-
Notifications
You must be signed in to change notification settings - Fork 485
Pull requests: github/advisory-database
Author
Label
Projects
Milestones
Reviews
Assignee
Sort
Pull requests list
[GHSA-9g8m-v378-pcg3] parse is vulnerable to prototype pollution
#6465
opened Nov 25, 2025 by
miguelmunoz-dotcom
Loading…
[GHSA-qpm2-6cq5-7pq5] happy-dom's
--disallow-code-generation-from-strings is not sufficient for isolating untrusted JavaScript
#6464
opened Nov 23, 2025 by
shaked-seal
Loading…
[GHSA-gv8h-7v7w-r22q] Docker Compose Vulnerable to Path Traversal via OCI Artifact Layer Annotations
#6463
opened Nov 23, 2025 by
shaked-seal
Loading…
[GHSA-q7jf-gf43-6x6p] Hono vulnerable to Vary Header Injection leading to potential CORS Bypass
#6462
opened Nov 22, 2025 by
gigatechcode
Loading…
[GHSA-frmv-pr5f-9mcr] Django vulnerable to SQL injection via _connector keyword argument in QuerySet and Q objects.
#6461
opened Nov 22, 2025 by
omarkurt
Loading…
ProTip!
Filter pull requests by the default branch with base:main.