Tagged “ghsa”
CVEs tagged ghsa, newest first.
3827 CVEsRSS
GHSA-jf6w-2mvx-633jMedium· 6.1justhtml: to_markdown() code-span blank-line breakout enables XSS
justhtml: to_markdown() code-span blank-line breakout enables XSS
GHSA-wrr4-782v-jhwhLowneotoma has tenant isolation gap in relationship query endpoints
neotoma has tenant isolation gap in relationship query endpoints
GHSA-fq3w-p4fg-mw73Lowfixurjavainstall: Previous Fuji versions can accidentally wipe `/usr/share/man/man8`
fixurjavainstall: Previous Fuji versions can accidentally wipe `/usr/share/man/man8`
GHSA-r4v7-6wcg-ghj5Medium· 6.5FileBrowser: Missing Rate Limiting on Authentication Endpoint Enables Brute Force Attacks
FileBrowser: Missing Rate Limiting on Authentication Endpoint Enables Brute Force Attacks
GHSA-rjr7-jggh-pgcpHighchi's RealIP Middleware allows IP spoofing via unvalidated X-Forwarded-For header
chi's RealIP Middleware allows IP spoofing via unvalidated X-Forwarded-For header
GHSA-9g5q-2w5x-hmxfHighchi Middleware Vulnerable to Potential IP Spoofing via `X-Forwarded-For` Header in `Request.RemoteAddr` Resolution
chi Middleware Vulnerable to Potential IP Spoofing via `X-Forwarded-For` Header in `Request.RemoteAddr` Resolution
GHSA-3fxj-6jh8-hvhxMediumchi Has an IP Spoofing Vulnerability in `middleware.RealIP`
chi Has an IP Spoofing Vulnerability in `middleware.RealIP`
CVE-2026-48775Medium· 6.8LangGraph Checkpoint: Unsafe JSON deserialization in checkpoint loading
LangGraph Checkpoint: Unsafe JSON deserialization in checkpoint loading
CVE-2026-48776Medium· 4.2LangGraph SDK has unsafe URL path construction
LangGraph SDK has unsafe URL path construction
CVE-2026-9291High· 7.1amazon-braket-sdk vulnerable to Insecure Deserialization via pickle.loads()
amazon-braket-sdk vulnerable to Insecure Deserialization via pickle.loads()
CVE-2026-48502HighMessagePack-CSharp: Denial of service vulnerabilities can swamp the CPU or crash the process with stack and heap overflows
MessagePack-CSharp: Denial of service vulnerabilities can swamp the CPU or crash the process with stack and heap overflows
CVE-2026-48504Medium· 5.3opentelemetry_sdk has unbounded memory allocation in W3C Baggage propagation
opentelemetry_sdk has unbounded memory allocation in W3C Baggage propagation
CVE-2026-48505High· 7.4Filament: Multi-factor authentication (app) recovery codes can still be used multiple times via concurrent submission
Filament: Multi-factor authentication (app) recovery codes can still be used multiple times via concurrent submission
CVE-2026-48506High· 7.5MessagePack-CSharp: MessagePackReader.Skip can recurse without enforcing maximum object graph depth
MessagePack-CSharp: MessagePackReader.Skip can recurse without enforcing maximum object graph depth
CVE-2026-48509MediumMessagePack-CSharp: ASP.NET Core MessagePackInputFormatter defaults to TrustedData for HTTP request bodies
MessagePack-CSharp: ASP.NET Core MessagePackInputFormatter defaults to TrustedData for HTTP request bodies
CVE-2026-48510Medium· 7.5MessagePack-CSharp: LZ4 decompression allocates from unbounded declared output lengths
MessagePack-CSharp: LZ4 decompression allocates from unbounded declared output lengths
CVE-2026-48511Medium· 7.5MessagePack-CSharp: ExpandoObject formatter can perform quadratic insertion work on untrusted maps
MessagePack-CSharp: ExpandoObject formatter can perform quadratic insertion work on untrusted maps
CVE-2026-48512MediumMessagePack-CSharp: JSON conversion APIs can recurse without consistent depth enforcement
MessagePack-CSharp: JSON conversion APIs can recurse without consistent depth enforcement
CVE-2026-48513MediumMessagePack-CSharp: DynamicUnionResolver-generated deserializers miss depth enforcement
MessagePack-CSharp: DynamicUnionResolver-generated deserializers miss depth enforcement
CVE-2026-48514MediumMessagePack-CSharp: Unity unsafe blit formatter allocates from unbounded byte length
MessagePack-CSharp: Unity unsafe blit formatter allocates from unbounded byte length
CVE-2026-48515MediumMessagePack-CSharp: Multi-dimensional array formatters allocate from unchecked dimensions
MessagePack-CSharp: Multi-dimensional array formatters allocate from unchecked dimensions
CVE-2026-48516MediumMessagePack-CSharp: InterfaceLookupFormatter bypasses collision-resistant comparer settings
MessagePack-CSharp: InterfaceLookupFormatter bypasses collision-resistant comparer settings
CVE-2026-48517MediumMessagePack-CSharp: Typeless deserialization type restrictions do not recurse into arrays or generic arguments
MessagePack-CSharp: Typeless deserialization type restrictions do not recurse into arrays or generic arguments
CVE-2026-48529Medium· 6.0GitHub MCP Server: Lockdown mode singleton in HTTP server causes cross-user GraphQL client confusion
GitHub MCP Server: Lockdown mode singleton in HTTP server causes cross-user GraphQL client confusion
CVE-2026-48724Medium· 5.5ImageMagick has a Heap Buffer Underwrite in the Floyd-Steinberg depth dithering method
ImageMagick has a Heap Buffer Underwrite in the Floyd-Steinberg depth dithering method
CVE-2026-48733Medium· 4.7ImageMagick has an Infinite Loop in subimage-search with crafted image
ImageMagick has an Infinite Loop in subimage-search with crafted image
CVE-2026-48734Medium· 5.5ImageMagick Vulnerable to Stack Overflow in its MVG Decoder
ImageMagick Vulnerable to Stack Overflow in its MVG Decoder
CVE-2026-48994Medium· 5.9ImageMagick has a Heap Buffer Over-Write in MAT decoder on 32-bit systems
ImageMagick has a Heap Buffer Over-Write in MAT decoder on 32-bit systems
CVE-2026-49218High· 7.5ImageMagick: Policy Bypass in DCM decoder could result in image with invalid dimensions
ImageMagick: Policy Bypass in DCM decoder could result in image with invalid dimensions
CVE-2026-49219Medium· 5.5ImageMagick: Policy Bypass can read disallowed files via symlink
ImageMagick: Policy Bypass can read disallowed files via symlink