Skip to content

GitHub Advisory Database

Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.

229 advisories

Loading
zbateson/mail-mime-parser has CRLF header injection via attachment filename High
CVE-2026-61815 was published for zbateson/mail-mime-parser (Composer) Sep 24, 2026
iliaal Credited to iliaal
s2x Credited to s2x
CakePHP: SmtpTransport vulnerable to CRLF header injection High
CVE-2026-77634 was published for cakephp/cakephp (Composer) Sep 8, 2026
unknownhad Credited to unknownhad
HTTPX2: Multipart part header injection via unvalidated file Content-Type and custom headers Moderate
CVE-2026-84379 was published for httpx2 (pip) Sep 8, 2026
maxisbey Credited to maxisbey
ProTip! Advisories are also available from the GraphQL API