File tree Expand file tree Collapse file tree
advisories/github-reviewed/2026/04 Expand file tree Collapse file tree Original file line number Diff line number Diff line change 11{
22 "schema_version" : " 1.4.0" ,
33 "id" : " GHSA-2599-h6xx-hpxp" ,
4- "modified" : " 2026-04-01T22:17:36Z " ,
4+ "modified" : " 2026-04-06T17:25:05Z " ,
55 "published" : " 2026-04-01T22:17:36Z" ,
66 "aliases" : [
77 " CVE-2026-34591"
4343 "type" : " WEB" ,
4444 "url" : " https://github.com/python-poetry/poetry/security/advisories/GHSA-2599-h6xx-hpxp"
4545 },
46+ {
47+ "type" : " ADVISORY" ,
48+ "url" : " https://nvd.nist.gov/vuln/detail/CVE-2026-34591"
49+ },
50+ {
51+ "type" : " WEB" ,
52+ "url" : " https://github.com/python-poetry/poetry/pull/10792"
53+ },
4654 {
4755 "type" : " PACKAGE" ,
4856 "url" : " https://github.com/python-poetry/poetry"
57+ },
58+ {
59+ "type" : " WEB" ,
60+ "url" : " https://github.com/python-poetry/poetry/releases/tag/2.3.3"
61+ },
62+ {
63+ "type" : " WEB" ,
64+ "url" : " http://github.com/python-poetry/poetry/commit/ed59537ac3709cfbdbf95d957de801c13872991a"
4965 }
5066 ],
5167 "database_specific" : {
5571 "severity" : " HIGH" ,
5672 "github_reviewed" : true ,
5773 "github_reviewed_at" : " 2026-04-01T22:17:36Z" ,
58- "nvd_published_at" : null
74+ "nvd_published_at" : " 2026-04-02T18:16:31Z "
5975 }
6076}
Original file line number Diff line number Diff line change 11{
22 "schema_version" : " 1.4.0" ,
33 "id" : " GHSA-35xm-qvjg-8m42" ,
4- "modified" : " 2026-04-01T22:19:57Z " ,
4+ "modified" : " 2026-04-06T17:25:15Z " ,
55 "published" : " 2026-04-01T22:19:57Z" ,
66 "aliases" : [
77 " CVE-2026-34725"
4040 "type" : " WEB" ,
4141 "url" : " https://github.com/dbgate/dbgate/security/advisories/GHSA-35xm-qvjg-8m42"
4242 },
43+ {
44+ "type" : " ADVISORY" ,
45+ "url" : " https://nvd.nist.gov/vuln/detail/CVE-2026-34725"
46+ },
4347 {
4448 "type" : " WEB" ,
4549 "url" : " https://github.com/dbgate/dbgate/commit/a7d2ed11f3f3d4dfb5d2e4e5467dedafa5fa947e"
4650 },
4751 {
4852 "type" : " PACKAGE" ,
4953 "url" : " https://github.com/dbgate/dbgate"
54+ },
55+ {
56+ "type" : " WEB" ,
57+ "url" : " https://github.com/dbgate/dbgate/releases/tag/v7.1.5"
5058 }
5159 ],
5260 "database_specific" : {
5765 "severity" : " HIGH" ,
5866 "github_reviewed" : true ,
5967 "github_reviewed_at" : " 2026-04-01T22:19:57Z" ,
60- "nvd_published_at" : null
68+ "nvd_published_at" : " 2026-04-02T18:16:33Z "
6169 }
6270}
Original file line number Diff line number Diff line change 11{
22 "schema_version" : " 1.4.0" ,
33 "id" : " GHSA-37fq-47qj-6j5j" ,
4- "modified" : " 2026-04-01T00:13:57Z " ,
4+ "modified" : " 2026-04-06T17:24:33Z " ,
55 "published" : " 2026-04-01T00:13:57Z" ,
66 "aliases" : [
77 " CVE-2026-34598"
4040 "type" : " WEB" ,
4141 "url" : " https://github.com/YesWiki/yeswiki/security/advisories/GHSA-37fq-47qj-6j5j"
4242 },
43+ {
44+ "type" : " ADVISORY" ,
45+ "url" : " https://nvd.nist.gov/vuln/detail/CVE-2026-34598"
46+ },
4347 {
4448 "type" : " PACKAGE" ,
4549 "url" : " https://github.com/YesWiki/yeswiki"
50+ },
51+ {
52+ "type" : " WEB" ,
53+ "url" : " https://github.com/YesWiki/yeswiki/releases/tag/v4.6.0"
4654 }
4755 ],
4856 "database_specific" : {
5361 "severity" : " HIGH" ,
5462 "github_reviewed" : true ,
5563 "github_reviewed_at" : " 2026-04-01T00:13:57Z" ,
56- "nvd_published_at" : null
64+ "nvd_published_at" : " 2026-04-02T18:16:31Z "
5765 }
5866}
Original file line number Diff line number Diff line change 11{
