GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Malware advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
121
GitHub Actions
56
Go
4,875
Maven
5,000+
npm
5,000+
NuGet
1,131
pip
5,000+
Pub
13
RubyGems
1,159
Rust
1,590
Swift
63
Unreviewed advisories
All unreviewed
5,000+
Malware advisories
All malware
5,000+
Composer
2
Go
20
Maven
2
npm
5,000+
NuGet
264
pip
5,000+
RubyGems
3,513
Rust
20
116 advisories
Filter by severity
PyJWT: PyJWKClient follows redirects when fetching JWKS
High
CVE-2026-102267
was published
for
PyJWT
(pip)
Sep 29, 2026
LMDeploy has Server-Side Request Forgery (SSRF) via Vision-Language Image Loading
High
CVE-2026-33626
was published
for
lmdeploy
(pip)
Apr 21, 2026
lightrag-hku: SSRF via IPv6-transition address bypass (NAT64, IPv4-compatible, 6to4) of the native-markdown image-download guard
High
CVE-2026-85740
was published
for
lightrag-hku
(pip)
Sep 22, 2026
MCP Atlassian: SSRF Protection Bypass
High
CVE-2026-77274
was published
for
mcp-atlassian
(pip)
Sep 22, 2026
mcp-atlassian has an incomplete SSRF remediation
High
CVE-2026-77267
was published
for
mcp-atlassian
(pip)
Sep 22, 2026
MCP Atlassian: SSRF redirect protection missing for basic-auth and OAuth authentication branches
High
CVE-2026-77261
was published
for
mcp-atlassian
(pip)
Sep 22, 2026
Open WebUI: SSRF into internal services via DNS rebinding in the Playwright web loader
High
CVE-2026-87996
was published
for
open-webui
(pip)
Sep 10, 2026
Open WebUI: Any authenticated user can reach the Azure platform channel via server-side web fetch
High
CVE-2026-87999
was published
for
open-webui
(pip)
Sep 10, 2026
NLTK: pathsec SSRF protection can be bypassed when a proxy is configured
High
CVE-2026-78682
was published
for
nltk
(pip)
Sep 8, 2026
crewai-tools SSRF redirect bypass exposes internal services
High
CVE-2026-62240
was published
for
crewai-tools
(pip)
Jul 14, 2026
Withdrawn Advisory: Open WebUI has SSRF in /openai/models
High
CVE-2024-7959
was published
for
open-webui
(pip)
Mar 20, 2025
•
withdrawn
Duplicate Advisory: pathsec SSRF protection can be bypassed when a proxy is configured
High
GHSA-crp9-r7rq-c8cg
was published
for
nltk
(pip)
Aug 25, 2026
•
withdrawn
MLflow AI Gateway permits SSRF through an unvalidated api_base
High
CVE-2026-71211
was published
for
mlflow
(pip)
Aug 5, 2026
Chainlist has SSRF via MCP SSE and streamable-http transports that allows unauthenticated internal network access
High
CVE-2026-45019
was published
for
chainlit
(pip)
Aug 25, 2026
utcp-http has an OAuth2 `tokenUrl` Trust Boundary Bypass in OpenAPI Conversion
High
GHSA-8cp3-qxj6-px34
was published
for
utcp-http
(pip)
Aug 25, 2026
utcp-http SSRF: HTTP tool invocation follows redirects without re-validating the target
High
GHSA-9qhg-99ww-9mqc
was published
for
utcp-http
(pip)
Aug 25, 2026
PraisonAI: Webhook SSRF via DNS fail-open in `JobSubmitRequest.validate_webhook_url()` — bypass of CVE-2026-40114
High
CVE-2026-55537
was published
for
PraisonAI
(pip)
Aug 25, 2026
praisonaiagents vulnerable to SSRF in web_crawl tool via redirect-following and DNS rebinding (validate-then-fetch gap)
High
CVE-2026-55524
was published
for
praisonaiagents
(pip)
Aug 25, 2026
praisonaiagents has an SSRF protection bypass in `spider_tools._host_is_blocked()` via DNS-resolved hostnames (`127.0.0.1.nip.io`)
High
CVE-2026-55526
was published
for
praisonaiagents
(pip)
Aug 25, 2026
praisonaiagents has a `web_crawl` SSRF protection bypass via unchecked redirect targets
High
CVE-2026-55523
was published
for
praisonaiagents
(pip)
Aug 25, 2026
praisonaiagents web_crawl vulnerable to SSRF via redirect-following
High
CVE-2026-55525
was published
for
praisonaiagents
(pip)
Aug 25, 2026
GeoLens's authorization and cache-scope flaws disclose private dataset data and metadata to unauthorized users (fixed in 1.2.4)
High
GHSA-p77j-g7h5-r2vw
was published
for
geolens
(pip)
Aug 19, 2026
Lemur: Incomplete fix for GHSA-v2wp-frmc-5q3v -- ACME authority update endpoint allows non-admin to replace `acme_url` with internal IP, bypassing allowlist
High
CVE-2026-71303
was published
for
lemur
(pip)
Aug 18, 2026
Lemur: Server-Side Request Forgery via the ACME client following server-controlled URLs
High
CVE-2026-70666
was published
for
lemur
(pip)
Aug 18, 2026
ProTip!
Advisories are also available from the
GraphQL API