检索 GitHub Advisory Database 中的已审查与未审查安全公告。
| 公告编号 | 摘要 | 级别 | 生态 / 软件包 | 审查状态 | 发布时间 | 修改时间 |
|---|---|---|---|---|---|---|
| GHSA-C69W-JJ56-834W CVE-2021-44549 | Improper Certificate Validation and Improper Validation of Certificate with Host Mismatch in Apache Sling Commons Messaging Mail | 高危 | Mavenorg.apache.sling:org.apache.sling.commons.messaging.mail | 已审查 | 2021-12-16 22:12 | 2022-01-05 03:09 |
| GHSA-RP42-C45J-G46X CVE-2021-4107 |
当前筛选结果 35,190 条 · 时间按北京时间显示
yetiforcecrm is vulnerable to Cross-site Scripting |
| 中危 |
Packagistyetiforce/yetiforce-crm |
| 已审查 |
| 2021-12-16 22:12 |
| 2021-12-16 22:09 |
| GHSA-JQFP-M5F8-VG28 CVE-2021-42220 | Dolibarr Cross Site Scripting (XSS) vulnerability | 中危 | Packagistdolibarr/dolibarr | 已审查 | 2021-12-16 08:02 | 2024-04-25 02:41 |
| GHSA-GV87-Q66H-4277 CVE-2021-43113 | Command injection in itext7-core | 严重 | Mavencom.itextpdf:itext7-core+1 | 已审查 | 2021-12-16 08:02 | 2022-01-26 05:02 |
| GHSA-84PX-Q68R-2FC9 CVE-2021-43835 | Privilege escalation in the Sulu Admin panel | 高危 | Packagistsulu/sulu | 已审查 | 2021-12-16 06:55 | 2021-12-16 06:27 |
| GHSA-VX6J-PJRH-VGJH CVE-2021-43836 | PHP file inclusion in the Sulu admin panel | 高危 | Packagistsulu/sulu | 已审查 | 2021-12-16 06:54 | 2021-12-16 06:27 |
| GHSA-GJRJ-9RJ4-PGWX | DoS Vulnerability from Upstream Actix Web Issues | 高危 | crates.ioperseus-actix-web | 已审查 | 2021-12-16 06:51 | 2021-12-18 03:33 |
| GHSA-MMJF-F5JW-W72Q CVE-2021-4044 | Invalid handling of `X509_verify_cert()` internal errors in libssl | 高危 | crates.ioopenssl-src | 已审查 | 2021-12-15 08:00 | 2022-09-20 05:58 |
| GHSA-2HFJ-CXW7-G45P CVE-2021-39183 | Unsafe inline XSS in pasting DOM element into chat | 高危 | Gogithub.com/owncast/owncast | 已审查 | 2021-12-15 05:48 | 2022-01-05 02:54 |
| GHSA-9C22-PWXW-P6HX CVE-2022-39384 | OpenZeppelin Contracts initializer reentrancy may lead to double initialization | 中危 | npm@openzeppelin/contracts+1 | 已审查 | 2021-12-15 05:47 | 2022-11-08 05:13 |
| GHSA-94G7-HPV8-H9QM | Remote code injection in Log4j | 严重 | Mavencom.splunk.logging:splunk-library-javalogging | 已审查 | 2021-12-15 05:46 | 2025-08-07 22:10 |
| GHSA-59G4-HPG3-3GCP CVE-2021-43821 | Files Accessible to External Parties in Opencast | 严重 | Mavenorg.opencastproject:opencast-ingest-service-impl | 已审查 | 2021-12-15 05:44 | 2022-01-05 02:53 |
| GHSA-HCXX-MP6G-6GR9 CVE-2018-16153 | Opencast publishes global system account credentials | 高危 | Mavenorg.opencastproject:opencast-common | 已审查 | 2021-12-15 05:43 | 2023-12-15 06:27 |
| GHSA-J4MM-7PJ3-JF7V CVE-2021-43807 | HTTP Method Spoofing | 高危 | Mavenorg.opencastproject:opencast-common | 已审查 | 2021-12-15 05:43 | 2022-01-05 02:54 |
| GHSA-5CQM-CRXM-6QPV CVE-2021-41816 | Buffer overrun in CGI.escape_html | 严重 | RubyGemscgi | 已审查 | 2021-12-15 05:36 | 2022-07-29 22:18 |
| GHSA-QPHC-HF5Q-V8FC CVE-2021-44528 | actionpack Open Redirect in Host Authorization Middleware | 中危 | RubyGemsactionpack | 已审查 | 2021-12-15 05:19 | 2024-02-08 20:30 |
| GHSA-PH98-V78F-JQRM CVE-2021-43822 | SQL injection in jackalope/jackalope-doctrine-dbal | 高危 | Packagistjackalope/jackalope-doctrine-dbal | 已审查 | 2021-12-15 05:08 | 2021-12-14 23:25 |
| GHSA-MF4F-J588-5XM8 | Apache Log4j Remote Code Execution | 严重 | Mavenorg.opencastproject:opencast-common | 已审查 | 2021-12-15 05:07 | 2021-12-14 23:29 |
| GHSA-FP5R-V3W9-4333 CVE-2021-4104 | JMSAppender in Log4j 1.2 is vulnerable to deserialization of untrusted data | 高危 | Mavenlog4j:log4j+1 | 已审查 | 2021-12-15 03:49 | 2023-10-26 23:04 |
| GHSA-GXJJ-F44V-QM94 | Open Redirect in Flask-Security-Too 已撤回 | 低危 | PyPIFlask-Security-Too | 已审查 | 2021-12-15 02:14 | 2021-12-15 02:14 |
| GHSA-7RJR-3Q55-VV33 CVE-2021-45046 | Incomplete fix for Apache Log4j vulnerability | 严重 | Mavenorg.apache.logging.log4j:log4j-core+1 | 已审查 | 2021-12-15 02:01 | 2025-10-23 03:12 |
| GHSA-273R-RM8G-7F3X CVE-2021-43801 | Uncaught Exception in mercurius | 高危 | npmmercurius | 已审查 | 2021-12-14 05:33 | 2021-12-14 04:20 |
| GHSA-55X5-FJ6C-H6M8 CVE-2021-43818 | lxml's HTML Cleaner allows crafted and SVG embedded scripts to pass through | 中危 | PyPIlxml | 已审查 | 2021-12-14 02:14 | 2024-10-01 00:50 |
| GHSA-4JWX-78VX-GM6G CVE-2021-4033 | Cross-Site Request Forgery in kimai2 | 中危 | Packagistkevinpapst/kimai2 | 已审查 | 2021-12-11 04:34 | 2021-12-14 23:29 |
| GHSA-97CC-825C-399G CVE-2021-4050 | Cross site scripting in remdex/livehelperchat | 中危 | Packagistremdex/livehelperchat | 已审查 | 2021-12-11 04:33 | 2021-12-10 02:07 |