VulnSea

Tagged “ghsa”

CVEs tagged ghsa, newest first.

3827 CVEsRSS

CVE-2026-50566Critical· 9.9
3mo ago

Fission: Environment Runtime.Container and Builder.Container SecurityContext bypass allows privileged pod creation

Fission: Environment Runtime.Container and Builder.Container SecurityContext bypass allows privileged pod creation

▾ Midnightfission · github.com/fission/fissionEPSS 0.51%via GHSA
CVE-2026-48593Medium
3mo ago

oban_web: Unbounded range expansion in cron describe causes memory exhaustion

oban_web: Unbounded range expansion in cron describe causes memory exhaustion

▾ Sunlitoban_web · oban_webEPSS 0.47%via GHSA
CVE-2026-48592Medium
3mo ago

oban_web missing authorization check on `save-job` event handler

oban_web missing authorization check on `save-job` event handler

▾ Sunlitoban_web · oban_webEPSS 0.56%via GHSA
CVE-2026-48795High· 8.6
3mo ago

@adonisjs/bodyparser has an incomplete fix for CVE-2026-25754

@adonisjs/bodyparser has an incomplete fix for CVE-2026-25754

▾ Twilightadonisjs · @adonisjs/bodyparserEPSS 0.55%via GHSA
CVE-2026-49835Medium· 5.9
3mo ago

Sigstore Timestamp Authority has OOM due to unbounded metric label cardinality

Sigstore Timestamp Authority has OOM due to unbounded metric label cardinality

▾ Sunlitsigstore · github.com/sigstore/timestamp-authority/v2EPSS 0.74%via GHSA
CVE-2026-48805Low
3mo ago

Twig: Sandbox state regression in deprecated internal wrappers in `src/Resources/core.php`

Twig: Sandbox state regression in deprecated internal wrappers in `src/Resources/core.php`

▾ Sunlittwig · twig/twigEPSS 0.48%via GHSA
CVE-2026-48806Medium
3mo ago

Twig: Sandbox `__toString()` policy bypass via dynamic mapping keys

Twig: Sandbox `__toString()` policy bypass via dynamic mapping keys

▾ Sunlittwig · twig/twigEPSS 0.42%via GHSA
CVE-2026-48807Medium
3mo ago

Twig: Sandbox `__toString()` policy bypass via `Traversable` in `join` and `replace` filters

Twig: Sandbox `__toString()` policy bypass via `Traversable` in `join` and `replace` filters

▾ Sunlittwig · twig/twigEPSS 0.37%via GHSA
CVE-2026-48808Medium
3mo ago

Twig: Sandbox property allowlist bypass via the `column` filter under `SourcePolicyInterface`

Twig: Sandbox property allowlist bypass via the `column` filter under `SourcePolicyInterface`

▾ Sunlittwig · twig/twigEPSS 0.41%via GHSA
CVE-2026-2704Low· 4.4
3mo ago

Open Babel has an out-of-bounds read in CIF transform3d::DescribeAsString

Open Babel has an out-of-bounds read in CIF transform3d::DescribeAsString

▾ Sunlitopenbabel · openbabelEPSS 0.84%via GHSA
CVE-2026-2705Low· 5.5
3mo ago

Open Babel has NULL pointer dereference in MOL2 OBAtom::SetFormalCharge

Open Babel has NULL pointer dereference in MOL2 OBAtom::SetFormalCharge

▾ Sunlitopenbabel · openbabelEPSS 0.77%via GHSA
CVE-2026-3408Low· 5.5
3mo ago

Open Babel has a NULL pointer dereference in CDXML OBAtom::GetExplicitValence

Open Babel has a NULL pointer dereference in CDXML OBAtom::GetExplicitValence

▾ Sunlitopenbabel · openbabelEPSS 0.68%via GHSA
CVE-2025-10994Low· 7.8
3mo ago

Open Babel has Use-after-free in GAMESS GAMESSOutputFormat::ReadMolecule

Open Babel has Use-after-free in GAMESS GAMESSOutputFormat::ReadMolecule

▾ Sunlitopenbabel · openbabelEPSS 0.24%via GHSA
CVE-2026-55219Medium· 5.3
3mo ago

Paymenter has race condition in payWithCredit() that enables credit double-spend

Paymenter has race condition in payWithCredit() that enables credit double-spend

▾ Sunlitpaymenter · paymenter/paymenterEPSS 0.21%via GHSA
CVE-2026-49451High· 7.5
3mo ago

Microsoft.OpenAPI: Circular schema references may terminate OpenAPI parsing

Microsoft.OpenAPI: Circular schema references may terminate OpenAPI parsing

▾ TwilightMicrosoft · Microsoft.OpenAPIEPSS 1.2%via GHSA
CVE-2022-31008Medium· 5.5
3mo ago

RabbitMQ has predictable credential obfuscation seed value used in Shovel and Federation plugins

RabbitMQ has predictable credential obfuscation seed value used in Shovel and Federation plugins

▾ Sunlitrabbit_common · rabbit_commonEPSS 0.34%via GHSA
CVE-2023-46118Medium· 4.9
3mo ago

