-
Notifications
You must be signed in to change notification settings - Fork 484
Pull requests: github/advisory-database
Author
Label
Projects
Milestones
Reviews
Assignee
Sort
Pull requests list
[GHSA-qpm2-6cq5-7pq5] happy-dom's
--disallow-code-generation-from-strings is not sufficient for isolating untrusted JavaScript
#6464
opened Nov 23, 2025 by
shaked-seal
Loading…
[GHSA-gv8h-7v7w-r22q] Docker Compose Vulnerable to Path Traversal via OCI Artifact Layer Annotations
#6463
opened Nov 23, 2025 by
shaked-seal
Loading…
[GHSA-q7jf-gf43-6x6p] Hono vulnerable to Vary Header Injection leading to potential CORS Bypass
#6462
opened Nov 22, 2025 by
gigatechcode
Loading…
[GHSA-frmv-pr5f-9mcr] Django vulnerable to SQL injection via _connector keyword argument in QuerySet and Q objects.
#6461
opened Nov 22, 2025 by
omarkurt
Loading…
[GHSA-m494-w24q-6f7w] JDBC Driver for SQL Server has improper input validation issue
#6449
opened Nov 20, 2025 by
urielcos
Loading…
ProTip!
Updated in the last three days: updated:>2025-11-20.