Independently indexed, February 2026 to present.
43 are searchable in GitHub's global advisory database: all · critical · high. 7 more are repository advisories that carry a CVE but were never published to that database, so the search does not reach them. Each is linked individually in the table below.
Positive Technologies indexes the record independently and ranks it #1,066 of 54,969 researchers, 202.2 total CVSS.
Every badge links to a published advisory. Twenty-two of thirty-nine organizations. The full list is below.
Work that produced a fix or an acknowledgement but no advisory. Verified 2026-07-26; every row links to the primary source.
Patches I wrote that were merged
| Project | What | Credit |
|---|---|---|
| Apache HTTP Server | Integer overflow guards in four core escaping functions | "Submitted by: Koda Reef" |
| c-ares | Overflow checks in ares_buf_ensure_space() |
Merged, downstream in Node.js |
| protoc-gen-validate | Malformed UTF-8 undercounted, bypassing length constraints | Merged |
| DOMPurify | The fix for my own CVE-2026-41240 | Merged |
| File Browser | The fixes for all four of my own File Browser advisories | 4 merged |
Credited in someone else's fix
| Project | What | Credit |
|---|---|---|
| jsrsasign 11.1.2 | HIGH, DSA universal signature forgery, FIPS 186-4 §4.7 boundary check | reported by Koda Reef, Nicholas Carlini and @Kr0emer |
| jsrsasign 11.1.2 | HIGH, ASN.1 parser infinite loop in getChildIdx |
reported by Koda Reef, sole |
| nginx 1.31.2 | Constant time secure_link hash comparison |
"Thanks to kodareef5" |
| GNOME GLib | D-Bus message length integer arithmetic | "Based on a report by Koda Reef" |
| CloudNativePG | Escaping in PostgreSQL config values | "Reported-by: Koda Reef" |
| CloudNativePG | Tightened recovery target validation | "Suggested-by: Koda Reef" |
| lighttpd | mod_maxminddb snprintf return bound |
"(thx kodareef5)" |
| Headlamp v0.42.0 | Host header validation | "thanks to Koda Reef for reporting" |
| NATS Server 2.14.3 | Non-CVE fixes in the same release | Named in contributors |
| vim | Buffer underflow in vim_fgets() |
v9.2.0271 and v9.2.0272 |
| libjpeg-turbo | Signed overflow in JNI array size across six paths | Fixed |
| libevent | HTTP header parsing restricted against request smuggling | Release notes |
| libzip | THANKS | |
| simple-git | GIT_CONFIG_COUNT injection |
Changelog |
| authentik | SAML NameID truncation | Vendor CVE page |
| Red Hat | Five errata across OpenShift product lines | Downstream |
One advisory credits me in prose but not in metadata:
go-git GHSA-crhj-59gh-8x96
reads "Thanks to @kodareef5, @AyushParkara and @N0zoM1z0 for reporting this to
the go-git project in three separate reports." The structured credits list
the other two. It is not counted in the 50.
|
Dgraph · CVE-2026-34976
|
Rancher Fleet · CVE-2026-41050
Two Helm execution paths kept |
|
Cilium · CVE-2026-41520
|
Traefik · CVE-2026-41263
A BasicAuth timing fix had already shipped. The patch looked up a bcrypt hash as if it were a username, so the constant-time fallback secret was always empty and password checks failed in microseconds instead of running bcrypt. Reported path closed; class not. Measured at 130x against the shipped binary. |
|
nginx · 1.31.2 The
|
Composer · CVE-2026-40261
Command injection through the Perforce source handler, reachable from package metadata, so the untrusted input is the package itself, which is the whole trust model of a dependency manager. Sole reporter. Red Hat shipped errata. |
|
OneUptime · CVE-2026-34759
Notification API endpoints were registered without auth middleware while
every neighbouring endpoint had it. An unauthenticated caller could buy phone
numbers on the victim's Twilio account, delete existing alert numbers, and
reach SMTP credentials. A |
NATS Server · three advisories One batch, three advisories, each titled by the maintainers as an incomplete fix for an earlier CVE. Leafnode handshake crash (High 8.6) survived two prior fixes, CVE-2026-29785 and CVE-2026-33218. MQTT ACL bypass and trace-permission bypass each survived one. Sole reporter on all three. |
Severity, as published in each advisory
| Critical | High | Medium | Low |
|---|---|---|---|
| 4 | 26 | 16 | 4 |
████ |
██████████████████████████ |
████████████████ |
████ |
Ecosystem
| Go | Python | PHP | JavaScript | Rust |
|---|---|---|---|---|
| 27 | 8 | 6 | 5 | 4 |
███████████████████████████ |
████████ |
██████ |
█████ |
████ |
Most common classes. SSRF ×7 · then six classes at three each: denial of service, authorization bypass, command injection, logic flaws, validation bypass, missing authorization, information disclosure. Then a tail of two: path traversal, policy subversion, timing side-channels, permission inheritance.
