Skip to content

GitHub Advisory Database

Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.

1,575 advisories

Loading
manus-use Credited to manus-use and ncw ncw ncw
Infracost: Arbitrary file read via config-template readFile symlink traversal Moderate
CVE-2026-71493 was published for github.com/infracost/infracost (Go) Sep 8, 2026
CyberKareem Credited to CyberKareem
NLTK: Corpus readers follow symlinks outside trusted roots despite pathsec enforcement High
CVE-2026-79676 was published for nltk (pip) Sep 8, 2026
leduckhuong Credited to leduckhuong
NLTK: Symlink-based arbitrary file read in IPIPANCorpusReader, bypasses nltk.pathsec entirely Moderate
CVE-2026-62383 was published for nltk (pip) Sep 8, 2026
LiteshGhute Credited to LiteshGhute
LiteshGhute Credited to LiteshGhute
leduckhuong Credited to leduckhuong
ProTip! Advisories are also available from the GraphQL API