Skip to content

GitHub Advisory Database

Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.

3 advisories

Loading
Tinypool: Prototype Pollution Gadget to RCE in run() options Critical
CVE-2026-104849 was published for tinypool (npm) Oct 5, 2026
Fcmam5 Credited to Fcmam5
Fcmam5 Credited to Fcmam5
qs array-limit bypass via bracket-key comma parsing Moderate
CVE-2026-82562 was published for qs (npm) Sep 2, 2026
Vectrain51 Credited to Vectrain51, Fcmam5, and ljharb Fcmam5 Fcmam5
ljharb ljharb
ProTip! Advisories are also available from the GraphQL API