Skip to content

GitHub Advisory Database

Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.

2 advisories

Loading
Hugo's Node tool execution allows file system access outside the project directory Moderate
CVE-2026-44301 was published for github.com/gohugoio/hugo (Go) May 6, 2026
jmooring Credited to jmooring, bacu79, and Gokul965 bacu79 bacu79
Gokul965 Gokul965
Hugo does not escape some attributes in internal templates Moderate
CVE-2024-55601 was published for github.com/gohugoio/hugo (Go) Dec 9, 2024
jmooring Credited to jmooring
ProTip! Advisories are also available from the GraphQL API