Skip to content

GitHub Advisory Database

Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.

154 advisories

Loading
Prototype pollution in controlled-merge High
CVE-2020-28268 was published for controlled-merge (npm) May 18, 2021
Improperly Controlled Modification of Dynamically-Determined Object Attributes in casperjs High
CVE-2020-7679 was published for casperjs (npm) May 17, 2021
Prototype pollution in json8-merge-patch High
CVE-2020-8268 was published for json8-merge-patch (npm) May 10, 2021
Prototype pollution in grpc and @grpc/grpc-js High
CVE-2020-7768 was published for @grpc/grpc-js (npm) May 10, 2021
Arbitrary Code Execution in json-ptr High
CVE-2020-7766 was published for json-ptr (npm) May 10, 2021
tdunlap607
Prototype pollution in chart.js High
CVE-2020-7746 was published for chart.js (npm) May 10, 2021
Prototype Pollution in simpl-schema High
CVE-2020-7742 was published for simpl-schema (npm) May 10, 2021
Prototype Pollution in bmoor High
CVE-2020-7736 was published for bmoor (npm) May 10, 2021
Improperly Controlled Modification of Dynamically-Determined Object Attributes in utilitify High
CVE-2019-10808 was published for utilitify (npm) May 7, 2021
Prototype Pollution in deep-get-set High
CVE-2020-7715 was published for deep-get-set (npm) May 6, 2021
Prototype Pollution in backbone-query-parameters High
CVE-2021-20085 was published for backbone-query-parameters (npm) May 6, 2021
Prototype Pollution in decal High
CVE-2020-28450 was published for decal (npm) Apr 13, 2021
Prototype Pollution in decal High
CVE-2020-28449 was published for decal (npm) Apr 13, 2021
Prototype Pollution in y18n High
CVE-2020-7774 was published for y18n (npm) Mar 29, 2021
Prototype Pollution in Node-Red High
CVE-2021-21297 was published for @node-red/runtime (npm) Feb 26, 2021
Dynamic modification of RPyC service due to missing security check High
CVE-2019-16328 was published for rpyc (pip) Feb 17, 2021
comrumino
Prototype Pollution in Dynamoose High
CVE-2021-21304 was published for dynamoose (npm) Feb 8, 2021
Prototype pollution in total.js High
CVE-2020-28495 was published for total.js (npm) Feb 5, 2021
datatables.net vulnerable to Prototype Pollution due to incomplete fix High
CVE-2020-28458 was published for datatables.net (npm) Dec 17, 2020
ini before 1.3.6 vulnerable to Prototype Pollution via ini.parse High
CVE-2020-7788 was published for ini (npm) Dec 10, 2020
Prototype Pollution in node-forge High
CVE-2020-7720 was published for node-forge (npm) Sep 14, 2020
Prototype Pollution in klona High
GHSA-4r97-78gf-q24v was published for klona (npm) Sep 4, 2020
Prototype Pollution in sahmat High
GHSA-83pq-466j-fc6j was published for sahmat (npm) Sep 4, 2020
Prototype Pollution in safe-object2 High
GHSA-qccf-q7p4-3q3j was published for safe-object2 (npm) Sep 4, 2020
Prototype Pollution in getsetdeep High
GHSA-8j49-49jq-vwcq was published for getsetdeep (npm) Sep 4, 2020
ProTip! Advisories are also available from the GraphQL API