22 "schema_version" : " 1.4.0" ,
33 "id" : " GHSA-525j-2hrj-m8fp" ,
4- "modified" : " 2026-04-01T21:40:22Z " ,
4+ "modified" : " 2026-04-06T17:24:20Z " ,
55 "published" : " 2026-04-01T21:40:22Z" ,
66 "aliases" : [
77 " CVE-2026-34523"
4343 "type" : " WEB" ,
4444 "url" : " https://github.com/SillyTavern/SillyTavern/security/advisories/GHSA-525j-2hrj-m8fp"
4545 },
46+ {
47+ "type" : " ADVISORY" ,
48+ "url" : " https://nvd.nist.gov/vuln/detail/CVE-2026-34523"
49+ },
4650 {
4751 "type" : " PACKAGE" ,
4852 "url" : " https://github.com/SillyTavern/SillyTavern"
53+ },
54+ {
55+ "type" : " WEB" ,
56+ "url" : " https://github.com/SillyTavern/SillyTavern/releases/tag/1.17.0"
4957 }
5058 ],
5159 "database_specific" : {
5563 "severity" : " MODERATE" ,
5664 "github_reviewed" : true ,
5765 "github_reviewed_at" : " 2026-04-01T21:40:22Z" ,
58- "nvd_published_at" : null
66+ "nvd_published_at" : " 2026-04-02T18:16:29Z "
5967 }
6068}
Original file line number Diff line number Diff line change 11{
22 "schema_version" : " 1.4.0" ,
33 "id" : " GHSA-h5j9-cvrw-v5qh" ,
4- "modified" : " 2026-04-01T23:48:43Z " ,
4+ "modified" : " 2026-04-06T17:25:20Z " ,
55 "published" : " 2026-04-01T23:48:43Z" ,
66 "aliases" : [
77 " CVE-2026-34828"
4040 "type" : " WEB" ,
4141 "url" : " https://github.com/knadh/listmonk/security/advisories/GHSA-h5j9-cvrw-v5qh"
4242 },
43+ {
44+ "type" : " ADVISORY" ,
45+ "url" : " https://nvd.nist.gov/vuln/detail/CVE-2026-34828"
46+ },
47+ {
48+ "type" : " WEB" ,
49+ "url" : " https://github.com/knadh/listmonk/commit/db82035d619348949512dafdaf60c86037cafc9e"
50+ },
4351 {
4452 "type" : " PACKAGE" ,
4553 "url" : " https://github.com/knadh/listmonk"
54+ },
55+ {
56+ "type" : " WEB" ,
57+ "url" : " https://github.com/knadh/listmonk/releases/tag/v6.1.0"
4658 }
4759 ],
4860 "database_specific" : {
5264 "severity" : " HIGH" ,
5365 "github_reviewed" : true ,
5466 "github_reviewed_at" : " 2026-04-01T23:48:43Z" ,
55- "nvd_published_at" : null
67+ "nvd_published_at" : " 2026-04-02T18:16:33Z "
5668 }
5769}
Original file line number Diff line number Diff line change 11{
22 "schema_version" : " 1.4.0" ,
33 "id" : " GHSA-jjf9-w5vj-r6vp" ,
4- "modified" : " 2026-04-01T00:14:40Z " ,
4+ "modified" : " 2026-04-06T17:24:41Z " ,
55 "published" : " 2026-04-01T00:14:40Z" ,
66 "aliases" : [
77 " CVE-2026-34593"
4343 "type" : " WEB" ,
4444 "url" : " https://github.com/ash-project/ash/security/advisories/GHSA-jjf9-w5vj-r6vp"
4545 },
46+ {
47+ "type" : " ADVISORY" ,
48+ "url" : " https://nvd.nist.gov/vuln/detail/CVE-2026-34593"
49+ },
4650 {
4751 "type" : " WEB" ,
4852 "url" : " https://github.com/ash-project/ash/commit/7031103da38cd1366cec8c96d6bcdc9b989aa3c2"
6367 "severity" : " HIGH" ,
6468 "github_reviewed" : true ,
6569 "github_reviewed_at" : " 2026-04-01T00:14:40Z" ,
66- "nvd_published_at" : null
70+ "nvd_published_at" : " 2026-04-02T18:16:31Z "
6771 }
6872}
Original file line number Diff line number Diff line change 11{
22 "schema_version" : " 1.4.0" ,
33 "id" : " GHSA-vprr-q85p-79mf" ,
4- "modified" : " 2026-04-01T21:41:48Z " ,
4+ "modified" : " 2026-04-06T17:24:25Z " ,
55 "published" : " 2026-04-01T21:41:48Z" ,
66 "aliases" : [
77 " CVE-2026-34524"
4343 "type" : " WEB" ,
4444 "url" : " https://github.com/SillyTavern/SillyTavern/security/advisories/GHSA-vprr-q85p-79mf"
4545 },
46+ {
47+ "type" : " ADVISORY" ,
48+ "url" : " https://nvd.nist.gov/vuln/detail/CVE-2026-34524"
49+ },
4650 {
4751 "type" : " PACKAGE" ,
