Skip to content

GitHub Advisory Database

Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.

3 advisories

Loading
Ry0taK Grub4K
pukkandan
Credited to Ry0taK, Grub4K, and pukkandan
yt-dlp File system modification and RCE through improper file-extension sanitization High
CVE-2024-38519 was published for yt-dlp (pip) Jul 2, 2024
pukkandan JarLob
Grub4K
Credited to pukkandan, JarLob, and Grub4K
youtube-dl vulnerable to file system modification and RCE through improper file-extension sanitization High
GHSA-22fp-mf44-f2mq was published for youtube-dl (pip) Apr 18, 2025
pukkandan JarLob
Grub4K dirkf rhdesmond
Credited to pukkandan, JarLob, Grub4K, dirkf, and rhdesmond
ProTip! Advisories are also available from the GraphQL API