Skip to content

GitHub Advisory Database

Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.

603 advisories

Loading
SiYuan: Anonymous publish-password authentication bypass via getHeadingChildrenDOM / getHeading*Transaction / getBacklinkDoc (publish mode) High
GHSA-7j72-f6wg-cxw6 was published for github.com/siyuan-note/siyuan/kernel (Go) Sep 3, 2026
Shirshakhtml Credited to Shirshakhtml
Unauthenticated Broken Authentication in Really Simple SSL <= 9.8.0 versions. High Unreviewed
CVE-2026-84777 was published Sep 3, 2026
Unauthenticated Broken Authentication in RegistrationMagic <= 6.0.9.8 versions. High Unreviewed
CVE-2026-82225 was published Aug 31, 2026
Authentication Bypass Using an Alternate Path or Channel vulnerability in Drupal... Critical Unreviewed
CVE-2026-16639 was published Aug 26, 2026
Unauthenticated Broken Authentication in WPLegalPages <= 3.7.0 versions. High Unreviewed
CVE-2026-78259 was published Aug 25, 2026
Subscriber Broken Authentication in Leyka <= 3.32.3 versions. High Unreviewed
CVE-2026-66677 was published Aug 20, 2026
Unauthenticated Broken Authentication in Popup by Supsystic <= 1.13.0 versions. Critical Unreviewed
CVE-2026-73381 was published Aug 18, 2026
Subscriber Broken Authentication in MWB HubSpot for WooCommerce <= 1.6.7 versions. High Unreviewed
CVE-2026-73396 was published Aug 18, 2026
Unauthenticated Broken Authentication in Flutterwave WooCommerce <= 3.3.0 versions. Moderate Unreviewed
CVE-2026-73399 was published Aug 18, 2026
Unauthenticated Bypass Vulnerability in Contact Form by Supsystic < 1.10.0 versions. Moderate Unreviewed
CVE-2026-73379 was published Aug 18, 2026
Unauthenticated Broken Authentication in Ezoic <= 2.22.11 versions. High Unreviewed
CVE-2026-32481 was published Aug 18, 2026
ProTip! Advisories are also available from the GraphQL API