Skip to content

GitHub Advisory Database

Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.

9,926 advisories

Loading
Subscriber Arbitrary File Deletion in WP User Frontend <= 4.3.11 versions. Moderate Unreviewed
CVE-2026-95525 was published Sep 23, 2026
KubeEdge: keadm DecompressTarGz path traversal enables arbitrary file write on Windows during edge node join High
CVE-2026-62369 was published for github.com/kubeedge/kubeedge (Go) Sep 22, 2026
DoisLONG Credited to DoisLONG and kevin-wangzefeng kevin-wangzefeng kevin-wangzefeng
MCP Atlassian: Arbitrary file read/exfiltration via upload_attachment missing validate_safe_path() High
CVE-2026-77258 was published for mcp-atlassian (pip) Sep 22, 2026
b-hermes Credited to b-hermes
romain-deperne Credited to romain-deperne
rushitgit Credited to rushitgit
MCP Atlassian: Arbitrary File Read via Upload Attachment Tools Moderate
CVE-2026-77270 was published for mcp-atlassian (pip) Sep 22, 2026
offset Credited to offset
hewei-gikaku Credited to hewei-gikaku
diemoeve Credited to diemoeve
MCP Atlassian: HTTP upload tools accept arbitrary server-local file paths High
CVE-2026-77257 was published for mcp-atlassian (pip) Sep 22, 2026
MCP Atlassian: Arbitrary File Read & Exfiltration (Confused Deputy) in JIRA update_issue High
CVE-2026-77255 was published for mcp-atlassian (pip) Sep 22, 2026
aurelienp-alt Credited to aurelienp-alt
ProTip! Advisories are also available from the GraphQL API