Skip to content

GitHub Advisory Database

Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.

2 advisories

Loading
piscina: Prototype Pollution Gadget → RCE via inherited options.filename High
CVE-2026-55388 was published for piscina (npm) Jun 18, 2026
ridingsa Credited to ridingsa
Prototype pollution in @feathersjs/commons _.merge via JSON-parsed __proto__ Low
CVE-2026-54335 was published for @feathersjs/commons (npm) Jul 14, 2026
ridingsa Credited to ridingsa
ProTip! Advisories are also available from the GraphQL API