File tree Expand file tree Collapse file tree
advisories/github-reviewed/2026/01 Expand file tree Collapse file tree Original file line number Diff line number Diff line change 11{
22 "schema_version" : " 1.4.0" ,
33 "id" : " GHSA-2gqc-6j2q-83qp" ,
4- "modified" : " 2026-01-15T20:17:32Z " ,
4+ "modified" : " 2026-01-15T22:34:28Z " ,
55 "published" : " 2026-01-15T18:17:15Z" ,
66 "aliases" : [
77 " CVE-2026-23519"
4040 "type" : " WEB" ,
4141 "url" : " https://github.com/RustCrypto/utils/security/advisories/GHSA-2gqc-6j2q-83qp"
4242 },
43+ {
44+ "type" : " ADVISORY" ,
45+ "url" : " https://nvd.nist.gov/vuln/detail/CVE-2026-23519"
46+ },
4347 {
4448 "type" : " WEB" ,
4549 "url" : " https://github.com/RustCrypto/utils/commit/55977257e7c82a309d5e8abfdd380a774f0f9778"
6064 "severity" : " HIGH" ,
6165 "github_reviewed" : true ,
6266 "github_reviewed_at" : " 2026-01-15T18:17:15Z" ,
63- "nvd_published_at" : null
67+ "nvd_published_at" : " 2026-01-15T20:16:05Z "
6468 }
6569}
Original file line number Diff line number Diff line change 11{
22 "schema_version" : " 1.4.0" ,
33 "id" : " GHSA-4jrw-64vr-7g8m" ,
4- "modified" : " 2026-01-14T21:17:27Z " ,
4+ "modified" : " 2026-01-15T22:33:18Z " ,
55 "published" : " 2026-01-14T12:31:38Z" ,
66 "aliases" : [
77 " CVE-2025-66169"
1111 "severity" : [
1212 {
1313 "type" : " CVSS_V4" ,
14- "score" : " CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L /VI:N /VA:N/SC:N/SI:N/SA:N"
14+ "score" : " CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N /VI:L /VA:N/SC:N/SI:N/SA:N"
1515 }
1616 ],
1717 "affected" : [
122122 "database_specific" : {
123123 "cwe_ids" : [
124124 " CWE-74" ,
125+ " CWE-89" ,
125126 " CWE-943"
126127 ],
127128 "severity" : " MODERATE" ,
Original file line number Diff line number Diff line change 11{
22 "schema_version" : " 1.4.0" ,
33 "id" : " GHSA-54v4-4685-vwrj" ,
4- "modified" : " 2026-01-15T20:11:23Z " ,
4+ "modified" : " 2026-01-15T22:34:15Z " ,
55 "published" : " 2026-01-15T20:11:23Z" ,
66 "aliases" : [
77 " CVE-2026-23622"
4040 "type" : " WEB" ,
4141 "url" : " https://github.com/alextselegidis/easyappointments/security/advisories/GHSA-54v4-4685-vwrj"
4242 },
43+ {
44+ "type" : " ADVISORY" ,
45+ "url" : " https://nvd.nist.gov/vuln/detail/CVE-2026-23622"
46+ },
4347 {
4448 "type" : " PACKAGE" ,
4549 "url" : " https://github.com/alextselegidis/easyappointments"
5660 "severity" : " HIGH" ,
5761 "github_reviewed" : true ,
5862 "github_reviewed_at" : " 2026-01-15T20:11:23Z" ,
59- "nvd_published_at" : null
63+ "nvd_published_at" : " 2026-01-15T20:16:05Z "
6064 }
6165}
Original file line number Diff line number Diff line change 11{
22 "schema_version" : " 1.4.0" ,
33 "id" : " GHSA-6738-r8g5-qwp3" ,
4- "modified" : " 2026-01-15T20:13:33Z " ,
4+ "modified" : " 2026-01-15T22:34:22Z " ,
55 "published" : " 2026-01-15T20:13:33Z" ,
66 "aliases" : [
77 " CVE-2025-15265"
4343 "type" : " WEB" ,
4444 "url" : " https://github.com/sveltejs/svelte/security/advisories/GHSA-6738-r8g5-qwp3"
4545 },
46+ {
47+ "type" : " ADVISORY" ,
48+ "url" : " https://nvd.nist.gov/vuln/detail/CVE-2025-15265"
49+ },
4650 {
4751 "type" : " WEB" ,
4852 "url" : " https://github.com/sveltejs/svelte/commit/ef81048e238844b729942441541d6dcfe6c8ccca"
4953 },
54+ {
55+ "type" : " WEB" ,
56+ "url" : " https://fluidattacks.com/advisories/lydian"
57+ },
5058 {
5159 "type" : " PACKAGE" ,
5260 "url" : " https://github.com/sveltejs/svelte"
6371 "severity" : " MODERATE" ,
6472 "github_reviewed" : true ,
