检索 GitHub Advisory Database 中的已审查与未审查安全公告。
| 公告编号 | 摘要 | 级别 | 生态 / 软件包 | 审查状态 | 发布时间 | 修改时间 |
|---|---|---|---|---|---|---|
| GHSA-C3XQ-CJ8F-7829 CVE-2013-2166 | Inadequate Encryption Strength in python-keystoneclient | 严重 | PyPIpython-keystoneclient | 已审查 | 2021-10-13 00:31 | 2024-10-26 05:26 |
| GHSA-R838-Q6JP-58XX CVE-2013-1895 |
当前筛选结果 35,190 条 · 时间按北京时间显示
| 高危 |
PyPIpy-bcrypt |
| 已审查 |
| 2021-10-13 00:31 |
| 2024-10-22 04:06 |
| GHSA-PM77-C4Q7-3FWJ CVE-2019-20455 | Improper Certificate Validation in Heartland & Global Payments PHP SDK | 中危 | Packagistglobalpayments/php-sdk | 已审查 | 2021-10-13 00:31 | 2021-10-09 06:58 |
| GHSA-QF6Q-QFWP-VP44 CVE-2020-8818 | Origin Validation Error in Magento 2 | 高危 | Packagistcardgate/magento2 | 已审查 | 2021-10-13 00:30 | 2021-10-09 06:34 |
| GHSA-56WV-2WR9-3H9R CVE-2020-12607 | Improper Verification of Cryptographic Signature in fastecdsa | 高危 | PyPIfastecdsa | 已审查 | 2021-10-13 00:30 | 2025-02-13 02:33 |
| GHSA-M5V7-PR32-MJX2 CVE-2020-13909 | Critical severity vulnerability in Ignition | 严重 | Packagistfacade/ignition | 已审查 | 2021-10-13 00:29 | 2021-11-19 04:37 |
| GHSA-68JC-V27H-VHMW CVE-2020-13671 | Drupal core Unrestricted Upload of File with Dangerous Type | 高危 | Packagistdrupal/core+1 | 已审查 | 2021-10-13 00:28 | 2025-10-23 01:59 |
| GHSA-7C7G-72Q7-4XHM CVE-2020-28274 | Prototype pollution vulnerability in 'deepref' | 严重 | npmdeepref | 已审查 | 2021-10-13 00:27 | 2021-10-09 06:15 |
| GHSA-MX3X-GHQM-R43H CVE-2020-28280 | Prototype pollution vulnerability in 'predefine' | 严重 | npmpredefine | 已审查 | 2021-10-13 00:27 | 2021-10-09 06:13 |
| GHSA-3R9X-MJRM-2725 CVE-2020-28283 | Prototype pollution vulnerability in 'libnested' | 严重 | npmlibnested | 已审查 | 2021-10-13 00:27 | 2021-10-09 06:09 |
| GHSA-957J-59C2-J692 CVE-2020-28282 | Prototype pollution in getobject | 严重 | npmgetobject | 已审查 | 2021-10-13 00:26 | 2023-09-08 02:57 |
| GHSA-Q854-J362-CFQ9 CVE-2020-23849 | Cross-site Scripting in jsoneditor | 中危 | npmjsoneditor | 已审查 | 2021-10-13 00:22 | 2021-10-09 05:54 |
| GHSA-5F38-9JW2-6R6H CVE-2021-23447 | Cross-site Scripting in teddy | 中危 | npmteddy | 已审查 | 2021-10-13 00:22 | 2022-05-04 11:42 |
| GHSA-3R3G-G73X-G593 CVE-2021-20319 | coreos-installer improperly verifies GPG signature when decompressing gzipped artifact | 高危 | crates.iocoreos-installer | 已审查 | 2021-10-13 00:06 | 2025-12-23 00:27 |
| GHSA-QH54-9VC5-M9FG | MD5 hash support in github.com/foxcpp/maddy | 低危 | Gogithub.com/foxcpp/maddy | 已审查 | 2021-10-13 00:06 | 2021-10-12 05:16 |
| GHSA-Q324-Q795-2Q5P | Path traversal when using `preview-docs` when working dir contains files with question mark `?` in name | 低危 | npm@redocly/openapi-cli | 已审查 | 2021-10-13 00:05 | 2021-10-12 02:40 |
| GHSA-PGH6-M65R-2RHQ CVE-2021-22964 | DOS and Open Redirect with user input | 高危 | npmfastify-static | 已审查 | 2021-10-13 00:04 | 2021-10-21 22:57 |
| GHSA-PGJJ-866W-FC5C CVE-2021-21278 | Risk of code injection | 高危 | npmrsshub | 已审查 | 2021-10-13 00:03 | 2021-10-12 00:14 |
| GHSA-CX2R-MF6X-55RX CVE-2020-5273 | Stored XSS with custom URLs in PrestaShop module ps_linklist | 中危 | Packagistprestashop/ps_linklist | 已审查 | 2021-10-13 00:01 | 2021-10-09 06:31 |
| GHSA-WQGP-VPHW-HPHF CVE-2020-8897 | Security issues in AWS KMS and AWS Encryption SDKs: in-band protocol negotiation and robustness | 高危 | Mavenaws-encryption-sdk+1 | 已审查 | 2021-10-13 00:01 | 2024-09-05 03:24 |
| GHSA-4VR9-8CJF-VF9C CVE-2020-26281 | Async-h1 request smuggling possible with long unread bodies | 中危 | crates.ioasync-h1 | 已审查 | 2021-10-13 00:00 | 2021-10-09 06:14 |
| GHSA-XV8X-PR4H-73JV CVE-2021-41121 | Memory corruption when returning a literal struct with a private call inside of it | 高危 | PyPIvyper | 已审查 | 2021-10-12 23:59 | 2024-11-19 06:44 |
| GHSA-3F99-HVG4-QJWJ CVE-2021-41117 | Insecure random number generation in keypair | 高危 | npmkeypair | 已审查 | 2021-10-12 01:09 | 2021-10-12 02:36 |
| GHSA-823F-CWM9-4G74 CVE-2021-41124 | Splash authentication credentials potentially leaked to target websites | 高危 | PyPIscrapy-splash | 已审查 | 2021-10-07 01:49 | 2024-10-27 06:52 |
| GHSA-25FX-MXC2-76G7 CVE-2021-41120 | Sylius PayPal Plugin allows unauthorized access to Credit card form, exposing payer name and not requiring 3DS | 高危 | Packagistsylius/paypal-plugin | 已审查 | 2021-10-07 01:49 | 2022-08-16 04:11 |