Ten cases where a patch had already shipped and the bug class survived it. The BentoML advisory is titled "Incomplete fix for CVE-2026-33744", the maintainers' own words, not mine.
| BentoML | advisory titled "Incomplete fix for CVE-2026-33744" |
| Gotenberg | incomplete fix for an ExifTool arbitrary file write |
| NATS Server | three advisories, all incomplete fixes to one earlier batch |
| Merkle proof verifier | a prior audit's remediation shipped in one language binding only; the other still carried the flaw |
| ClearML | incomplete fix for CVE-2024-24591 |
| PyTorch Lightning | _instantiator bypass, then an incomplete fix for that bypass |
| dtale | incomplete fix for CVE-2026-27194 |
| NATS Server | leafnode handshake crash, incomplete fix for two CVEs at once |
| NATS Server | MQTT subscribe ACL bypass, incomplete fix for CVE-2026-33217 |
| NATS Server | trace-destination permission bypass, incomplete fix for CVE-2026-33249 |
| Cryptography | Ed25519 signature malleability · variable-time HMAC · secure_link timing · identity-point proof acceptance in zero-knowledge verifiers · PRF state leak reversing proactive key refresh · cross-language proof-verification divergence · missing curve validation in MPC blob deserializers |
| Identity and trust | OIDC client binding · attestation verification · FORBID_TAGS bypass · SAML NameID truncation · delegation matching · email domain bypass · password reset token theft |
| Platform and isolation | Helm impersonation bypass · symlink policy subversion · WireGuard key exposure · Lua injection · DNS secret exfiltration · virtio-net TOCTOU (Firecracker) · reverse-proxy path canonicalization and hop-by-hop header forwarding |
| AI and ML | command injection · template injection · pickle deserialization and sandbox escape across ONNX, MLflow, PyTorch Lightning, Keras, Triton · PoCs |
| Supply chain | Perforce command injection · submodule validation · tar path traversal · GIT_CONFIG_COUNT injection |
| Edge and proxy | BasicAuth timing oracle · email domain bypass · collector auth bypass · reverse-proxy path canonicalization and hop-by-hop header forwarding |
Named engineers at the affected organizations, by direct email. Technical confirmations of a finding, not endorsements and not customer references.
| "We validated that the TOCTOU condition you described exists in Firecracker's codebase" | AWS Security |
| "We've confirmed the vulnerability, the analysis is accurate" | Red Hat, Tekton maintainer |
| "I have reproduced the issue and can confirm the Lua injection vulnerability" | Contour maintainer |
| "I can confirm this is a real vulnerability" | oauth2-proxy maintainer |
| "I can confirm reception and have created an advisory" | Composer, Jordi Boggiano |
| "On the parser-level finding: your observation is correct" | CloudNativePG, EnterpriseDB |
| "We will credit you in the advisory and inform when it's public" | SUSE Rancher security |
Press: GBHackers · Cybersecurity News on the Dgraph 10.0.
Plus CVE-2026-5366.
Critical, git argument injection in Prefect deployment pull steps via an
unsanitized commit_sha, across four injection points. Reported and
CVE-assigned through
huntr;
fixed upstream.