6573 "github_reviewed_at" : " 2026-01-15T20:13:33Z" ,
66- "nvd_published_at" : null
74+ "nvd_published_at" : " 2026-01-15T20:16:03Z "
6775 }
6876}
Original file line number Diff line number Diff line change 11{
22 "schema_version" : " 1.4.0" ,
33 "id" : " GHSA-gjqq-6r35-w3r8" ,
4- "modified" : " 2026-01-15T20:10:11Z " ,
4+ "modified" : " 2026-01-15T22:33:55Z " ,
55 "published" : " 2026-01-15T20:10:11Z" ,
66 "aliases" : [
77 " CVE-2026-23520"
4040 "type" : " WEB" ,
4141 "url" : " https://github.com/getarcaneapp/arcane/security/advisories/GHSA-gjqq-6r35-w3r8"
4242 },
43+ {
44+ "type" : " ADVISORY" ,
45+ "url" : " https://nvd.nist.gov/vuln/detail/CVE-2026-23520"
46+ },
4347 {
4448 "type" : " WEB" ,
4549 "url" : " https://github.com/getarcaneapp/arcane/pull/1468"
5155 {
5256 "type" : " PACKAGE" ,
5357 "url" : " https://github.com/getarcaneapp/arcane"
58+ },
59+ {
60+ "type" : " WEB" ,
61+ "url" : " https://github.com/getarcaneapp/arcane/releases/tag/v1.13.0"
5462 }
5563 ],
5664 "database_specific" : {
6068 "severity" : " CRITICAL" ,
6169 "github_reviewed" : true ,
6270 "github_reviewed_at" : " 2026-01-15T20:10:11Z" ,
63- "nvd_published_at" : null
71+ "nvd_published_at" : " 2026-01-15T20:16:05Z "
6472 }
6573}
Original file line number Diff line number Diff line change 11{
22 "schema_version" : " 1.4.0" ,
33 "id" : " GHSA-j2f3-wq62-6q46" ,
4- "modified" : " 2026-01-15T18:10:52Z " ,
4+ "modified" : " 2026-01-15T22:33:44Z " ,
55 "published" : " 2026-01-15T18:10:52Z" ,
66 "aliases" : [
77 " CVE-2026-22803"
4343 "type" : " WEB" ,
4444 "url" : " https://github.com/sveltejs/kit/security/advisories/GHSA-j2f3-wq62-6q46"
4545 },
46+ {
47+ "type" : " ADVISORY" ,
48+ "url" : " https://nvd.nist.gov/vuln/detail/CVE-2026-22803"
49+ },
4650 {
4751 "type" : " WEB" ,
4852 "url" : " https://github.com/sveltejs/kit/commit/8ed8155215b9a74012fecffb942ad9a793b274e5"
5458 {
5559 "type" : " WEB" ,
5660 "url" : " https://github.com/sveltejs/kit/releases/tag/%40sveltejs%2Fkit%402.49.5"
61+ },
62+ {
63+ "type" : " WEB" ,
64+ "url" : " https://github.com/sveltejs/kit/releases/tag/@sveltejs%2Fadapter-node@5.5.1"
5765 }
5866 ],
5967 "database_specific" : {
6371 "severity" : " HIGH" ,
6472 "github_reviewed" : true ,
6573 "github_reviewed_at" : " 2026-01-15T18:10:52Z" ,
66- "nvd_published_at" : null
74+ "nvd_published_at" : " 2026-01-15T19:16:06Z "
6775 }
6876}
Original file line number Diff line number Diff line change 11{
22 "schema_version" : " 1.4.0" ,
33 "id" : " GHSA-j62c-4x62-9r35" ,
4- "modified" : " 2026-01-15T18:09:59Z " ,
4+ "modified" : " 2026-01-15T22:33:31Z " ,
55 "published" : " 2026-01-15T18:09:59Z" ,
66 "aliases" : [
77 " CVE-2025-67647"
6565 "type" : " WEB" ,
6666 "url" : " https://github.com/sveltejs/kit/security/advisories/GHSA-j62c-4x62-9r35"
6767 },
68+ {
69+ "type" : " ADVISORY" ,
70+ "url" : " https://nvd.nist.gov/vuln/detail/CVE-2025-67647"
71+ },
6872 {
6973 "type" : " WEB" ,
7074 "url" : " https://github.com/sveltejs/kit/commit/d9ae9b00b14f5574d109f3fd548f960594346226"
8488 ],
8589 "database_specific" : {
8690 "cwe_ids" : [
91+ " CWE-248" ,
8792 " CWE-400" ,
8893 " CWE-918"
8994 ],
9095 "severity" : " HIGH" ,
9196 "github_reviewed" : true ,
9297 "github_reviewed_at" : " 2026-01-15T18:09:59Z" ,
93- "nvd_published_at" : null
98+ "nvd_published_at" : " 2026-01-15T19:16:03Z "
9499 }
95100}
Original file line number Diff line number Diff line change 11{
22 "schema_version" : " 1.4.0" ,
