Resources · Vulnerability Feed
Find the advisory.
Then investigate the impact.
Search the live QFinch vulnerability feed by CVE, GHSA or OSV identifier.
Public intelligence. Project-specific decisions.
An advisory describes a published vulnerability. Whether it affects your application depends on the component, version, configuration and available evidence.
This public feed is separate from your organization’s private findings. A search result does not indicate that your project contains the vulnerability.
Browse all vulnerability records ↗Advisory data may change. Review the canonical references and validate applicability before acting.