检索 GitHub Advisory Database 中的已审查与未审查安全公告。
| 公告编号 | 摘要 | 级别 | 生态 / 软件包 | 审查状态 | 发布时间 | 修改时间 |
|---|---|---|---|---|---|---|
| GHSA-3CF2-X423-X582 CVE-2021-4024 | Exposure of Sensitive Information to an Unauthorized Actor and Origin Validation Error in podman | 中危 | Gogithub.com/containers/podman/v3 | 已审查 | 2022-01-07 05:12 | 2022-02-10 02:28 |
| GHSA-F8X6-M9F5-FFP8 CVE-2021-23814 | Unrestricted Upload of File with Dangerous Type in unisharp/laravel-filemanager |
当前筛选结果 35,190 条 · 时间按北京时间显示
| 中危 |
Packagistunisharp/laravel-filemanager |
| 已审查 |
| 2022-01-07 05:08 |
| 2024-04-23 03:10 |
| GHSA-6PJ2-5FQQ-XVJC CVE-2021-23803 | Incorrect Authorization in latte/latte | 严重 | Packagistlatte/latte | 已审查 | 2022-01-07 04:56 | 2022-01-07 02:54 |
| GHSA-4HPF-3WQ7-5RPR CVE-2018-1107 | Regular expression deinal of service (ReDoS) in is-my-json-valid | 中危 | npmis-my-json-valid | 已审查 | 2022-01-07 04:44 | 2021-04-24 04:09 |
| GHSA-CWFW-4GQ5-MRQX CVE-2018-1109 | Regular Expression Denial of Service (ReDoS) in braces | 低危 | npmbraces | 已审查 | 2022-01-07 04:42 | 2025-11-27 00:25 |
| GHSA-RFMP-JVR7-HX78 CVE-2020-9491 | Inadequate Encryption Strength in Apache NiFi | 高危 | Mavenorg.apache.nifi:nifi | 已审查 | 2022-01-07 04:41 | 2022-04-30 04:27 |
| GHSA-3PP3-77J6-8PH6 CVE-2020-9487 | Missing Authentication for Critical Function in Apache NiFi | 高危 | Mavenorg.apache.nifi:nifi | 已审查 | 2022-01-07 04:41 | 2021-03-30 00:45 |
| GHSA-G644-PR5V-VPPF CVE-2020-9486 | Insertion of Sensitive Information into Log File in Apache NiFi Stateless | 高危 | Mavenorg.apache.nifi:nifi-stateless | 已审查 | 2022-01-07 04:41 | 2023-09-12 23:04 |
| GHSA-Q4XF-3PMQ-3HW8 CVE-2020-13940 | Improper Restriction of XML External Entity Reference in Apache NiFi | 中危 | Mavenorg.apache.nifi:nifi | 已审查 | 2022-01-07 04:41 | 2021-03-30 00:20 |
| GHSA-7Q8G-GPFP-V8GX CVE-2020-1942 | Insertion of Sensitive Information into Log File in Apache NiFi | 高危 | Mavenorg.apache.nifi:nifi-framework-core+1 | 已审查 | 2022-01-07 04:40 | 2021-07-29 02:31 |
| GHSA-W4FJ-CCR6-7PCP CVE-2020-1928 | Apache NiFi Insertion of Sensitive Information into Log File | 中危 | Mavenorg.apache.nifi:nifi-parameter | 已审查 | 2022-01-07 04:40 | 2023-09-25 19:29 |
| GHSA-2H63-QP69-FWVW CVE-2020-11987 | Server-side request forgery (SSRF) in Apache Batik | 高危 | Mavenorg.apache.xmlgraphics:batik-svgbrowser | 已审查 | 2022-01-07 04:35 | 2022-02-09 05:33 |
| GHSA-PQHQ-XX62-2V2P CVE-2020-1933 | Cross-site scripting in Apache NiFi | 中危 | Mavenorg.apache.nifi:nifi | 已审查 | 2022-01-07 04:35 | 2021-03-27 06:28 |
| GHSA-Q7Q9-W24Q-CPGH CVE-2020-1936 | Cross-site Scripting (XSS) in Apache Ambari Views | 中危 | Mavenorg.apache.ambari:ambari | 已审查 | 2022-01-07 04:35 | 2021-03-27 06:27 |
| GHSA-897M-RJF5-JP39 CVE-2020-28503 | Prototype Pollution in copy-props | 高危 | npmcopy-props | 已审查 | 2022-01-07 04:35 | 2021-03-25 07:59 |
| GHSA-59J4-WJWP-MW9M CVE-2020-13936 | Sandbox Bypass in Apache Velocity Engine | 高危 | Mavenorg.apache.velocity:velocity+1 | 已审查 | 2022-01-07 04:32 | 2022-04-02 04:22 |
| GHSA-QPW2-XCHM-655Q | Out-of-Bounds read in stringstream 已撤回 | 中危 | npmstringstream | 已审查 | 2022-01-07 04:31 | 2021-05-05 04:42 |
| GHSA-29MW-WPGM-HMR9 CVE-2020-28500 | Regular Expression Denial of Service (ReDoS) in lodash | 中危 | npmlodash+4 | 已审查 | 2022-01-07 04:30 | 2025-09-30 04:19 |
| GHSA-46C4-8WRP-J99V CVE-2020-8124 | Improper Validation and Sanitization in url-parse | 中危 | npmurl-parse | 已审查 | 2022-01-07 04:30 | 2026-02-04 06:13 |
| GHSA-86WF-436M-H424 CVE-2019-10196 | Resource Exhaustion Denial of Service in http-proxy-agent | 中危 | npmhttp-proxy-agent | 已审查 | 2022-01-07 04:30 | 2021-04-01 05:09 |
| GHSA-4JF5-JGGP-G56J CVE-2020-28452 | Cross-Site Request Forgery in com.softwaremill.akka-http-session:core_2.12 | 高危 | Mavencom.softwaremill.akka-http-session:core_2.12 | 已审查 | 2022-01-07 04:23 | 2021-03-23 07:14 |
| GHSA-P3RP-VMJ9-GV6V CVE-2021-43861 | Incorrect sanitisation function leads to `XSS` in mermaid | 高危 | npmmermaid | 已审查 | 2022-01-07 03:45 | 2022-01-07 03:02 |
| GHSA-WC6F-CJCP-CC33 CVE-2020-1952 | Improper Certificate Validation in Apache IoTDB | 高危 | Mavenorg.apache.iotdb:iotdb-parent | 已审查 | 2022-01-07 03:45 | 2021-05-26 04:27 |
| GHSA-MPP5-2X55-49XW CVE-2020-11887 | XSS in svg2png (NPM package) | 中危 | npmsvg2png | 已审查 | 2022-01-07 03:45 | 2021-05-26 03:52 |
| GHSA-HJGM-F7VX-M5G7 CVE-2020-1964 | Deserialization of Untrusted Data in Apache Heron | 高危 | Mavenorg.apache.heron:heron-simulator | 已审查 | 2022-01-07 03:44 | 2021-05-26 03:50 |