows a single compromised transparency log or Certificate Transparency (CT) log to bypass the multi-log threshold requirements. An at…

▾ SunlitRed Hat · Red Hat Trusted Artifact SignerEPSS 0.18%via CSAF
CVE-2026-10050Critical· 9.1
2mo ago

jetty-security: Eclipse Jetty: Authentication bypass via Digest authentication encoding collision (CVE-2026-10050)

A flaw was found in Eclipse Jetty, a widely used web server and servlet container. This vulnerability affects its HTTP Digest authentication mechanism, which is used to verify user identities. The issue arises because Jetty's hash computat…

▾ MidnightRed Hat · Red Hat OpenShift Dev Spaces 3.30EPSS 0.63%via CSAF
CVE-2026-52869High· 7.1
2mo ago

MCP Python SDK: HTTP transports serve session requests without verifying the authenticated principal

MCP Python SDK: HTTP transports serve session requests without verifying the authenticated principal

▾ Twilightmcp · mcpEPSS 0.53%via OSV
CVE-2026-54540High· 8.8
2mo ago

Pheditor has an authenticated terminal command whitelist bypass

Pheditor has an authenticated terminal command whitelist bypass

▾ Twilightpheditor · pheditor/pheditorEPSS 0.73%via GHSA
CVE-2026-55578High· 8.8
2mo ago

Pheditor: Incomplete command sanitization in terminal feature allows RCE via pipe operator, backtick substitution, and newline injection

Pheditor: Incomplete command sanitization in terminal feature allows RCE via pipe operator, backtick substitution, and newline injection

▾ Twilightpheditor · pheditor/pheditorEPSS 0.67%via GHSA
CVE-2026-55579Critical· 9.8PoC
2mo ago

Pheditor: Hardcoded default password 'admin' with no forced change enables full application compromise

Pheditor: Hardcoded default password 'admin' with no forced change enables full application compromise

▾ Abyssalpheditor · pheditor/pheditorEPSS 0.79%via GHSA
GHSA-48qw-824m-86prHigh· 7.7
2mo ago

ArcadeDB: Privilege escalation via reader role in /api/v1/command JS scripting language — arbitrary host file read

ArcadeDB: Privilege escalation via reader role in /api/v1/command JS scripting language — arbitrary host file read

▾ Twilightarcadedb · com.arcadedb:arcadedb-servervia GHSA
CVE-2026-59950High
2mo ago

MCP Python SDK: WebSocket server transport does not support Host/Origin validation

MCP Python SDK: WebSocket server transport does not support Host/Origin validation

▾ Twilightmcp · mcpEPSS 0.23%via OSV
GHSA-x9f9-r4m8-9xc2High
2mo ago

ArcadeDB: Trigger scripts run with java.lang.* allowed, enabling OS command execution (RCE)

ArcadeDB: Trigger scripts run with java.lang.* allowed, enabling OS command execution (RCE)

▾ Twilightarcadedb · com.arcadedb:arcadedb-enginevia GHSA
GHSA-vwjc-v7x7-cm6gHigh
2mo ago

ArcadeDB: Scripting authorization gate (GHSA-48qw-824m-86pr) bypassed via SQL DEFINE FUNCTION ... LANGUAGE js

ArcadeDB: Scripting authorization gate (GHSA-48qw-824m-86pr) bypassed via SQL DEFINE FUNCTION ... LANGUAGE js

▾ Twilightarcadedb · com.arcadedb:arcadedb-enginevia GHSA
GHSA-x8mg-6r4p-87pfHigh
2mo ago

ArcadeDB has cross-database IDOR: /ts/*, /batch/*, Prometheus and Grafana handlers bypass authorization

ArcadeDB has cross-database IDOR: /ts/*, /batch/*, Prometheus and Grafana handlers bypass authorization

▾ Twilightarcadedb · com.arcadedb:arcadedb-servervia GHSA
GHSA-ggxf-9f6j-w742Medium
2mo ago

Diesel has possible use after free when deserializing a SQLite database via `SqliteConnection::deserialize_readonly_database`

Diesel has possible use after free when deserializing a SQLite database via `SqliteConnection::deserialize_readonly_database`

▾ Sunlitdiesel · dieselvia GHSA
CVE-2026-52870High· 7.6
2mo ago

MCP Python SDK: Experimental task handlers allow any client to access and cancel other clients' tasks

MCP Python SDK: Experimental task handlers allow any client to access and cancel other clients' tasks

▾ Twilightmcp · mcpEPSS 0.39%via OSV
GHSA-v626-428r-43p8High· 6.5
2mo ago

Duplicate Advisory: Grav: Decompression-bomb size cap bypassed by forged ZIP size in ZipArchiver/Installer

Duplicate Advisory: Grav: Decompression-bomb size cap bypassed by forged ZIP size in ZipArchiver/Installer

