Skip to content

GitHub Advisory Database

Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.

412 advisories

Loading
Prototype pollution vulnerability in js-extend Critical
CVE-2021-25945 was published for js-extend (npm) Jun 8, 2021
Prototype Pollution Critical
CVE-2021-25948 was published for expand-hash (npm) Jun 21, 2021
Prototype Pollution in algoliasearch-helper Critical
CVE-2021-23433 was published for algoliasearch-helper (npm) Nov 23, 2021
yargs-parser Vulnerable to Prototype Pollution Moderate
CVE-2020-7608 was published for yargs-parser (npm) Sep 4, 2020
Command injection in Parse Server through prototype pollution Critical
CVE-2022-24760 was published for parse-server (npm) Mar 11, 2022
yuske cristianstaicu
musard mtrezza
Prototype pollution in min-dash < 3.8.1 High
GHSA-2m53-83f3-562j was published for min-dash (npm) Feb 1, 2022
cristianstaicu
Prototype Pollution in node-forge debug API. Low
GHSA-5rrq-pxf6-6jx5 was published for node-forge (npm) Jan 8, 2022
Prototype Pollution in mixme High
GHSA-84p7-fh9c-6g8h was published for mixme (npm) Sep 20, 2021
Improperly Controlled Modification of Object Prototype Attributes High
GHSA-6cj2-92m5-7mvp was published for think-config (npm) Aug 3, 2021
yoshino-s
Prototype Pollution in @commercial/subtext High
GHSA-36c4-4r89-6whg was published for @commercial/subtext (npm) Sep 3, 2020
Prototype Pollution in reggae High
GHSA-q9wr-gcjc-hq52 was published for reggae (npm) Sep 4, 2020
Prototype Pollution in lodash.merge High
GHSA-h726-x36v-rx45 was published for lodash.merge (npm) Sep 3, 2020
Prototype Pollution in lodash.mergewith High
GHSA-779f-wgxg-qr8f was published for lodash.mergewith (npm) Sep 3, 2020
Prototype Pollution in lodash.mergewith High
GHSA-5947-m4fg-xhqg was published for lodash.mergewith (npm) Sep 3, 2020
Prototype Pollution in flat-wrap High
GHSA-g7h8-p22m-2rvx was published for flat-wrap (npm) Sep 4, 2020
Prototype Pollution in deep-setter High
GHSA-9qrg-h9g8-c65q was published for deep-setter (npm) Sep 4, 2020
Prototype Pollution in unflatten High
GHSA-6fh5-8wq8-w3wr was published for unflatten (npm) Sep 4, 2020
Prototype Pollution in safe-object2 High
GHSA-qccf-q7p4-3q3j was published for safe-object2 (npm) Sep 4, 2020
Prototype Pollution in mergify Moderate
GHSA-3f95-w5h5-fq86 was published for mergify (npm) Sep 11, 2020
Prototype Pollution in lodash.defaultsdeep High
GHSA-46fh-8fc5-xcwx was published for lodash.defaultsdeep (npm) Sep 3, 2020
Prototype Pollution in mithril High
GHSA-c3px-v9c7-m734 was published for mithril (npm) Sep 3, 2020
Prototype Pollution in @hapi/subtext High
GHSA-g9cg-h3jm-cwrc was published for @hapi/subtext (npm) Sep 3, 2020
Prototype Pollution in get-setter High
GHSA-ch82-gqh6-9xj9 was published for get-setter (npm) Sep 4, 2020
Prototype Pollution in handlebars High
GHSA-g9r4-xpmj-mj65 was published for handlebars (npm) Sep 4, 2020
ProTip! Advisories are also available from the GraphQL API