Skip to content

GitHub Advisory Database

Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.

3,818 advisories

Loading
elFinder: ZIP extraction bypasses uploadDeny MIME filter allowing PHP file upload (RCE) High
CVE-2026-81891 was published for Studio-42/elFinder (Composer) Sep 2, 2026
jdh5202 Credited to jdh5202
Unauthenticated Arbitrary File Upload in Hash Form <= 1.4.2 versions. Critical Unreviewed
CVE-2026-81780 was published Aug 31, 2026
Editor Arbitrary File Upload in Fluent Boards Pro <= 2.0.11 versions. Critical Unreviewed
CVE-2026-78274 was published Aug 27, 2026
ProTip! Advisories are also available from the GraphQL API