4852 "url" : " https://github.com/SillyTavern/SillyTavern"
53+ },
54+ {
55+ "type" : " WEB" ,
56+ "url" : " https://github.com/SillyTavern/SillyTavern/releases/tag/1.17.0"
4957 }
5058 ],
5159 "database_specific" : {
5563 "severity" : " HIGH" ,
5664 "github_reviewed" : true ,
5765 "github_reviewed_at" : " 2026-04-01T21:41:48Z" ,
58- "nvd_published_at" : null
66+ "nvd_published_at" : " 2026-04-02T18:16:29Z "
5967 }
6068}
Original file line number Diff line number Diff line change 11{
22 "schema_version" : " 1.4.0" ,
33 "id" : " GHSA-wh4c-j3r5-mjhp" ,
4- "modified" : " 2026-04-01T00:19:06Z " ,
4+ "modified" : " 2026-04-06T17:24:48Z " ,
55 "published" : " 2026-04-01T00:19:06Z" ,
66 "aliases" : [
77 " CVE-2026-34601"
7878 "type" : " WEB" ,
7979 "url" : " https://github.com/xmldom/xmldom/security/advisories/GHSA-wh4c-j3r5-mjhp"
8080 },
81+ {
82+ "type" : " ADVISORY" ,
83+ "url" : " https://nvd.nist.gov/vuln/detail/CVE-2026-34601"
84+ },
8185 {
8286 "type" : " WEB" ,
8387 "url" : " https://github.com/xmldom/xmldom/commit/2b852e836ab86dbbd6cbaf0537f584dd0b5ac184"
102106 "severity" : " HIGH" ,
103107 "github_reviewed" : true ,
104108 "github_reviewed_at" : " 2026-04-01T00:19:06Z" ,
105- "nvd_published_at" : null
109+ "nvd_published_at" : " 2026-04-02T18:16:31Z "
106110 }
107111}
Original file line number Diff line number Diff line change 11{
22 "schema_version" : " 1.4.0" ,
33 "id" : " GHSA-wm7j-m6jm-8797" ,
4- "modified" : " 2026-04-01T21:42:24Z " ,
4+ "modified" : " 2026-04-06T17:24:59Z " ,
55 "published" : " 2026-04-01T21:42:24Z" ,
66 "aliases" : [
77 " CVE-2026-34526"
4343 "type" : " WEB" ,
4444 "url" : " https://github.com/SillyTavern/SillyTavern/security/advisories/GHSA-wm7j-m6jm-8797"
4545 },
46+ {
47+ "type" : " ADVISORY" ,
48+ "url" : " https://nvd.nist.gov/vuln/detail/CVE-2026-34526"
49+ },
4650 {
4751 "type" : " PACKAGE" ,
4852 "url" : " https://github.com/SillyTavern/SillyTavern"
53+ },
54+ {
55+ "type" : " WEB" ,
56+ "url" : " https://github.com/SillyTavern/SillyTavern/releases/tag/1.17.0"
4957 }
5058 ],
5159 "database_specific" : {
5563 "severity" : " MODERATE" ,
5664 "github_reviewed" : true ,
5765 "github_reviewed_at" : " 2026-04-01T21:42:24Z" ,
58- "nvd_published_at" : null
66+ "nvd_published_at" : " 2026-04-02T18:16:29Z "
5967 }
6068}
Original file line number Diff line number Diff line change 11{
22 "schema_version" : " 1.4.0" ,
33 "id" : " GHSA-x2w3-23jr-hrpf" ,
4- "modified" : " 2026-04-01T22:18:27Z " ,
4+ "modified" : " 2026-04-06T17:25:10Z " ,
55 "published" : " 2026-04-01T22:18:27Z" ,
66 "aliases" : [
77 " CVE-2026-34715"
4040 "type" : " WEB" ,
4141 "url" : " https://github.com/vshakitskiy/ewe/security/advisories/GHSA-x2w3-23jr-hrpf"
4242 },
43+ {
44+ "type" : " ADVISORY" ,
45+ "url" : " https://nvd.nist.gov/vuln/detail/CVE-2026-34715"
46+ },
47+ {
48+ "type" : " WEB" ,
49+ "url" : " https://github.com/vshakitskiy/ewe/commit/ce4ff214d32626a10fda9398dc94a2d720e17446"
50+ },
4351 {
4452 "type" : " PACKAGE" ,
4553 "url" : " https://github.com/vshakitskiy/ewe"
54+ },
55+ {
56+ "type" : " WEB" ,
57+ "url" : " https://github.com/vshakitskiy/ewe/releases/tag/v3.0.6"
4658 }
4759 ],
4860 "database_specific" : {
5264 "severity" : " MODERATE" ,
5365 "github_reviewed" : true ,
5466 "github_reviewed_at" : " 2026-04-01T22:18:27Z" ,
55- "nvd_published_at" : null
67+ "nvd_published_at" : " 2026-04-02T18:16:32Z "
5668 }
5769}
You can’t perform that action at this time.
0 commit comments