RabbitMQ vulnerable to Denial of Service by publishing large messages over the HTTP API

RabbitMQ vulnerable to Denial of Service by publishing large messages over the HTTP API

▾ Sunlitrabbit_common · rabbit_commonEPSS 1.1%via GHSA
CVE-2026-47198High· 8.5
3mo ago

Paymenter has URL parameter injection that bypasses paid plan limits at checkout

Paymenter has URL parameter injection that bypasses paid plan limits at checkout

▾ Twilightpaymenter · paymenter/paymenterEPSS 0.40%via GHSA
CVE-2026-13676High· 7.5
3mo ago

fast-uri versions 2.3.1 through 3.1.2 and 4.0.0 fail to canonicalize Unicode (IDN) hostnames for HTTP-family URLs

fast-uri versions 2.3.1 through 3.1.2 and 4.0.0 fail to canonicalize Unicode (IDN) hostnames for HTTP-family URLs. The IDN conversion path calls a helper that does not exist on the global URL constructor, silently leaving the host in its…

▾ Twilightopenjsf · fast-uriEPSS 0.48%via NVD
CVE-2026-44840High· 7.5PoC
3mo ago

Dgraph Vulnerable to DQL Injection via checkUserPassword GraphQL Query

Dgraph Vulnerable to DQL Injection via checkUserPassword GraphQL Query

▾ Midnightdgraph-io · github.com/dgraph-io/dgraph/v25EPSS 0.49%via GHSA
GHSA-fr4h-3cph-29xvHigh· 7.1
3mo ago

pnpm: Hoisted install imports lockfile alias outside node_modules

pnpm: Hoisted install imports lockfile alias outside node_modules

▾ Twilightpnpm · pnpmvia GHSA
GHSA-72r4-9c5j-mj57High· 7.1
3mo ago

pnpm: `patch-remove` could delete project-selected files outside the patches directory

pnpm: `patch-remove` could delete project-selected files outside the patches directory

▾ Twilightpnpm · pnpmvia GHSA
GHSA-qrv3-253h-g69cHigh· 8.2
3mo ago

pnpm: Path traversal in configDependencies env lockfile allows symlink creation outside node_modules/.pnpm-config

pnpm: Path traversal in configDependencies env lockfile allows symlink creation outside node_modules/.pnpm-config

▾ Twilightpnpm · pnpmvia GHSA
CVE-2026-55677High· 7.5
3mo ago

github.com/labstack/echo: Echo: Unauthorized Information Disclosure via URL Path Decoding Discrepancy (CVE-2026-55677)

A flaw was found in Echo, a Go web framework. An attacker can exploit a disagreement in URL path decoding between the router and the static file handler. The router processes raw encoded paths, while the static file handler unescapes encod…

▾ TwilightRed Hat · Red Hat Enterprise Linux AppStream E4S (v.9.2)EPSS 0.43%via CSAF
CVE-2026-47077High
3mo ago

Hackney: Per-chunk timeout with unbounded body accumulation enables slow-drip OOM

Hackney: Per-chunk timeout with unbounded body accumulation enables slow-drip OOM

▾ Twilighthackney · hackneyEPSS 0.70%via GHSA
CVE-2026-53463Medium· 4.3
3mo ago

ImageMagick has Null Pointer Dereference caused by the distort operation when passing incorrect arguments

ImageMagick has Null Pointer Dereference caused by the distort operation when passing incorrect arguments

▾ SunlitMagick · Magick.NET-Q16-AnyCPUEPSS 0.32%via GHSA
CVE-2026-48758Medium· 5.4
3mo ago

@sigstore/core has DSSE payloadType type-binding failure

@sigstore/core has DSSE payloadType type-binding failure

▾ Sunlitsigstore · @sigstore/coreEPSS 0.26%via GHSA
CVE-2026-48782Medium· 6.8
3mo ago

pydantic-ai: SSRF blocklist bypass via IPv4-compatible, SIIT/IVI, and local NAT64 IPv6 addresses (incomplete fix of CVE-2026-46678)

pydantic-ai: SSRF blocklist bypass via IPv4-compatible, SIIT/IVI, and local NAT64 IPv6 addresses (incomplete fix of CVE-2026-46678)

▾ Sunlitpydantic-ai-slim · pydantic-ai-slimEPSS 0.42%via GHSA
CVE-2026-48788High· 8.2
3mo ago

Remark42: Cross-Site Scripting (XSS) on /api/v1/img via content-type spoofing

Remark42: Cross-Site Scripting (XSS) on /api/v1/img via content-type spoofing

▾ Twilightumputun · github.com/umputun/remark42EPSS 0.41%via GHSA
GHSA-5vwr-qchf-q4pfMedium
3mo ago

@cyclonedx/cdxgen: Maven project scanning may allow shell command injection through repository-controlled module paths

@cyclonedx/cdxgen: Maven project scanning may allow shell command injection through repository-controlled module paths

▾ Sunlitcyclonedx · @cyclonedx/cdxgenvia GHSA
CVEs tagged “ghsa” — page 91 · VulnSea