| GHSA-26VP-8GXG-V4PG |
org.xwiki.rendering:xwiki-rendering-xml has an Eval Injection issue
|
GitHub |
2026‑09‑18 |
Critique |
| GHSA-2VH9-42VM-XMV2 |
LMDeploy has Remote Code Execution by Pickle Deserialization via handle_zmq_recv in lmdeploy/lmdeploy/pytorch/disagg/conn/engine_conn.py
|
GitHub |
2026‑09‑18 |
Critique |
| GHSA-3753-M2X2-Q623 |
File Viewer: DOM XSS via unsafe hyperlink schemes in the legacy DOC renderer
|
GitHub |
2026‑09‑18 |
Élevée |
| GHSA-39WR-7Q6H-CF68 |
LMDeploy has an SSRF bypass
|
GitHub |
2026‑09‑18 |
Élevée |
| GHSA-3HMM-RH5Q-GWWR |
LMDeploy vulnerable to arbitrary code execution via eval() of untrusted quant_dtype in model config loading
|
GitHub |
2026‑09‑18 |
Élevée |
| GHSA-3JP5-3H47-28QF |
Semantic MediaWiki has reflected XSS in Special:Ask plain table headers
|
GitHub |
2026‑09‑18 |
Moyenne |
| GHSA-3RM2-H79C-8QW6 |
md-editor-v3: XSS via fenced-code language rendering bypass
|
GitHub |
2026‑09‑18 |
Moyenne |
| GHSA-3W57-8XMC-8V26 |
AnyIO run_process/open_process ignores extra_groups and can retain parent supplementary groups
|
GitHub |
2026‑09‑18 |
Élevée |
| GHSA-4227-9989-JRHX |
Perses's missing authorization in datasource proxy allows cross-scope secret disclosure
|
GitHub |
2026‑09‑18 |
Élevée |
| GHSA-59XW-QV23-J3RC |
Semantic MediaWiki has reflected XSS in `Special:SearchByProperty` (`property` and `value` parameters)
|
GitHub |
2026‑09‑18 |
Moyenne |
| GHSA-5GM3-9CRP-6G3V |
Process Compose: Browser DNS rebinding lets websites control local process-compose MCP tools
|
GitHub |
2026‑09‑18 |
Moyenne |
| GHSA-5GMM-HJFJ-8FF7 |
Paymenter has a credit-refund double-spend race condition in service downgrade (doUpgrade)
|
GitHub |
2026‑09‑18 |
Moyenne |
| GHSA-5P39-CFHJ-2XMP |
AnyIO process-pool workers can block indefinitely on undrained stderr
|
GitHub |
2026‑09‑18 |
Moyenne |
| GHSA-5P54-WHVP-X327 |
AnyCable: Pusher REST API Does Not Verify Request Body MD5 Enabling Signed-Request Replay with Arbitrary Body
|
GitHub |
2026‑09‑18 |
Moyenne |
| GHSA-7Q85-XJ36-VMFC |
adm-zip: Uncontrolled memory allocation via the declared uncompressed size (DoS)
|
GitHub |
2026‑09‑18 |
Élevée |
| GHSA-7XV3-GF2G-498H |
Semantic MediaWiki affected by Special:Ask table `sep` parameter reflected XSS
|
GitHub |
2026‑09‑18 |
Moyenne |
| GHSA-82R6-8W77-94W6 |
AnyIO: TLSStream IDNA 2003 host name encoding enables potential TLS certificate spoofing
|
GitHub |
2026‑09‑18 |
Critique |
| GHSA-9JJC-FW8X-FMWX |
io.moquette:moquette-broker has a Missing Authorization issue
|
GitHub |
2026‑09‑18 |
Élevée |
| GHSA-9RCC-PMJ8-FFHR |
Semantic MediaWiki's Special:FacetedSearch cstate hidden inputs enable reflected XSS (residual of CVE-2025-10354)
|
GitHub |
2026‑09‑18 |
Moyenne |
| GHSA-C8W2-FGVX-VHV4 |
kcp front-proxy does not strip inbound X-Remote-* identity headers, allowing any authenticated client to inject groups/warrants and…
|
GitHub |
2026‑09‑18 |
Critique |