-
Notifications
You must be signed in to change notification settings - Fork 637
Pull requests: github/advisory-database
Author
Label
Projects
Milestones
Reviews
Assignee
Sort
Pull requests list
[GHSA-w4pp-8pjf-rmxw] Versions of the package pacote from 11.2.7 are vulnerable...
#8036
opened Jun 13, 2026 by
Capco-srachels
Loading…
[GHSA-cfvq-fj53-j2c7] In version v0.3.8 of open-webui/open-webui, there is an...
#8035
opened Jun 12, 2026 by
Classic298
Loading…
[GHSA-2823-wfgm-j3hr] open-webui v0.5.16 is vulnerable to SSRF in routers...
#8034
opened Jun 12, 2026 by
Classic298
Loading…
[GHSA-hqhc-8hp4-hrwc] An authentication bypass vulnerability exists in Open...
#8033
opened Jun 12, 2026 by
Classic298
Loading…
[GHSA-2rf6-9rc8-rqch] A security vulnerability has been detected in open-webui...
#8032
opened Jun 12, 2026 by
Classic298
Loading…
[GHSA-vh96-p962-544h] Open WebUI Cleartext Transmission of Credentials...
#8031
opened Jun 12, 2026 by
Classic298
Loading…
[GHSA-cggw-334c-f4mj] Open WebUI load_tool_module_by_id Command Injection...
#8030
opened Jun 12, 2026 by
Classic298
Loading…
[GHSA-qr7m-hwp7-qjqg] Open WebUI PIP install_frontmatter_requirements Command...
#8029
opened Jun 12, 2026 by
Classic298
Loading…
[GHSA-c6pw-q7f2-97hv] Privilege Escalation in cordova-plugin-inappbrowser
#8028
opened Jun 12, 2026 by
NiklasMerz
Loading…
[GHSA-76cg-cfhx-373f] MLFlow unsafe deserialization
#8027
opened Jun 12, 2026 by
brawlingthebits
Loading…
[GHSA-9wx7-jrvc-28mm] Signature verification vulnerability in Stark Bank ecdsa libraries
#8021
opened Jun 12, 2026 by
RainSignal
Loading…
[GHSA-f53p-382v-8pj7] The Avada Builder (fusion-builder) plugin for WordPress...
#8019
opened Jun 12, 2026 by
vanesabravon
Loading…
[GHSA-866g-f22w-33x8] @ai-sdk/provider-utils has an Uncontrolled Resource Consumption issue
#8017
opened Jun 11, 2026 by
lachieh
Loading…
[GHSA-cv3v-7846-6pxm] Unauthorized File Access in node-git-server
#8016
opened Jun 11, 2026 by
RainSignal
Loading…
[GHSA-mrrw-grhq-86gf] Ascii (crate) allows out-of-bounds array indexing in safe code
#8015
opened Jun 11, 2026 by
RainSignal
Loading…
[GHSA-9gxv-x7rp-r2hc] gree/jose - "None" Algorithm treated as valid in tokens
#8014
opened Jun 11, 2026 by
RainSignal
Loading…
[GHSA-8wx3-8m4x-g5h4] FOSUserBundle User Identity Validation Vulnerability
#8013
opened Jun 11, 2026 by
RainSignal
Loading…
[GHSA-g8pg-33v4-9r96] Thelia authentication bypass vulnerability
#8012
opened Jun 11, 2026 by
RainSignal
Loading…
[GHSA-22q7-cg4r-p9mx] TYPO3 Cross-Site Scripting in Fluid ViewHelpers
#8011
opened Jun 11, 2026 by
RainSignal
Loading…
[GHSA-rrmf-rvhw-rf47] PyTorch is vulnerable to memory corruption through its torch.jit.script function
#8005
opened Jun 11, 2026 by
benglewis
Loading…
[GHSA-w9m9-85wc-3x92] A vulnerability was determined in postcss up to 7.1.1....
#8003
opened Jun 11, 2026 by
MoOx
Loading…
fix(GHSA-v98h-vmpc-fpqv): add fixed:5.11.1 to open-ended npm/NuGet/Packagist ranges
#8002
opened Jun 11, 2026 by
bluvulture
Loading…
fix(GHSA-q742-qvgc-gc2f): add fixed:5.11.1 to open-ended npm/Packagist ranges
#8001
opened Jun 11, 2026 by
bluvulture
Loading…
Previous Next
ProTip!
Filter pull requests by the default branch with base:main.