Skip to content

Actions: github/advisory-database

Create PR staging branch

Actions

Loading...
Loading

Show workflow options

Create status badge

Loading
2,260 workflow runs
2,260 workflow runs

Filter by Event

Loading

Filter by Status

Loading

Filter by Branch

Loading

Filter by Actor

Loading
[GHSA-c25h-c27q-5qpv] Keycloak leaks configured LDAP bind credentials through the Keycloak admin console
Create PR staging branch #4374: Pull request #4567 opened by MarkLee131
June 29, 2024 17:25 58s
June 29, 2024 17:25 58s
[GHSA-qqcv-vg9f-5rr3] litellm vulnerable to improper access control in team management
Create PR staging branch #4373: Pull request #4566 opened by byt3bl33d3r
June 28, 2024 21:35 55s
June 28, 2024 21:35 55s
[GHSA-qqcv-vg9f-5rr3] litellm vulnerable to improper access control in team management
Create PR staging branch #4372: Pull request #4565 edited by krrishdholakia
June 28, 2024 21:19 56s
June 28, 2024 21:19 56s
[GHSA-qqcv-vg9f-5rr3] litellm vulnerable to improper access control in team management
Create PR staging branch #4371: Pull request #4565 opened by krrishdholakia
June 28, 2024 21:19 1m 3s
June 28, 2024 21:19 1m 3s
[GHSA-6269-grv3-jc94] An issue was discovered in the stripTags and unescapeHTML...
Create PR staging branch #4370: Pull request #4564 opened by mcr-paulanand
June 28, 2024 06:10 1m 1s
June 28, 2024 06:10 1m 1s
[GHSA-q24v-hpg3-v3jp] Reactor Netty HTTP Server denial of service vulnerability
Create PR staging branch #4369: Pull request #4563 opened by mpihelgas
June 27, 2024 22:07 57s
June 27, 2024 22:07 57s
[GHSA-8grg-q944-cch5] SQL Injection in Hibernate ORM
Create PR staging branch #4368: Pull request #4562 opened by mpihelgas
June 27, 2024 12:17 1m 1s
June 27, 2024 12:17 1m 1s
[GHSA-j8jw-g6fq-mp7h] SQL injection in hibernate-core
Create PR staging branch #4367: Pull request #4561 opened by mpihelgas
June 27, 2024 11:35 1m 1s
June 27, 2024 11:35 1m 1s
[GHSA-j628-q885-8gr5] Keycloak vulnerable to log Injection during WebAuthn authentication or registration
Create PR staging branch #4366: Pull request #4560 opened by dhvakr
June 27, 2024 06:28 1m 8s
June 27, 2024 06:28 1m 8s
[GHSA-jjfh-589g-3hjx] Spring Boot denial of service vulnerability
Create PR staging branch #4365: Pull request #4559 opened by sealbenb
June 26, 2024 15:30 59s
June 26, 2024 15:30 59s
[GHSA-ww39-953v-wcq6] glob-parent vulnerable to Regular Expression Denial of Service in enclosure regex
Create PR staging branch #4364: Pull request #4558 opened by sealonohana
June 26, 2024 07:43 1m 0s
June 26, 2024 07:43 1m 0s
[GHSA-ww39-953v-wcq6] glob-parent vulnerable to Regular Expression Denial of Service in enclosure regex
Create PR staging branch #4363: Pull request #4557 opened by sealonohana
June 26, 2024 07:28 59s
June 26, 2024 07:28 59s
June 25, 2024 21:49 1m 11s
[GHSA-r3gr-cxrf-hg25] Serialization gadgets exploit in jackson-databind
Create PR staging branch #4361: Pull request #4555 opened by mpihelgas
June 25, 2024 13:34 1m 0s
June 25, 2024 13:34 1m 0s
[GHSA-758m-v56v-grj4] jackson-databind mishandles the interaction between serialization gadgets and typing
Create PR staging branch #4360: Pull request #4554 opened by mpihelgas
June 25, 2024 13:32 1m 6s
June 25, 2024 13:32 1m 6s
[GHSA-c265-37vj-cwcc] Deserialization of untrusted data in Jackson Databind
Create PR staging branch #4359: Pull request #4553 opened by mpihelgas
June 25, 2024 13:28 59s
June 25, 2024 13:28 59s
[GHSA-hj4r-2c9c-29h3] Elastic Beats inserts sensitive information into log file
Create PR staging branch #4358: Pull request #4552 opened by levinebw
June 24, 2024 18:39 1m 4s
June 24, 2024 18:39 1m 4s
[GHSA-m6q9-p373-g5q8] Keycloak's unvalidated cross-origin messages in checkLoginIframe leads to DDoS
Create PR staging branch #4357: Pull request #4551 opened by dhvakr
June 24, 2024 07:17 59s
June 24, 2024 07:17 59s
[GHSA-cchp-3rq6-69wj] events2 TYPO3 extension insecure direct object reference (IDOR) vulnerability
Create PR staging branch #4356: Pull request #4550 opened by iepn
June 24, 2024 05:50 1m 1s
June 24, 2024 05:50 1m 1s
[GHSA-3h5v-q93c-6h6q] ws affected by a DoS when handling a request with many HTTP headers
Create PR staging branch #4355: Pull request #4547 opened by GaganaDhanakoti
June 21, 2024 17:31 59s
June 21, 2024 17:31 59s
[GHSA-ghv6-9r9j-wh4j] MLFlow unsafe deserialization
Create PR staging branch #4354: Pull request #4546 opened by litios
June 21, 2024 13:01 1m 5s
June 21, 2024 13:01 1m 5s
[GHSA-294q-5vvf-xj65] SQL Injection vulnerability in CRMEB v.5.2.2 allows a...
Create PR staging branch #4353: Pull request #4545 opened by phtcloud-dev
June 20, 2024 13:50 57s
June 20, 2024 13:50 57s
[GHSA-cr7j-rwmv-vgch] aimeos-core arbitrary file uopload vulnerability
Create PR staging branch #4352: Pull request #4544 opened by aimeos
June 20, 2024 07:00 59s
June 20, 2024 07:00 59s
[GHSA-77r5-gw3j-2mpf] Next.js Vulnerable to HTTP Request Smuggling
Create PR staging branch #4351: Pull request #4458 edited by myHerbDev
June 20, 2024 06:29 57s
June 20, 2024 06:29 57s
[GHSA-6r4x-gvmf-4gw2] A vulnerability was found in GPAC 2.5-DEV-rev228...
Create PR staging branch #4350: Pull request #4543 opened by hotcoding85
June 20, 2024 02:45 57s
June 20, 2024 02:45 57s