检索 GitHub Advisory Database 中的已审查与未审查安全公告。
| 公告编号 | 摘要 | 级别 | 生态 / 软件包 | 审查状态 | 发布时间 | 修改时间 |
|---|---|---|---|---|---|---|
| GHSA-R56Q-VV3C-6G9C CVE-2021-41150 | Improper sanitization of delegated role names | 高危 | crates.iotough | 已审查 | 2021-10-20 04:16 | 2021-10-20 02:06 |
| GHSA-X3R5-Q6MJ-M485 CVE-2021-41149 | Improper sanitization of target names |
当前筛选结果 35,190 条 · 时间按北京时间显示
| 高危 |
crates.iotough |
| 已审查 |
| 2021-10-20 04:16 |
| 2021-10-20 02:04 |
| GHSA-3W73-FMF3-HG5C CVE-2021-42575 | Policies not properly enforced in OWASP Java HTML Sanitizer | 严重 | Mavencom.googlecode.owasp-java-html-sanitizer:owasp-java-html-sanitizer | 已审查 | 2021-10-20 04:15 | 2022-02-24 06:19 |
| GHSA-X95H-979X-CF3J CVE-2021-42576 | Policies not properly enforced in bluemonday | 高危 | Gogithub.com/microcosm-cc/bluemonday+1 | 已审查 | 2021-10-20 04:15 | 2024-10-22 04:18 |
| GHSA-WJW6-2CQR-J4QR CVE-2021-41131 | Client metadata path-traversal | 中危 | PyPItuf | 已审查 | 2021-10-20 04:14 | 2024-11-19 06:45 |
| GHSA-6P52-JR3Q-C94G CVE-2021-41078 | Nameko Arbitrary code execution due to YAML deserialization | 严重 | PyPInameko | 已审查 | 2021-10-19 23:28 | 2024-10-07 22:45 |
| GHSA-RJF2-J2R6-Q8GR CVE-2021-23449 | Prototype Pollution in vm2 | 严重 | npmvm2 | 已审查 | 2021-10-19 23:28 | 2021-10-19 22:18 |
| GHSA-PVH2-PJ76-4M96 CVE-2021-41153 | Specification non-compliance in JUMPI | 高危 | crates.ioevm | 已审查 | 2021-10-19 23:28 | 2021-10-26 04:07 |
| GHSA-PVV8-8FX9-H673 CVE-2021-41151 | Path Traversal in @backstage/plugin-scaffolder-backend | 中危 | npm@backstage/plugin-scaffolder-backend | 已审查 | 2021-10-19 23:28 | 2021-10-26 04:07 |
| GHSA-WV83-JRFH-RP33 CVE-2021-42227 | Cross site scripting in kindeditor | 中危 | npmkindeditor | 已审查 | 2021-10-19 03:44 | 2021-10-21 22:56 |
| GHSA-3WW4-CP53-6G2X CVE-2021-42228 | Cross Site Request Forgery in kindeditor | 高危 | npmkindeditor | 已审查 | 2021-10-19 03:44 | 2021-10-21 22:56 |
| GHSA-H7VQ-5QGW-JWWQ CVE-2021-41824 | CSV Injection Vulnerability | 高危 | Packagistcraftcms/cms | 已审查 | 2021-10-19 03:04 | 2021-10-19 03:11 |
| GHSA-WPH7-X527-W3H5 CVE-2021-42340 | Missing Release of Resource after Effective Lifetime in Apache Tomcat | 高危 | Mavenorg.apache.tomcat:tomcat | 已审查 | 2021-10-16 02:51 | 2024-03-12 00:36 |
| GHSA-G67G-HVC3-XMVF CVE-2021-41132 | Inconsistent input sanitisation leads to XSS vectors | 严重 | PyPIomero-figure+1 | 已审查 | 2021-10-15 05:19 | 2024-10-08 20:42 |
| GHSA-FR26-QJC8-MVJX | Possible route enumeration in production mode via RouteNotFoundError view in Vaadin 10, 11-14, and 15-19 | 中危 | Mavencom.vaadin:flow-server | 已审查 | 2021-10-14 02:56 | 2021-10-14 01:45 |
| GHSA-JFMF-W293-8XR8 | Regular expression Denial of Service (ReDoS) in EmailValidator class in V7 compatibility module in Vaadin 8 | 高危 | Mavencom.vaadin:vaadin-bom | 已审查 | 2021-10-14 02:55 | 2021-10-14 01:43 |
| GHSA-GW97-F6H8-GM94 CVE-2021-42009 | Email relay in Apache Traffic Control | 中危 | Gogithub.com/apache/trafficcontrol | 已审查 | 2021-10-14 02:55 | 2021-10-21 01:07 |
| GHSA-J23J-Q57M-63V3 | Denial of service in DataCommunicator class in Vaadin 8 | 中危 | Mavencom.vaadin:vaadin-server | 已审查 | 2021-10-14 02:54 | 2021-10-14 01:39 |
| GHSA-QCGX-CRRX-38V5 CVE-2021-33609 | Denial of service in DataCommunicator class in Vaadin 8 | 中危 | Mavencom.vaadin:vaadin-server | 已审查 | 2021-10-14 02:54 | 2024-05-15 13:13 |
| GHSA-VJ62-G63V-F8MF CVE-2021-41138 | Validity check missing in Frontier | 中危 | crates.iopallet-ethereum | 已审查 | 2021-10-14 02:53 | 2024-10-25 05:53 |
| GHSA-WPVM-WQR4-P7CW CVE-2021-26272 | Inclusion of Functionality from Untrusted Control Sphere in CKEditor 4 | 中危 | npmckeditor4 | 已审查 | 2021-10-13 23:34 | 2022-02-09 05:39 |
| GHSA-84G3-CV89-M9GM CVE-2021-25916 | Prototype pollution vulnerability in 'patchmerge' | 严重 | npmpatchmerge | 已审查 | 2021-10-13 23:33 | 2021-10-07 06:34 |
| GHSA-Q6J2-G8QF-WVF7 CVE-2020-19003 | Verification check bypass in Gate One | 中危 | PyPIgateone | 已审查 | 2021-10-13 06:34 | 2024-09-21 05:02 |
| GHSA-7VXR-6CXG-J3X8 CVE-2013-2512 | OS Command Injection in ftpd | 严重 | RubyGemsftpd | 已审查 | 2021-10-13 06:33 | 2021-10-08 02:59 |
| GHSA-9G8H-PJM4-Q92P CVE-2018-5268 | Out-of-bounds Write in OpenCV. | 中危 | PyPIopencv-contrib-python+1 | 已审查 | 2021-10-13 06:23 | 2021-11-18 23:31 |