- Notifications
You must be signed in to change notification settings - Fork8.3k
Security: DIYgod/RSSHub
Security
- RSSHub's `docker-test-cont.yml` workflow is vulnerable to Artifact Poisoning which may lead to a full repository takeover.GHSA-9mqc-fm24-h8cw published
Sep 26, 2024 byDIYgodCritical - XSS vulnerability caused by internal media proxyGHSA-2wqw-hr4f-xrhh published
Mar 5, 2024 byDIYgodModerate - RSSHub SSRF vulnerabilities in /mastodon, /zjoi, and /m4GHSA-3p3p-cgj7-vgw3 published
Mar 5, 2024 byDIYgodModerate - XSS vulnerability caused by unvalidated URL parametersGHSA-32gr-4cq6-5w5q published
Feb 28, 2023 byDIYgodModerate - SSRF vulnerabilityGHSA-64wp-jh9p-5cg2 published
Jan 11, 2023 byDIYgodHigh - Denial of Service (DoS) vulnerabilityGHSA-jvxx-v45p-v5vf published
Jun 22, 2022 byDIYgodHigh - Risk of code injectionGHSA-pgjj-866w-fc5c published
Jan 26, 2021 byDIYgodModerate
Learn more about advisories related toDIYgod/RSSHub in theGitHub Advisory Database