检索 GitHub Advisory Database 中的已审查与未审查安全公告。
| 公告编号 | 摘要 | 级别 | 生态 / 软件包 | 审查状态 | 发布时间 | 修改时间 |
|---|---|---|---|---|---|---|
| GHSA-P6RW-44Q7-3FW4 CVE-2021-41134 | Stored XSS in Jupyter nbdime | 中危 | npmnbdime+1 | 已审查 | 2021-11-09 02:09 | 2024-10-02 03:31 |
| GHSA-QM7X-RC44-RRQW | Cross-site Scripting Vulnerability in GraphQL Playground (distributed by Apollo Server) |
当前筛选结果 35,190 条 · 时间按北京时间显示
| 高危 |
npmapollo-server |
| 已审查 |
| 2021-11-09 02:07 |
| 2021-11-05 03:46 |
| GHSA-59R9-6JP6-JCM7 CVE-2021-41249 | XSS vulnerability in GraphQL Playground from untrusted schemas | 高危 | npmgraphql-playground-react | 已审查 | 2021-11-09 02:06 | 2021-11-05 03:36 |
| GHSA-X4R7-M2Q9-69C8 CVE-2021-41248 | GraphiQL introspection schema template injection attack | 高危 | npmgraphiql | 已审查 | 2021-11-09 02:03 | 2021-11-05 03:36 |
| GHSA-CW7P-Q79F-M2V7 CVE-2021-41247 | incomplete JupyterHub logout with simultaneous JupyterLab sessions | 中危 | PyPIjupyterhub | 已审查 | 2021-11-09 02:02 | 2024-09-25 04:50 |
| GHSA-862G-9H5M-M3QV CVE-2021-3917 | coreos-installer < 0.10.0 writes world-readable Ignition config to installed system | 中危 | crates.iocoreos-installer | 已审查 | 2021-11-09 02:01 | 2022-09-08 22:25 |
| GHSA-46RX-6JG9-4FH8 CVE-2021-43324 | Cross-site Scripting in LibreNMS | 中危 | Packagistlibrenms/librenms | 已审查 | 2021-11-09 01:59 | 2021-11-09 01:58 |
| GHSA-6G47-63MV-QPGH CVE-2021-23624 | Prototype Pollution in dotty | 中危 | npmdotty | 已审查 | 2021-11-09 01:55 | 2021-11-05 01:01 |
| GHSA-MW6Q-98MP-G8G8 CVE-2021-23472 | Cross-site Scripting in bootstrap-table | 低危 | npmbootstrap-table | 已审查 | 2021-11-09 01:54 | 2023-01-24 02:49 |
| GHSA-W4V7-HWX7-9929 CVE-2021-23784 | Cross-site Scripting in tempura | 中危 | npmtempura | 已审查 | 2021-11-09 01:50 | 2021-11-09 01:49 |
| GHSA-282F-QQGM-C34Q CVE-2021-23807 | Prototype Pollution in node-jsonpointer | 中危 | npmjsonpointer+1 | 已审查 | 2021-11-09 01:44 | 2025-03-06 03:06 |
| GHSA-8GWJ-8HXC-285W CVE-2021-23509 | Prototype Pollution in json-ptr | 中危 | npmjson-ptr | 已审查 | 2021-11-09 01:43 | 2021-11-09 01:43 |
| GHSA-V5VG-G7RQ-363W CVE-2021-23820 | Prototype Pollution in json-pointer | 中危 | npmjson-pointer | 已审查 | 2021-11-09 01:40 | 2022-07-16 04:23 |
| GHSA-G2Q5-5433-RHRF | Embedded malware in rc | 严重 | npmrc | 已审查 | 2021-11-05 00:24 | 2022-09-08 06:17 |
| GHSA-73QR-PFMQ-6RP8 | Embedded malware in coa | 严重 | npmcoa | 已审查 | 2021-11-05 00:22 | 2022-09-08 06:16 |
| GHSA-P49H-HJVM-JG3H CVE-2020-5312 | PCX P mode buffer overflow in Pillow | 严重 | PyPIpillow | 已审查 | 2021-11-04 02:05 | 2024-10-08 21:03 |
| GHSA-3XV8-3J54-HGRP CVE-2020-10378 | Out-of-bounds read in Pillow | 高危 | PyPIpillow | 已审查 | 2021-11-04 02:04 | 2024-10-10 04:52 |
| GHSA-VCQG-3P29-XW73 CVE-2020-5310 | Integer overflow in Pillow | 严重 | PyPIpillow | 已审查 | 2021-11-04 02:04 | 2024-10-08 21:03 |
| GHSA-HGC3-HP6X-WPGX CVE-2021-3840 | Antilles Dependency Confusion Vulnerability | 高危 | PyPIantilles-tools | 已审查 | 2021-11-04 01:36 | 2024-09-05 04:58 |
| GHSA-V935-PQMR-G8V9 | Unexpected panics in num-bigint | 中危 | crates.ionum-bigint | 已审查 | 2021-11-04 01:36 | 2021-11-03 23:02 |
| GHSA-QGMG-GPPG-76G5 CVE-2021-3765 | Inefficient Regular Expression Complexity in validator.js | 中危 | npmvalidator | 已审查 | 2021-11-04 01:34 | 2021-11-03 22:46 |
| GHSA-X24J-87X9-JVV5 CVE-2021-25973 | Publify `guest` role users can self-register even when the admin does not allow it | 中危 | RubyGemspublify_core | 已审查 | 2021-11-04 01:34 | 2022-08-12 06:06 |
| GHSA-93C4-VF86-3RJ7 CVE-2021-33611 | Reflected cross-site scripting in vaadin-menu-bar webjar resources in Vaadin 14 | 中危 | Mavencom.vaadin:vaadin-bom+1 | 已审查 | 2021-11-04 01:33 | 2021-11-05 01:03 |
| GHSA-7RQ6-7GV8-C37H CVE-2021-41238 | Missing Authorization with Default Settings in Dashboard UI | 高危 | NuGetHangfire.Core | 已审查 | 2021-11-04 01:30 | 2021-11-03 22:35 |
| GHSA-6MCM-J9CJ-3VC3 CVE-2021-41973 | Infinite loop in Apache MINA | 中危 | Mavenorg.apache.mina:mina-core | 已审查 | 2021-11-04 01:30 | 2021-11-03 22:49 |