▾ Twilightgetgrav · getgrav/gravvia GHSA
GHSA-373m-p57p-8665Medium· 6.1
2mo ago

Duplicate Advisory: Grav: XSS Blueprint Validation Bypass via Twig String Concatenation

Duplicate Advisory: Grav: XSS Blueprint Validation Bypass via Twig String Concatenation

▾ Sunlitgetgrav · getgrav/gravvia GHSA
CVE-2026-56742Medium· 5.9
2mo ago

Cilium is a networking, observability, and security solution

Cilium is a networking, observability, and security solution. Prior to 1.17.17, 1.18.11, and 1.19.5, Cilium clusters using Gateway API allow users with permissions to create or update namespaced HTTPRoutes to mirror HTTP traffic to any S…

▾ Sunlitcilium · ciliumEPSS 0.17%via NVD
CVE-2026-58659High· 7.8
2mo ago

PyTorch Lightning through 2.6.5, fixed in commit d710d68, contains a remote code execution vulnerability in the _load_state function that imports and executes attacker-controlled module names from checkpoint _instantiator hyperparameters…

PyTorch Lightning through 2.6.5, fixed in commit d710d68, contains a remote code execution vulnerability in the _load_state function that imports and executes attacker-controlled module names from checkpoint _instantiator hyperparameters…

▾ TwilightRed Hat · Red Hat AI Inference ServerEPSS 0.63%via NVD
CVE-2026-54498High· 8.7
2mo ago

ViewComponent: around_render HTML-Safety Bypass

ViewComponent: around_render HTML-Safety Bypass

▾ Twilightview_component · view_componentEPSS 0.45%via GHSA
CVE-2026-54497Medium· 6.8
2mo ago

ViewComponent: Reused Component Instances Retain Stale Render Context

ViewComponent: Reused Component Instances Retain Stale Render Context

▾ Sunlitview_component · view_componentEPSS 0.33%via GHSA
CVE-2026-50271High· 7.5
2mo ago

dd-trace-py: Improper parsing of W3C baggage headers may lead to DoS

dd-trace-py: Improper parsing of W3C baggage headers may lead to DoS

▾ Twilightddtrace · ddtraceEPSS 0.79%via OSV
CVE-2026-50272High· 7.5
2mo ago

dd-trace-js: Improper parsing of W3C baggage headers may lead to DoS

dd-trace-js: Improper parsing of W3C baggage headers may lead to DoS

▾ Twilightdd-trace · dd-traceEPSS 0.79%via GHSA
CVE-2026-50273High· 7.5
2mo ago

dd-trace-dotnet: Improper parsing of W3C baggage headers may lead to DoS

dd-trace-dotnet: Improper parsing of W3C baggage headers may lead to DoS

▾ TwilightDatadog · Datadog.TraceEPSS 0.79%via GHSA
CVE-2026-50289High
2mo ago

systeminformation: OS command injection in networkInterfaces() via interfaces(5) source-directive path on Linux

systeminformation: OS command injection in networkInterfaces() via interfaces(5) source-directive path on Linux

▾ Twilightsysteminformation · systeminformationEPSS 3.6%via GHSA
GHSA-xg43-5579-qw6vMedium· 6.5
2mo ago

adawolfa/isdoc: Uncontrolled resource consumption (decompression bomb) when reading untrusted ISDOCX or PDF files

adawolfa/isdoc: Uncontrolled resource consumption (decompression bomb) when reading untrusted ISDOCX or PDF files

▾ Sunlitadawolfa · adawolfa/isdocvia GHSA
GHSA-62gx-5q78-wrvxHigh· 8.8
2mo ago

obsidian-local-rest-api: Authenticated path traversal via URL-encoded %2F in /vault/{path} — arbitrary host file read/write/delete

obsidian-local-rest-api: Authenticated path traversal via URL-encoded %2F in /vault/{path} — arbitrary host file read/write/delete

▾ Twilightobsidian-local-rest-api · obsidian-local-rest-apivia GHSA
CVE-2026-53656Medium· 6.3
2mo ago

FiftyOne App server uses wildcard CORS (Access-Control-Allow-Origin: *), enabling cross-origin reads of local server data

FiftyOne App server uses wildcard CORS (Access-Control-Allow-Origin: *), enabling cross-origin reads of local server data

▾ Sunlitfiftyone · fiftyoneEPSS 0.12%via GHSA
CVE-2026-54463Medium
2mo ago

websocket-driver: Memory exhaustion via abuse of protocol length headers

websocket-driver: Memory exhaustion via abuse of protocol length headers

▾ Sunlitwebsocket-driver · websocket-driverEPSS 0.49%via GHSA
CVEs tagged “ghsa” — page 76 · VulnSea