Skip to content

GitHub Advisory Database

Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.

3 advisories

Loading
`vega-functions` vulnerable to Cross-site Scripting via `setdata` function High
CVE-2025-66648 was published for vega-functions (npm) Jan 5, 2026
nikolaybabiy Credited to nikolaybabiy, hydrosquall, and domoritz hydrosquall hydrosquall
domoritz domoritz
nickcopi Credited to nickcopi, hydrosquall, and domoritz hydrosquall hydrosquall
domoritz domoritz
nickcopi Credited to nickcopi, hydrosquall, domoritz, jeramysoucy, lsh, and kachkaev hydrosquall hydrosquall
domoritz domoritz jeramysoucy jeramysoucy lsh lsh kachkaev kachkaev
ProTip! Advisories are also available from the GraphQL API