检索 GitHub Advisory Database 中的已审查与未审查安全公告。
| 公告编号 | 摘要 | 级别 | 生态 / 软件包 | 审查状态 | 发布时间 | 修改时间 |
|---|---|---|---|---|---|---|
| GHSA-8786-WG74-F522 CVE-2020-25803 | Improper Control of Dynamically-Managed Code Resources in Crafter CMS Crafter Studio | 高危 | Mavenorg.craftercms:crafter-studio | 已审查 | 2022-02-10 07:07 | 2021-04-14 02:21 |
| GHSA-Q42Q-523G-3FWV CVE-2020-7780 |
当前筛选结果 35,190 条 · 时间按北京时间显示
| 中危 |
Mavencom.softwaremill.akka-http-session:core_2.11+2 |
| 已审查 |
| 2022-02-10 07:06 |
| 2021-04-14 00:52 |
| GHSA-F268-65QC-98VG CVE-2020-13943 | Exposure of Sensitive Information to an Unauthorized Actor in Apache Tomcat | 中危 | Mavenorg.apache.tomcat:tomcat-coyote | 已审查 | 2022-02-10 07:03 | 2022-02-10 07:03 |
| GHSA-GC58-V8H3-X2GR CVE-2020-8022 | Incorrect Default Permissions in Apache Tomcat 已撤回 | 高危 | Mavenorg.apache.tomcat:tomcat | 已审查 | 2022-02-10 07:01 | 2024-07-11 01:24 |
| GHSA-53HP-JPWQ-2JGQ CVE-2020-11996 | Uncontrolled Resource Consumption in Apache Tomcat | 高危 | Mavenorg.apache.tomcat:tomcat+1 | 已审查 | 2022-02-10 07:01 | 2026-06-11 22:28 |
| GHSA-VVW4-RFWF-P6HX CVE-2020-17527 | Exposure of Sensitive Information to an Unauthorized Actor in Apache Tomcat | 高危 | Mavenorg.apache.tomcat:tomcat-coyote | 已审查 | 2022-02-10 06:58 | 2024-03-12 00:33 |
| GHSA-J8JW-G6FQ-MP7H CVE-2020-25638 | SQL injection in hibernate-core | 高危 | Mavenorg.hibernate:hibernate-core | 已审查 | 2022-02-10 06:57 | 2024-06-28 00:39 |
| GHSA-8674-26JC-WH98 CVE-2020-25711 | Improper Access Control in infinispan-server-runtime | 中危 | Mavenorg.infinispan:infinispan-core | 已审查 | 2022-02-10 06:56 | 2022-02-10 06:56 |
| GHSA-V9MF-JGQ3-C28H CVE-2020-28923 | Data Amplification in Play Framework | 低危 | Mavencom.typesafe.play:play | 已审查 | 2022-02-10 06:54 | 2021-04-10 06:29 |
| GHSA-JC35-Q369-45PV CVE-2020-17530 | Remote code execution in Apache Struts | 严重 | Mavenorg.apache.struts:struts2-core | 已审查 | 2022-02-10 06:51 | 2025-10-23 01:57 |
| GHSA-C566-2GRG-MJWG CVE-2020-17531 | Serialization vulnerability in Apache Tapestry | 严重 | Mavenorg.apache.tapestry:tapestry-project | 已审查 | 2022-02-10 06:50 | 2021-04-10 05:34 |
| GHSA-926X-M6M5-3MMP CVE-2019-10803 | push-dir Enables OS Command Injection | 严重 | npmpush-dir | 已审查 | 2022-02-10 06:50 | 2023-09-12 02:16 |
| GHSA-HJXC-462X-X77J CVE-2019-15608 | TOCTOU Race Condition in Yarn | 中危 | npmyarn | 已审查 | 2022-02-10 06:49 | 2023-09-09 07:56 |
| GHSA-PC58-WGMC-HFJR CVE-2020-7792 | Prototype Pollution in mout | 高危 | npmmout | 已审查 | 2022-02-10 06:49 | 2022-02-10 06:49 |
| GHSA-394C-5J6W-4XMX CVE-2020-7793 | ua-parser-js Regular Expression Denial of Service vulnerability | 高危 | npmua-parser-js | 已审查 | 2022-02-10 06:46 | 2022-09-15 04:38 |
| GHSA-MQGV-67VX-G4M5 CVE-2020-28442 | Prototype Pollution in js-data | 严重 | npmjs-data | 已审查 | 2022-02-10 06:45 | 2023-09-06 06:43 |
| GHSA-JPJ4-5XWP-CV23 CVE-2020-11974 | Remote code execution in DolphinScheduler | 严重 | Mavenorg.apache.dolphinscheduler:dolphinscheduler | 已审查 | 2022-02-10 06:44 | 2024-05-02 04:15 |
| GHSA-MP28-RQ7G-QX62 CVE-2020-13931 | Remote code execution in Apache TomEE | 严重 | Mavenorg.apache.tomee:apache-tomee | 已审查 | 2022-02-10 06:44 | 2021-04-09 04:55 |
| GHSA-8MFC-V7WV-P62G CVE-2020-8131 | Path Traversal in Yarn | 高危 | npmyarn | 已审查 | 2022-02-10 06:43 | 2021-04-09 04:35 |
| GHSA-H87Q-G2WP-47PJ | Signatures are mistakenly recognized to be valid in jsrsasign | 中危 | npmjsrsasign | 已审查 | 2022-02-10 06:41 | 2022-02-15 09:51 |
| GHSA-GRC3-8Q8M-4J7C CVE-2020-17533 | Improper privilege handling in Apache Accumulo | 高危 | Mavenorg.apache.accumulo:accumulo-master | 已审查 | 2022-02-10 06:37 | 2024-01-31 23:12 |
| GHSA-3MQV-8GXG-PFM4 CVE-2020-35774 | TwitterServer Cross-site Scripting via /histograms endpoint | 中危 | Mavencom.twitter:twitter-server_2.12 | 已审查 | 2022-02-10 06:37 | 2022-07-21 23:35 |
| GHSA-RVPC-W57P-Q95F CVE-2019-10797 | HTTP Response Splitting in WSO2 transport-http | 中危 | Mavenorg.wso2.transport.http:org.wso2.transport.http.netty | 已审查 | 2022-02-10 06:35 | 2021-04-08 05:38 |
| GHSA-332Q-7FF2-57H2 CVE-2019-10795 | Prototype Pollution in undefsafe | 中危 | npmundefsafe | 已审查 | 2022-02-10 06:34 | 2022-02-25 02:21 |
| GHSA-J9CF-PR2X-5273 CVE-2019-10793 | Prototype Pollution in dot-object | 中危 | npmdot-object | 已审查 | 2022-02-10 06:33 | 2022-02-25 02:17 |