-
Notifications
You must be signed in to change notification settings - Fork 521
Pull requests: github/advisory-database
Author
Label
Projects
Milestones
Reviews
Assignee
Sort
Pull requests list
[GHSA-qwcr-r2fm-qrc7] body-parser vulnerable to denial of service when url encoding is enabled
#6703
opened Jan 24, 2026 by
asrar-mared
Loading…
[GHSA-w5p7-h5w8-2hfq] Regular Expression Denial of Service in trim
#6701
opened Jan 24, 2026 by
asrar-mared
Loading…
[GHSA-8v38-pw62-9cw2] url-parse Incorrectly parses URLs that include an '@'
#6700
opened Jan 24, 2026 by
ljharb
Loading…
[GHSA-m494-w24q-6f7w] JDBC Driver for SQL Server has improper input validation issue
#6638
opened Jan 12, 2026 by
gdsmith
Loading…
[GHSA-77r5-gw3j-2mpf] Next.js Vulnerable to HTTP Request Smuggling
#6636
opened Jan 10, 2026 by
mistressxalexis
Loading…
[GHSA-vj76-c3g6-qr5v] tar-fs has a symlink validation bypass if destination directory is predictable with a specific tarball
Stale
#6581
opened Dec 27, 2025 by
kristentr
Loading…
[GHSA-x4c5-c7rf-jjgv] @octokit/endpoint has a Regular Expression in parse that Leads to ReDoS Vulnerability Due to Catastrophic Backtracking
#6573
opened Dec 22, 2025 by
G-Rath
Loading…
ProTip!
Updated in the last three days: updated:>2026-01-21.