-
Notifications
You must be signed in to change notification settings - Fork 372
Pull requests: github/advisory-database
Author
Label
Projects
Milestones
Reviews
Assignee
Sort
Pull requests list
[GHSA-4fwr-mh5q-hchh] io.quarkus:quarkus-resteasy: Memory Leak in Quarkus RESTEasy Classic When Client Requests Timeout
#5314
by r3kumar
was merged Feb 27, 2025
[GHSA-4724-7jwc-3fpw] Grafana Spoofing originalUrl of snapshots
#4434
by r3kumar
was merged May 20, 2024
Loading…
[GHSA-46cm-pfwv-cgf8] LiteLLM has Server-Side Template Injection vulnerability in /completions endpoint
#4233
by r3kumar
was merged Apr 11, 2024
Loading…
[GHSA-9fc5-q25c-r2wr] Jasig Java CAS Client, .NET CAS Client, and phpCAS contain URL parameter injection vulnerability
#4157
by r3kumar
was closed Apr 2, 2024
Loading…
[GHSA-5925-88xh-6h99] Authentication bypass via Cross site request forgery
#4076
by r3kumar
was merged Mar 22, 2024
Loading…
[GHSA-78hx-gp6g-7mj6] Memory leaks in code encrypting and verifying RSA payloads
#4065
by r3kumar
was merged Mar 21, 2024
Loading…
[GHSA-5gg7-5wv8-4gcj] Undertow Request Smuggling vulnerability
#4064
by r3kumar
was merged Mar 20, 2024
Loading…
[GHSA-4fq3-mr56-cg6r] Spring Data Commons remote code injection vulnerability
#4063
by r3kumar
was merged Mar 20, 2024
Loading…
[GHSA-22v7-w6c5-v4rr] Apache Ranger Access Restriction Bypass
#4062
by r3kumar
was merged Mar 20, 2024
Loading…
[GHSA-5vcc-86wm-547q] Improper Privilege Management in djangorestframework-simplejwt
#4061
by r3kumar
was merged Mar 20, 2024
Loading…
[GHSA-3gv7-3h64-78cm] Exposure of Sensitive Information to an Unauthorized Actor in Apache Tomcat
#4059
by r3kumar
was merged Mar 19, 2024
Loading…
[GHSA-5fxj-whcv-crrc] Microsoft Security Advisory CVE-2024-21392: .NET Denial of Service Vulnerability
#4037
by r3kumar
was merged Mar 14, 2024
Loading…
[GHSA-frxm-v7q3-v2wv] Insertion of Sensitive Information into Log File in OWASP DependencyCheck
#3441
by r3kumar
was merged Jan 29, 2024
Loading…
[GHSA-297x-2qf3-jrj3] Unsafe yaml deserialization in llama-hub
#3440
by r3kumar
was merged Jan 29, 2024
Loading…
[GHSA-vjwc-5hfh-2vv5] Use of a Broken or Risky Cryptographic Algorithm in Apache WSS4J
#3433
by r3kumar
was merged Jan 25, 2024
Loading…
[GHSA-v5gj-fx3g-hcpw] SQL injection in Apache Submarine
#2983
by r3kumar
was merged Nov 27, 2023
Loading…
[GHSA-vm2m-7hpw-fpmq] Microsoft Common Data Model SDK Denial of Service Vulnerability
#2967
by r3kumar
was closed Dec 19, 2023
Loading…
[GHSA-hq6q-c2x6-hmch] Kubernetes Improper Input Validation vulnerability
#2959
by r3kumar
was closed Nov 27, 2023
Loading…
[GHSA-w9cp-3x79-2p8p] transmute-core unsafe YAML deserialization vulnerability
#2952
by r3kumar
was merged Nov 17, 2023
Loading…
[GHSA-hm9r-7f84-25c9] Apache Airflow allows authenticated and DAG-view authorized users to modify some DAG run detail values when submitting notes
#2951
by r3kumar
was merged Nov 17, 2023
Loading…
[GHSA-5wvp-7f3h-6wmm] PyArrow: Arbitrary code execution when loading a malicious data file
#2950
by r3kumar
was merged Nov 17, 2023
Loading…
ProTip!
Add no:assignee to see everything that’s not assigned.