Vendor Security Advisories
Security advisories straight from the source — Microsoft, Red Hat, GitHub, and beyond. Searchable, indexed, and live the moment vendors publish.
🔔 Vendor advisory alerts
Catch vendor-disclosed advisories the day they ship
Vendors like Microsoft, Red Hat, and GitHub publish security advisories days to weeks before NVD assigns a CVE. Subscribe to get these the moment we ingest them.
- ✓Microsoft MSRC, Red Hat RHSA, GitHub GHSA — full vendor coverage
- ✓Embargo-window disclosures included (Pre-CVE advisories)
- ✓Real-time, daily, weekly, or monthly cadence
Browse by vendor
10 active · 10 trackedMost Recent Vendor Advisoriestop 12
The newest 12 advisories ingested from any tracked vendor — refreshed every two minutes.
Red Hat Security Advisory: openssl security update
n8n before 1.123.64, 2.x before 2.29.8, and before 2.30.1 contains a DOM-based cross-site...
Traefik versions 3.7.0 through 3.7.6 contain a namespace confusion vulnerability in the...
Traefik 3.6.0 through 3.6.22 and 3.7.0 through 3.7.6 fail to enforce the crossProviderNamespaces...
Traefik versions <= v2.11.51, >= v3.6.0 <= v3.6.22, and >= v3.7.0 <= v3.7.6 contain an...
The Grav Login plugin (grav-plugin-login) versions <= 3.8.11 contain a privilege escalation flaw...
n8n before 1.123.64, 2.29.8, and 2.30.1 contains a TOCTOU race condition in the Git node's clone...
n8n versions before 1.123.64, 2.29.8, and 2.30.1 contain a credential exposure vulnerability:...
There is a stack-based buffer overflow vulnerability in some Hikvision cameras, which may allow...
n8n versions before 1.123.64 fail to properly mask custom HTTP header credentials in LLM sub-node...
n8n contains a sanitizer bypass vulnerability in the legacy expression evaluator's computed...
n8n before 2.29.8 and 2.30.x before 2.30.1 (affected from 2.27.0, when the OAuth 2.1 consent and...