Skip to content

GitHub Advisory Database

Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.

15 advisories

Loading
Apache HttpClient accepts SCRAM-SHA-256 authentication without proper mutual authentication verification High
CVE-2026-40542 was published for org.apache.httpcomponents.client5:httpclient5 (Maven) Apr 22, 2026
LinkJoin through 882f196 mishandles token ownership in password reset. High Unreviewed
CVE-2025-55138 was published Aug 7, 2025
Infinispan REST Server's bulk read endpoints do not properly evaluate user permissions High
CVE-2023-3628 was published for org.infinispan:infinispan-server-rest (Maven) Dec 30, 2023
Infinispan REST Server's cache retrieval endpoints do not properly evaluate the necessary admin permissions High
CVE-2023-3629 was published for org.infinispan:infinispan-server-rest (Maven) Dec 30, 2023
ProTip! Advisories are also available from the GraphQL API