GitHub Security Advisories
Community-driven vulnerability intelligence from GitHub's Advisory Database
288,561 advisories found
Showing 61 - 80
CVSS
5.0
Pingora update for MadeYouReset HTTP/2 vulnerability
Sep 17, 2025
crates.io
pingora-core
CVSS
7.5
Nuxt has Client-Side Path Traversal in Nuxt Island Payload Revival
CVSS
2.5
Keycloak SMTP Inject Vulnerability
CVSS
5.0
DragonFly's tiny file download uses hard coded HTTP protocol
CVSS
5.0
DragonFly has weak integrity checks for downloaded files
CVSS
5.0
DragonFly's manager generates mTLS certificates for arbitrary IP addresses
CVSS
7.5
DragonFly vulnerable to arbitrary file read and write on a peer machine
CVSS
5.0
DragonFly vulnerable to panics due to nil pointer dereference when using variables created alongside an error
CVSS
5.0
Dragonfly vulnerable to timing attacks against Proxy’s basic authentication
CVSS
5.0
jinjava has Sandbox Bypass via JavaType-Based Deserialization
CVSS
9.0
Dragonfly's directories created via os.MkdirAll are not checked for permissions
CVSS
2.5
Dragonfly incorrectly handles a task structure’s usedTrac field
CVSS
5.0
Dragonfly's manager makes requests to external endpoints with disabled TLS authentication
CVSS
5.0
Dragonfly vulnerable to server-side request forgery
CVSS
7.5
Dragonfly doesn't have authentication enabled for some Manager’s endpoints
CVSS
7.5
esm.sh has arbitrary file write via path traversal in `X-Zone-Id` header
CVSS
5.0
esm.sh has File Inclusion issue
CVSS
7.5
CVSS
2.5
CVSS
5.0