Not among the 50 below, which are advisory credits only. A second Critical,
CVE-2026-42048, is
awaiting a credit correction and is also not counted.
| Advisory | CVE | Project | Class | Severity | Published |
|---|---|---|---|---|---|
| GHSA-3g5q-cfh2-cq67 | CVE-2026-58250 | nats-io/nats-server | Denial of service | High | 2026-07-08 |
| GHSA-p3j5-5hrq-p75h | CVE-2026-58254 | nats-io/nats-server | Authorization bypass | Medium | 2026-07-08 |
| GHSA-4g68-3pwx-5vfj | CVE-2026-58214 | nats-io/nats-server | Authorization bypass | Medium | 2026-07-08 |
| GHSA-mh8x-fppq-cp77 | CVE-2026-34168 | coollabsio/coolify | Command injection | High | 2026-07-07 |
| GHSA-xqxv-4jc2-x56x | CVE-2026-55672 | zitadel/zitadel | Missing identity binding | High | 2026-06-18 |
| GHSA-w5cv-pw74-4rxc | CVE-2026-55701 | open-telemetry/opentelemetry-collector-contrib | Logic flaw | Medium | 2026-06-18 |
| GHSA-4v4x-x5pr-8gp2 | CVE-2026-41577 | goauthentik/authentik | Validation bypass | Medium | 2026-06-02 |
| GHSA-w5pp-99ch-qj29 | None | go-git/go-git | Denial of service | Medium | 2026-05-29 |
| GHSA-qp9x-wp8f-qgjj | None | theupdateframework/python-tuf | Delegation confusion | Medium | 2026-05-28 |
| GHSA-765j-qfrp-hm3j | CVE-2026-41050 | rancher/fleet | Impersonation bypass | Critical | 2026-05-07 |
| GHSA-x494-mj8g-cj27 | None | GitoxideLabs/gitoxide | Denial of service | High | 2026-05-05 |
| GHSA-p3hw-mv63-rf9w | None | GitoxideLabs/gitoxide | Path traversal | High | 2026-05-05 |
| GHSA-mm2q-qcmx-gw4w | None | rustfs/rustfs | Missing authorization | High | 2026-05-05 |
| GHSA-q49m-57vm-c8cc | CVE-2026-41326 | kata-containers/kata-containers | Policy subversion | High | 2026-05-04 |
| GHSA-gj49-89wh-h4gj | CVE-2026-41520 | cilium/cilium | Information disclosure | High | 2026-04-25 |
| GHSA-x4mj-7f9g-29h4 | CVE-2026-41246 | projectcontour/contour | Code injection | High | 2026-04-24 |
| GHSA-6x2q-h3cr-8j2h | CVE-2026-41263 | traefik/traefik | Timing side-channel | Medium | 2026-04-24 |
| GHSA-88gm-j2wx-58h6 | CVE-2026-41321 | withastro/astro | SSRF | Low | 2026-04-23 |
| GHSA-pfcq-4gjr-6gjm | CVE-2026-40937 | rustfs/rustfs | Missing authorization | High | 2026-04-22 |
| GHSA-h7mw-gpvr-xq4m | CVE-2026-41240 | cure53/DOMPurify | Validation bypass | Medium | 2026-04-22 |
| GHSA-73h3-mf4w-8647 | CVE-2026-41140 | python-poetry/poetry | Path traversal | Low | 2026-04-22 |
| GHSA-wjxp-xrpv-xpff | CVE-2026-40161 | tektoncd/pipeline | Information disclosure | High | 2026-04-21 |
| GHSA-rx35-6rhx-7858 | CVE-2026-40923 | tektoncd/pipeline | Validation bypass | Medium | 2026-04-21 |
| GHSA-94jr-7pqp-xhcq | CVE-2026-40938 | tektoncd/pipeline | Logic flaw | High | 2026-04-21 |
