GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Malware advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
108
GitHub Actions
54
Go
4,521
Maven
5,000+
npm
5,000+
NuGet
1,103
pip
5,000+
Pub
13
RubyGems
1,145
Rust
1,514
Swift
62
Unreviewed advisories
All unreviewed
5,000+
Malware advisories
All malware
5,000+
Composer
1
Go
18
Maven
2
npm
5,000+
NuGet
264
pip
5,000+
RubyGems
3,510
Rust
10
5,932 advisories
Filter by severity
Open WebUI: Unapproved accounts can open terminal sessions via a WebSocket auth path missing the role check
Moderate
CVE-2026-70490
was published
for
open-webui
(pip)
Aug 4, 2026
Open WebUI: Instance-wide stall via automation recurrence rules that force multi-second parsing
Moderate
CVE-2026-70489
was published
for
open-webui
(pip)
Aug 4, 2026
Open WebUI: DNS Rebinding SSRF Bypass
Moderate
CVE-2026-54020
was published
for
open-webui
(pip)
Aug 4, 2026
Open WebUI: Cross-user file content disclosure via request-scoped direct model knowledge metadata
Moderate
CVE-2026-70487
was published
for
open-webui
(pip)
Aug 4, 2026
Open WebUI: Deletion of directories and file embeddings in other knowledge bases via sync cleanup
Moderate
CVE-2026-70488
was published
for
open-webui
(pip)
Aug 4, 2026
Open WebUI: Same-origin XSS to account takeover via terminal file-preview iframe hardcoding allow-same-origin
High
CVE-2026-70486
was published
for
open-webui
(pip)
Aug 4, 2026
Open WebUI: Any authenticated user can reach internal services and cloud metadata via NAT64-encoded URLs
High
CVE-2026-70485
was published
for
open-webui
(pip)
Aug 4, 2026
Open WebUI: Users denied the image-generation permission can still generate images via chat completions
Moderate
CVE-2026-70484
was published
for
open-webui
(pip)
Aug 4, 2026
Open WebUI: Client-side SSRF via unrestricted external resource loading in Vega/Vega-Lite chart rendering
Moderate
CVE-2026-70480
was published
for
open-webui
(pip)
Aug 4, 2026
Open WebUI: Any authenticated user can cancel another user's chat generation via the chat delete endpoint
Low
CVE-2026-70483
was published
for
open-webui
(pip)
Aug 4, 2026
Open WebUI: Account takeover via OAuth token exchange accepting tokens issued to any client
High
CVE-2026-70482
was published
for
open-webui
(pip)
Aug 4, 2026
Open WebUI: Any member with write access to a standard channel can edit or delete other members' messages
Moderate
CVE-2026-70481
was published
for
open-webui
(pip)
Aug 4, 2026
Open WebUI: SSRF into internal services via unvalidated sub-resource requests in the Playwright web loader
High
CVE-2026-70479
was published
for
open-webui
(pip)
Aug 4, 2026
python-cryptography verifier accepts wildcard DNS names allowing escape from permittedSubtrees
Moderate
CVE-2026-69248
was published
for
cryptography
(pip)
Aug 3, 2026
python-cryptography: Duplicate self-signed intermediates can cause exponential path-building
High
CVE-2026-69249
was published
for
cryptography
(pip)
Aug 3, 2026
cryptography: PKCS#7 EnvelopedData decryption exposes a Bleichenbacher oracle through distinguishable errors and timing
High
CVE-2026-69247
was published
for
cryptography
(pip)
Aug 3, 2026
AIOHTTP: Out-of-bounds heap read in C HTTP response parser error path (malformed chunked response)
High
CVE-2026-69244
was published
for
aiohttp
(pip)
Aug 3, 2026
AIOHTTP: HTTP request smuggling via WebSocket upgrade
Moderate
CVE-2026-69243
was published
for
aiohttp
(pip)
Aug 3, 2026
AIOHTTP: WebSocket client accepts compressed frames without negotiated permessage-deflate
Moderate
CVE-2026-59881
was published
for
aiohttp
(pip)
Aug 3, 2026
GitPython: Arbitrary file truncation via git rev-list --output argument injection in unguarded Commit.count
Moderate
GHSA-p538-c434-8v24
was published
for
GitPython
(pip)
Aug 3, 2026
GitPython: Incomplete unsafe_git_archive_options denylist omits --add-file / --add-virtual-file, enabling arbitrary file read via Repo.archive()
Moderate
GHSA-539m-9xh6-q6rr
was published
for
GitPython
(pip)
Aug 3, 2026
GitPython: Unguarded git option forwarding in IndexFile.checkout() and TagReference.create() enables arbitrary file overwrite and arbitrary file read
High
GHSA-3f7w-8rr8-f37f
was published
for
GitPython
(pip)
Aug 3, 2026
Keras: HDF5 links can disclose local file contents
Moderate
CVE-2026-9335
was published
for
keras
(pip)
Aug 2, 2026
gemini-bridge vulnerable to arbitrary local file read via consult_gemini_with_files inline mode
Moderate
CVE-2026-54785
was published
for
gemini-bridge
(pip)
Jul 31, 2026
Thumbor has path traversal via post-validation URL decoding bypass in file_loader
High
CVE-2026-53502
was published
for
thumbor
(pip)
Jul 31, 2026
ProTip!
Advisories are also available from the
GraphQL API