Skip to content

GitHub Advisory Database

Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.

2 advisories

Loading
docling-core vulnerable to Remote Code Execution via unsafe PyYAML usage High
CVE-2026-24009 was published for docling-core (pip) Jan 22, 2026
avioligo Credited to avioligo, vagenas, PeterStaar-IBM, dolfim-ibm, and tiran vagenas vagenas
PeterStaar-IBM PeterStaar-IBM dolfim-ibm dolfim-ibm tiran tiran
docling-graph has SSRF via Missing Internal IP Validation in URLInputHandler Moderate
CVE-2026-44520 was published for docling-graph (pip) May 7, 2026
ayoub-ibm Credited to ayoub-ibm and dolfim-ibm dolfim-ibm dolfim-ibm
ProTip! Advisories are also available from the GraphQL API