Skip to content

GitHub Advisory Database

Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.

3 advisories

Loading
Prototype Pollution in JSON5 via Parse Method High
CVE-2022-46175 was published for json5 (npm) Dec 29, 2022
jdgregson Credited to jdgregson, karlhorky, jordanbtucker, jakebailey, ebroder, kenkku, gazben, BGehrels, mrgrain, sigma-z, viceice, burdeasa, sirenevenkii, and edwardlee-msft karlhorky karlhorky
jordanbtucker jordanbtucker jakebailey jakebailey ebroder ebroder kenkku kenkku gazben gazben BGehrels BGehrels mrgrain mrgrain sigma-z sigma-z viceice viceice burdeasa burdeasa sirenevenkii sirenevenkii edwardlee-msft edwardlee-msft
Uncaught Exception in yaml High
CVE-2023-2251 was published for yaml (npm) Apr 24, 2023
chadlwilson Credited to chadlwilson, pmartinat, and mrgrain pmartinat pmartinat
mrgrain mrgrain
semver vulnerable to Regular Expression Denial of Service High
CVE-2022-25883 was published for semver (npm) Jun 21, 2023
mrgrain Credited to mrgrain, G-Rath, and ljharb G-Rath G-Rath
ljharb ljharb
ProTip! Advisories are also available from the GraphQL API