| GHSA-4jjr-vmv7-wh4w | CVE-2026-41175 | statamic/cms | Unsafe method invocation | High | 2026-04-16 |
| GHSA-c5c4-8r6x-56w3 | CVE-2026-40574 | oauth2-proxy/oauth2-proxy | Authorization bypass | Medium | 2026-04-15 |
| GHSA-gqw4-4w2p-838q | CVE-2026-40261 | composer/composer | Command injection | High | 2026-04-14 |
| GHSA-4x48-cgf9-q33f | None | novuhq/novu | SSRF | High | 2026-04-14 |
| GHSA-r2pg-r6h7-crf3 | CVE-2026-34984 | external-secrets/external-secrets | Data exfiltration | High | 2026-04-13 |
| GHSA-w95v-4h65-j455 | CVE-2026-40107 | siyuan-note/siyuan | SSRF | High | 2026-04-10 |
| GHSA-r854-jrxh-36qx | CVE-2026-40194 | phpseclib/phpseclib | Timing side-channel | Low | 2026-04-10 |
| GHSA-5f5r-95pg-xrpm | CVE-2026-40077 | henrygd/beszel | IDOR | Low | 2026-04-10 |
| GHSA-3crg-w4f6-42mx | CVE-2026-40260 | py-pdf/pypdf | Resource exhaustion | Medium | 2026-04-10 |
| GHSA-w6c6-c85g-mmv6 | CVE-2026-39395 | sigstore/cosign | Verification bypass | Medium | 2026-04-08 |
| GHSA-v9w4-gm2x-6rvf | CVE-2026-35604 | filebrowser/filebrowser | Permission inheritance | High | 2026-04-08 |
| GHSA-hfvc-g4fc-pqhx | CVE-2026-39883 | open-telemetry/opentelemetry-go | Logic flaw | High | 2026-04-08 |
| GHSA-7526-j432-6ppp | CVE-2026-35607 | filebrowser/filebrowser | Permission inheritance | High | 2026-04-08 |
| GHSA-67cg-cpj7-qgc9 | CVE-2026-35606 | filebrowser/filebrowser | Information disclosure | Medium | 2026-04-08 |
| GHSA-5q48-q4fm-g3m6 | CVE-2026-35605 | filebrowser/filebrowser | Access control bypass | Medium | 2026-04-08 |
| GHSA-qmwh-9m9c-h36m | None | gotenberg/gotenberg | Policy subversion | High | 2026-04-07 |
| GHSA-x3f4-v83f-7wp2 | None | authorizerdev/authorizer | Missing authorization | High | 2026-04-06 |
| GHSA-7gvf-3w72-p2pg | CVE-2026-35459 | pyload/pyload | SSRF | Critical | 2026-04-04 |
| GHSA-4744-96p5-mp2j | CVE-2026-35464 | pyload/pyload | Arbitrary file write | High | 2026-04-04 |
| GHSA-fgv4-6jr3-jgfw | CVE-2026-35043 | bentoml/BentoML | Command injection | High | 2026-04-03 |
| GHSA-p5rh-vmhp-gvcw | CVE-2026-34976 | dgraph-io/dgraph | SSRF | Critical | 2026-04-02 |
| GHSA-6wc5-rhvj-cx7f | CVE-2026-34759 | OneUptime/oneuptime | Missing authentication | Critical | 2026-04-02 |
| GHSA-x3ff-w252-2g7j | None | StableLib/stablelib | Signature malleability | Medium | 2026-04-01 |
| GHSA-c9v3-4c59-x5q2 | CVE-2026-34443 | freescout-help-desk/freescout | SSRF | High | 2026-03-31 |
| GHSA-frv4-x25r-588m | CVE-2026-34172 | Giskard-AI/giskard-oss | Template injection | High | 2026-03-27 |
| GHSA-f359-r3pv-2phf | CVE-2026-33766 | WWBN/AVideo | SSRF | Medium | 2026-03-26 |
Machine-readable: advisories.csv
137 repositories reviewed · 39 organizations · 34 security contacts · 7 vendor confirmations · 21 findings awaiting triage

