Skip to content

GitHub Advisory Database

Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.

152 advisories

Loading
Unauthenticated Broken Access Control in Appointment Hour Booking <= 1.5.91 versions. Moderate Unreviewed
CVE-2026-66679 was published Aug 18, 2026
pymonocypher: Potential heap buffer overflow on nb_blocks in argon2i_32 when provided buffer is too small Moderate
CVE-2026-53720 was published for pymonocypher (pip) Jul 9, 2026
hextheshadow Credited to hextheshadow
Craft Commerce: Partial Payment Amount Without Lower Bound Validation Moderate
GHSA-78vr-q6cf-c7p6 was published for craftcms/commerce (Composer) Jun 19, 2026
mesut-ucar Credited to mesut-ucar
Unauthenticated Other Vulnerability Type in Contest Gallery <= 28.1.7 versions. Moderate Unreviewed
CVE-2026-42657 was published Jun 15, 2026
Keycloak Vulnerable to Improper Validation of Specified Quantity in Input Moderate
CVE-2026-9801 was published for org.keycloak:keycloak-ldap-federation (Maven) May 28, 2026
IBM OPENBMC FW1110.00 through FW1110.11 is vulnerable to denial of service attacks by... Moderate Unreviewed
CVE-2026-7254 was published May 27, 2026
Keycloak Vulnerable to Improper Validation of Specified Quantity in Input Moderate
CVE-2026-9704 was published for org.keycloak:keycloak-server-spi-private (Maven) May 27, 2026
oxidize-pdf: NaN/inf bypass in colour content-stream emission causes PDF rejection (DoS) Moderate
GHSA-88q9-cmp2-c2vq was published for OxidizePdf.NET (NuGet) May 11, 2026
bzsanti Credited to bzsanti
ProTip! Advisories are also available from the GraphQL API