-
Notifications
You must be signed in to change notification settings - Fork 737
Pull requests: github/advisory-database
Author
Label
Projects
Milestones
Reviews
Assignee
Sort
Pull requests list
[GHSA-rcxc-3w2m-mp8h] nvflare: the referenced fix is already in 2.1.0
#9367
opened Sep 5, 2026 by
zyl71
Loading…
[GHSA-q3m2-crgq-5p3q] ironic: the patched versions are 24.1.4, 26.1.2 and 29.0.2
#9366
opened Sep 5, 2026 by
zyl71
Loading…
[GHSA-mm8h-8587-p46h] com.rabbitmq:amqp-client: backports 5.14.3, 5.16.1 and 5.17.1 are not reflected
#9365
opened Sep 5, 2026 by
zyl71
Loading…
[GHSA-jv65-pf7v-f7p8] com.hazelcast:hazelcast: the deserialization protection is already in 3.10.1
#9364
opened Sep 5, 2026 by
zyl71
Loading…
[GHSA-9vh6-qfv6-vcqp] snipe/snipe-it: fix shipped in 5.3.8, not 5.4.0
#9363
opened Sep 5, 2026 by
zyl71
Loading…
[GHSA-96gq-6ch5-mm54] usememos/memos: add the patched version 0.13.2
#9362
opened Sep 5, 2026 by
zyl71
Loading…
[GHSA-589f-c66p-hxr4] grapesjs: add the patched version 0.19.5
#9361
opened Sep 5, 2026 by
zyl71
Loading…
[GHSA-5836-grcc-8j89] openstack-heat: stable backports 17.0.2, 18.0.1 and 19.0.1 are not reflected
#9360
opened Sep 5, 2026 by
zyl71
Loading…
[GHSA-3g75-q268-r9r6] amazon-s3-encryption-client-go/v3: patched in v3.2.0
#9359
opened Sep 5, 2026 by
zyl71
Loading…
[GHSA-pqhq-77pw-763c] opencart/opencart: add the patched version 4.1.0.0
#9358
opened Sep 5, 2026 by
zyl71
Loading…
[GHSA-jqh2-ch7p-xwxh] quarkus-cxf: 3.8.7 (LTS line) also contains the fix
#9357
opened Sep 5, 2026 by
zyl71
Loading…
[GHSA-c8wv-qwwc-6j73] mediawiki/core: 1.31.16 and 1.35.4 also contain the fix
#9356
opened Sep 5, 2026 by
zyl71
Loading…
[GHSA-6j58-grhv-2769] ansible-runner: fix was released in 2.0.3 as well
#9355
opened Sep 5, 2026 by
zyl71
Loading…
[GHSA-4fwh-r866-pvh9] librenms/librenms: fix landed in 1.65.1, not 1.65
#9354
opened Sep 5, 2026 by
zyl71
Loading…
[GHSA-rvxr-pf5f-j2qj] kolla: stable backports 12.6.0, 13.5.0 and 14.5.0 are not reflected
#9353
opened Sep 5, 2026 by
zyl71
Loading…
[GHSA-474f-mcjv-pgrm] concrete5/concrete5: backport to 8.5.13 is not reflected
#9352
opened Sep 5, 2026 by
zyl71
Loading…
[GHSA-gh7m-j673-wm97] dolibarr/dolibarr: referenced fix is contained in 14.0.0
#9351
opened Sep 5, 2026 by
zyl71
Loading…
[GHSA-6m26-25q2-cq46] microweber/microweber: fix shipped in 1.2.12
#9350
opened Sep 5, 2026 by
zyl71
Loading…
[GHSA-34mr-6q8x-g9r6] mindsdb: fix is already in 23.11.4.0
#9349
opened Sep 5, 2026 by
zyl71
Loading…
[GHSA-hpx4-xjp7-m4vr] snipe/snipe-it: fix landed in 5.4.4, not 5.4.3
#9348
opened Sep 5, 2026 by
zyl71
Loading…
[GHSA-3qjf-qh38-x73v] miniflux.app: v1.0.46 contains the fix, set patched version
#9347
opened Sep 5, 2026 by
zyl71
Loading…
[GHSA-872q-cxrp-279p] SQL injection vulnerabilities in the Snowflake Snowpark...
#9346
opened Sep 4, 2026 by
zain-ul-abideen-5036
Loading…
[GHSA-rqrh-ghmh-74j5] Apache CXF allows to set a limit on the number of form...
#9345
opened Sep 4, 2026 by
sonpoas
Loading…
[GHSA-q5p4-3w6j-xg73] UnoPim before 2.1.5 contains an authenticated file upload...
#9344
opened Sep 4, 2026 by
MAVERICK-VF142
Loading…
Previous Next
ProTip!
Exclude everything labeled
bug with -label:bug.