33 "id" : " GHSA-mp2g-9vg9-f4cg" ,
4- "modified" : " 2026-01-15T20:10:51Z " ,
4+ "modified" : " 2026-01-15T22:34:08Z " ,
55 "published" : " 2026-01-15T20:10:51Z" ,
66 "aliases" : [
77 " CVE-2026-23527"
4343 "type" : " WEB" ,
4444 "url" : " https://github.com/h3js/h3/security/advisories/GHSA-mp2g-9vg9-f4cg"
4545 },
46+ {
47+ "type" : " ADVISORY" ,
48+ "url" : " https://nvd.nist.gov/vuln/detail/CVE-2026-23527"
49+ },
50+ {
51+ "type" : " WEB" ,
52+ "url" : " https://github.com/h3js/h3/commit/618ccf4f37b8b6148bea7f36040471af45bfb097"
53+ },
4654 {
4755 "type" : " PACKAGE" ,
4856 "url" : " https://github.com/h3js/h3"
5967 "severity" : " HIGH" ,
6068 "github_reviewed" : true ,
6169 "github_reviewed_at" : " 2026-01-15T20:10:51Z" ,
62- "nvd_published_at" : null
70+ "nvd_published_at" : " 2026-01-15T20:16:05Z "
6371 }
6472}
Original file line number Diff line number Diff line change 11{
22 "schema_version" : " 1.4.0" ,
33 "id" : " GHSA-pvm5-9frx-264r" ,
4- "modified" : " 2026-01-15T18:17:06Z " ,
4+ "modified" : " 2026-01-15T22:33:49Z " ,
55 "published" : " 2026-01-15T18:17:06Z" ,
66 "aliases" : [
77 " CVE-2026-23511"
6565 "type" : " WEB" ,
6666 "url" : " https://github.com/zitadel/zitadel/security/advisories/GHSA-pvm5-9frx-264r"
6767 },
68+ {
69+ "type" : " ADVISORY" ,
70+ "url" : " https://nvd.nist.gov/vuln/detail/CVE-2026-23511"
71+ },
6872 {
6973 "type" : " WEB" ,
7074 "url" : " https://github.com/zitadel/zitadel/commit/0bb00dd9fc4e5e965f8e14fa2161a5076f3c308d"
7377 "type" : " WEB" ,
7478 "url" : " https://github.com/zitadel/zitadel/commit/b85ab69e4679b0268e2b0e9b4cd04e934af10dd2"
7579 },
80+ {
81+ "type" : " WEB" ,
82+ "url" : " https://github.com/zitadel/zitadel/commit/c300d4cc6a2775ab17ddfe76492f24170f8b858d"
83+ },
7684 {
7785 "type" : " PACKAGE" ,
7886 "url" : " https://github.com/zitadel/zitadel"
8896 ],
8997 "database_specific" : {
9098 "cwe_ids" : [
91- " CWE-203"
99+ " CWE-203" ,
100+ " CWE-204"
92101 ],
93102 "severity" : " MODERATE" ,
94103 "github_reviewed" : true ,
95104 "github_reviewed_at" : " 2026-01-15T18:17:06Z" ,
96- "nvd_published_at" : null
105+ "nvd_published_at" : " 2026-01-15T20:16:05Z "
97106 }
98107}
Original file line number Diff line number Diff line change 11{
22 "schema_version" : " 1.4.0" ,
33 "id" : " GHSA-vw5p-8cq8-m7mv" ,
4- "modified" : " 2026-01-15T18:10:15Z " ,
4+ "modified" : " 2026-01-15T22:33:39Z " ,
55 "published" : " 2026-01-15T18:10:15Z" ,
66 "aliases" : [
77 " CVE-2026-22774"
4343 "type" : " WEB" ,
4444 "url" : " https://github.com/sveltejs/devalue/security/advisories/GHSA-vw5p-8cq8-m7mv"
4545 },
46+ {
47+ "type" : " ADVISORY" ,
48+ "url" : " https://nvd.nist.gov/vuln/detail/CVE-2026-22774"
49+ },
4650 {
4751 "type" : " WEB" ,
4852 "url" : " https://github.com/sveltejs/devalue/commit/11755849fa0634ae294a15ec0aef2f43efcad7c4"
4953 },
54+ {
55+ "type" : " WEB" ,
56+ "url" : " https://github.com/sveltejs/devalue/commit/e46afa64dd2b25aa35fb905ba5d20cea63aabbf7"
57+ },
5058 {
5159 "type" : " PACKAGE" ,
5260 "url" : " https://github.com/sveltejs/devalue"
61+ },
62+ {
63+ "type" : " WEB" ,
64+ "url" : " https://github.com/sveltejs/devalue/releases/tag/v5.6.2"
5365 }
5466 ],
5567 "database_specific" : {
6072 "severity" : " HIGH" ,
6173 "github_reviewed" : true ,
6274 "github_reviewed_at" : " 2026-01-15T18:10:15Z" ,
63- "nvd_published_at" : null
75+ "nvd_published_at" : " 2026-01-15T19:16:05Z "
6476 }
6577}
You can’t perform that action at this time.
0 commit comments