检索 GitHub Advisory Database 中的已审查与未审查安全公告。
| 公告编号 | 摘要 | 级别 | 生态 / 软件包 | 审查状态 | 发布时间 | 修改时间 |
|---|---|---|---|---|---|---|
| GHSA-4X25-F45X-GRV5 CVE-2021-33900 | Missing encryption in Apache Directory Studio | 高危 | Mavenorg.apache.directory.studio:org.apache.directory.studio.parent | 已审查 | 2021-08-10 04:40 | 2021-08-11 00:54 |
| GHSA-P8Q8-JFCV-G2H2 CVE-2021-32610 |
当前筛选结果 35,190 条 · 时间按北京时间显示
| 高危 |
Packagistpear/archive_tar |
| 已审查 |
| 2021-08-10 04:40 |
| 2021-09-21 04:26 |
| GHSA-CH3R-VP46-8G22 CVE-2020-17952 | Code injection in topthink/think | 严重 | Packagisttopthink/think | 已审查 | 2021-08-10 04:39 | 2021-09-01 05:00 |
| GHSA-V2F3-F8X4-M3W8 CVE-2020-23234 | Cross Site Scripting in LavaLite CMS | 中危 | Packagistlavalite/cms | 已审查 | 2021-08-10 04:38 | 2023-07-07 05:32 |
| GHSA-56CX-WF47-HX7W CVE-2021-3663 | No Restriction of Excessive Authentication Attempts in Firefly III | 中危 | Packagistgrumpydictator/firefly-iii | 已审查 | 2021-08-10 04:38 | 2023-07-07 05:34 |
| GHSA-H563-XH25-X54Q CVE-2021-37914 | Workflow re-write vulnerability using input parameter | 中危 | Gogithub.com/argoproj/argo-workflows/v3 | 已审查 | 2021-08-10 04:37 | 2021-08-31 07:23 |
| GHSA-H3MF-4FWP-59C7 | VecStorage Deserialize Allows Violation of Length Invariant 已撤回 | 中危 | crates.ionalgebra | 已审查 | 2021-08-06 03:58 | 2021-08-25 02:08 |
| GHSA-G4XG-FXMG-VCG5 CVE-2021-3013 | OS command injection in ripgrep | 严重 | crates.iogrep-cli+1 | 已审查 | 2021-08-06 03:31 | 2021-09-08 05:16 |
| GHSA-HXWM-X553-X359 | Arbitrary Command Injection due to Improper Command Sanitization | 中危 | npm@npmcli/git | 已审查 | 2021-08-06 01:07 | 2021-08-03 03:02 |
| GHSA-M697-4V8F-55QG CVE-2021-32813 | Header dropping in traefik | 中危 | Gogithub.com/traefik/traefik+1 | 已审查 | 2021-08-06 01:04 | 2021-09-01 04:57 |
| GHSA-Q3M9-9FJ2-MFWR CVE-2021-32806 | URL Redirection to Untrusted Site ('Open Redirect') in Products.isurlinportal | 高危 | PyPIProducts.isurlinportal | 已审查 | 2021-08-06 01:02 | 2024-10-22 04:06 |
| GHSA-QCX9-J53G-CCGF CVE-2021-32807 | Remote Code Execution via unsafe classes in otherwise permitted modules | 中危 | PyPIAccessControl+1 | 已审查 | 2021-08-06 01:01 | 2026-06-09 21:03 |
| GHSA-G4GQ-J4P2-J8FR CVE-2021-32811 | Remote Code Execution via Script (Python) objects under Python 3 | 高危 | PyPIZope | 已审查 | 2021-08-06 01:00 | 2024-09-04 05:14 |
| GHSA-7F92-RR6W-CQ64 | Storage corruption due to variables overwritten by re-entrancy locks | 高危 | PyPIvyper | 已审查 | 2021-08-06 00:57 | 2021-08-03 03:12 |
| GHSA-XH2P-7P87-FHGH | Incorrect TCR calculation in batchLiquidateTroves() during Recovery Mode | 低危 | npm@liquity/contracts | 已审查 | 2021-08-06 00:56 | 2021-07-30 04:43 |
| GHSA-CMHX-CQ75-C4MJ CVE-2019-0820 | Regular Expression Denial of Service in System.Text.RegularExpressions | 高危 | NuGetSystem.Text.RegularExpressions | 已审查 | 2021-08-05 05:03 | 2023-02-22 02:57 |
| GHSA-3JFQ-G458-7QM9 CVE-2021-32804 | Arbitrary File Creation/Overwrite due to insufficient absolute path sanitization | 高危 | npmtar | 已审查 | 2021-08-04 03:06 | 2021-08-31 07:14 |
| GHSA-R628-MHMH-QJHW CVE-2021-32803 | Arbitrary File Creation/Overwrite via insufficient symlink protection due to directory cache poisoning | 高危 | npmtar | 已审查 | 2021-08-04 03:00 | 2023-03-10 00:44 |
| GHSA-5FG8-2547-MR8Q CVE-2021-32796 | Misinterpretation of malicious XML input | 中危 | npm@xmldom/xmldom+1 | 已审查 | 2021-08-04 00:57 | 2024-02-23 03:03 |
| GHSA-6CJ2-92M5-7MVP | Improperly Controlled Modification of Object Prototype Attributes | 高危 | npmthink-config | 已审查 | 2021-08-04 00:48 | 2021-10-09 05:20 |
| GHSA-J66F-H9HM-975M CVE-2020-9472 | Unrestricted Upload of File with Dangerous Type in Umbraco CMS | 中危 | NuGetUmbracoCms | 已审查 | 2021-08-03 01:38 | 2021-05-05 05:16 |
| GHSA-9Q94-V7CH-MXQW CVE-2020-8867 | Insufficient Session Expiration and TOCTOU Race Condition in OPC FOundation UA .Net Standard | 中危 | NuGetOPCFoundation.NetStandard.Opc.Ua | 已审查 | 2021-08-03 01:35 | 2021-05-26 04:12 |
| GHSA-MVVP-GWGC-5HRP CVE-2021-23407 | Path Traversal in elFinder.Net.Core | 高危 | NuGetelFinder.Net.Core | 已审查 | 2021-08-03 01:30 | 2021-09-01 05:21 |
| GHSA-WC43-7WJ6-4GGR CVE-2020-1180 | Remote code execution in ChakraCore | 高危 | NuGetMicrosoft.ChakraCore | 已审查 | 2021-08-03 01:29 | 2021-05-05 06:07 |
| GHSA-XXFR-JRGH-X392 CVE-2020-1172 | Remote code execution in ChakraCore | 高危 | NuGetMicrosoft.ChakraCore | 已审查 | 2021-08-03 01:29 | 2021-05-05 06:11 |