检索 GitHub Advisory Database 中的已审查与未审查安全公告。
| 公告编号 | 摘要 | 级别 | 生态 / 软件包 | 审查状态 | 发布时间 | 修改时间 |
|---|---|---|---|---|---|---|
| GHSA-5HFJ-R725-WPC4 CVE-2021-32650 | october/system arbitrary code execution | 高危 | Packagistoctober/system | 已审查 | 2022-01-15 05:08 | 2022-08-12 00:55 |
| GHSA-WV23-PFJ7-2MJJ CVE-2021-32649 | October/System authenticated file write leads to remote code execution |
当前筛选结果 35,190 条 · 时间按北京时间显示
| 高危 |
Packagistoctober/system |
| 已审查 |
| 2022-01-15 05:08 |
| 2022-08-12 00:54 |
| GHSA-MH83-JCW5-RJH8 CVE-2022-0198 | XML External Entity Reference in edu.stanford.nlp:stanford-corenlp | 中危 | Mavenedu.stanford.nlp:stanford-corenlp | 已审查 | 2022-01-15 05:07 | 2022-01-20 23:33 |
| GHSA-5V2H-R2CX-5XGJ CVE-2022-21681 | Inefficient Regular Expression Complexity in marked | 高危 | npmmarked | 已审查 | 2022-01-15 05:04 | 2022-01-15 03:57 |
| GHSA-RRRM-QJM4-V8HF CVE-2022-21680 | Inefficient Regular Expression Complexity in marked | 高危 | npmmarked | 已审查 | 2022-01-15 05:04 | 2022-01-15 03:56 |
| GHSA-CJG2-2FJG-FPH4 CVE-2022-21685 | Integer underflow in Frontier | 中危 | crates.iopallet-evm-precompile-modexp | 已审查 | 2022-01-15 05:03 | 2024-10-25 05:50 |
| GHSA-XH99-HW7H-WF63 | Unchecked validity of Facing values in PlayerActionPacket | 高危 | Packagistpocketmine/pocketmine-mp | 已审查 | 2022-01-14 06:25 | 2025-12-27 01:30 |
| GHSA-HX7C-QPFQ-XCRP CVE-2021-44649 | Cross-site Scripting in django-cms | 中危 | PyPIdjango-cms | 已审查 | 2022-01-14 04:10 | 2024-09-17 05:47 |
| GHSA-273R-MGR4-V34F CVE-2022-21676 | Uncaught Exception in engine.io | 高危 | npmengine.io | 已审查 | 2022-01-14 00:14 | 2022-01-21 21:25 |
| GHSA-M6W8-FQ7V-PH4M | GovernorCompatibilityBravo incorrect ABI encoding may lead to unexpected behavior | 中危 | npm@openzeppelin/contracts+1 | 已审查 | 2022-01-14 00:09 | 2022-01-13 05:38 |
| GHSA-7P8F-8HJM-WM92 CVE-2022-21646 | Lookup operations do not take into account wildcards in SpiceDB | 高危 | Gogithub.com/authzed/spicedb | 已审查 | 2022-01-13 23:05 | 2022-01-13 23:02 |
| GHSA-Q4J7-V27R-FGCX CVE-2021-23543 | Prototype Pollution in realms-shim | 严重 | npmrealms-shim | 已审查 | 2022-01-13 23:00 | 2022-01-12 02:13 |
| GHSA-VQWG-4V6F-H6X5 CVE-2022-20615 | Stored XSS vulnerability in Matrix Project Plugin | 中危 | Mavenorg.jenkins-ci.plugins:matrix-project | 已审查 | 2022-01-13 08:01 | 2023-10-28 00:18 |
| GHSA-85RQ-HP8X-GHJQ CVE-2022-20613 | Cross-Site Request Forgery in Jenkins Mailer Plugin | 中危 | Mavenorg.jenkins-ci.plugins:mailer | 已审查 | 2022-01-13 08:01 | 2023-10-28 00:15 |
| GHSA-558X-H7RG-997V CVE-2022-20614 | Incorrect Permission Assignment for Critical Resource in Jenkins Mailer Plugin | 中危 | Mavenorg.jenkins-ci.plugins:mailer | 已审查 | 2022-01-13 08:01 | 2023-05-24 03:36 |
| GHSA-JPXJ-VGQ5-PRJC CVE-2022-20617 | OS command execution vulnerability in Jenkins Docker Commons Plugin | 高危 | Mavenorg.jenkins-ci.plugins:docker-commons | 已审查 | 2022-01-13 08:01 | 2023-10-28 00:23 |
| GHSA-GQM2-2GCX-P88W CVE-2022-20616 | Incorrect Permission Assignment for Critical Resource in Jenkins Credentials Binding Plugin | 中危 | Mavenorg.jenkins-ci.plugins:credentials-binding | 已审查 | 2022-01-13 08:01 | 2024-07-03 22:13 |
| GHSA-W2MH-6XJ5-F77F CVE-2022-20618 | Incorrect Permission Assignment for Critical Resource in Jenkins Bitbucket Branch Source Plugin | 中危 | Mavenorg.jenkins-ci.plugins:cloudbees-bitbucket-branch-source | 已审查 | 2022-01-13 08:01 | 2023-05-25 01:10 |
| GHSA-W4JV-6RG4-PR4M CVE-2022-20619 | Cross-Site Request Forgery in Jenkins Bitbucket Branch Source Plugin | 高危 | Mavenorg.jenkins-ci.plugins:cloudbees-bitbucket-branch-source | 已审查 | 2022-01-13 08:01 | 2023-05-25 01:27 |
| GHSA-9WXH-JJJ5-67CV CVE-2022-20620 | Missing permission checks in SSH Agent Plugin allow enumerating credentials IDs | 中危 | Mavenorg.jenkins-ci.plugins:ssh-agent | 已审查 | 2022-01-13 08:00 | 2023-05-25 01:47 |
| GHSA-GG9M-X3CG-69VH CVE-2022-20621 | Access key stored in plain text by Jenkins Metrics Plugin | 中危 | Mavenorg.jenkins-ci.plugins:metrics | 已审查 | 2022-01-13 08:00 | 2023-10-28 00:17 |
| GHSA-C8CC-HJ57-VM65 CVE-2022-23105 | User passwords transmitted in plain text by Jenkins Active Directory Plugin | 中危 | Mavenorg.jenkins-ci.plugins:active-directory | 已审查 | 2022-01-13 08:00 | 2022-11-30 05:12 |
| GHSA-H6X7-JQ46-FP33 CVE-2022-23109 | Improper credentials masking in Jenkins HashiCorp Vault Plugin | 中危 | Mavencom.datapipe.jenkins.plugins:hashicorp-vault-plugin | 已审查 | 2022-01-13 08:00 | 2023-10-28 00:22 |
| GHSA-FJPM-HF7C-XGC2 CVE-2022-23110 | Stored XSS vulnerability in Jenkins Publish Over SSH Plugin | 中危 | Mavenorg.jenkins-ci.plugins:publish-over-ssh | 已审查 | 2022-01-13 08:00 | 2023-10-28 00:19 |
| GHSA-5QX5-VG5W-5MX3 CVE-2022-23108 | Stored XSS vulnerability in Jenkins Badge Plugin | 中危 | Mavenorg.jenkins-ci.plugins:badge | 已审查 | 2022-01-13 08:00 | 2023-10-28 00:16 |