Skip to content

GitHub Advisory Database

Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.

4,812 advisories

Loading
Caddy is vulnerable to cross-origin config application via local admin API /load Moderate
CVE-2026-27589 was published for github.com/caddyserver/caddy/v2 (Go) Feb 24, 2026
1seal Credited to 1seal
Cross-Site Request Forgery (CSRF) vulnerability in PublishPress PublishPress Revisions... Moderate Unreviewed
CVE-2026-25322 was published Feb 19, 2026
PHPGurukul Hospital Management System v4.0 contains a Cross-Site Request Forgery (CSRF)... Moderate Unreviewed
CVE-2025-70062 was published Feb 18, 2026
A vulnerability was found in newbee-ltd newbee-mall up to... Moderate Unreviewed
CVE-2026-2658 was published Feb 18, 2026
OpenClaw Chutes manual OAuth state validation bypass can cause credential substitution Moderate
GHSA-7rcp-mxpq-72pj was published for openclaw (npm) Feb 18, 2026
ProTip! Advisories are also available from the GraphQL API