检索 GitHub Advisory Database 中的已审查与未审查安全公告。
| 公告编号 | 摘要 | 级别 | 生态 / 软件包 | 审查状态 | 发布时间 | 修改时间 |
|---|---|---|---|---|---|---|
| GHSA-FP63-499M-HQ6M CVE-2021-32752 | Files or Directories Accessible to External Parties in ether/logs | 高危 | Packagistether/logs | 已审查 | 2021-07-13 00:53 | 2021-07-09 22:04 |
| GHSA-6CGH-HJPW-Q3GQ CVE-2021-32738 | Utils.readChallengeTx does not verify the server account signature |
当前筛选结果 35,190 条 · 时间按北京时间显示
| 中危 |
npmstellar-sdk |
| 已审查 |
| 2021-07-03 03:20 |
| 2021-07-03 02:25 |
| GHSA-M738-3RC4-5XV3 CVE-2021-32729 | A user without PR can reset user authentication failures information | 低危 | Mavenorg.xwiki.platform:xwiki-platform-security-authentication-script | 已审查 | 2021-07-03 03:19 | 2021-07-03 00:44 |
| GHSA-V9J2-Q4Q5-CXH4 CVE-2021-32730 | No CSRF protection on the password change form | 中危 | Mavenorg.xwiki.platform:xwiki-platform-administration-ui | 已审查 | 2021-07-03 03:19 | 2021-07-03 00:41 |
| GHSA-H4M4-PGP4-WHGM CVE-2021-32731 | The reset password form reveal users email address | 中危 | Mavenorg.xwiki.platform:xwiki-platform-web | 已审查 | 2021-07-03 03:19 | 2022-10-26 04:25 |
| GHSA-2F2W-349X-VRQM CVE-2021-32735 | Cross-site scripting (XSS) from field and configuration text displayed in the Panel | 高危 | Packagistgetkirby/cms | 已审查 | 2021-07-03 03:18 | 2023-04-15 03:24 |
| GHSA-GP6M-VQHM-5CM5 CVE-2021-25951 | XML2Dict XML Entity Expansion Vulnerability | 高危 | PyPIXML2Dict | 已审查 | 2021-07-03 02:37 | 2024-11-20 02:24 |
| GHSA-X2J7-6HXM-87P3 CVE-2021-27903 | Craft CMS Remote Code Injection | 严重 | Packagistcraftcms/cms | 已审查 | 2021-07-03 02:36 | 2023-09-22 03:51 |
| GHSA-3JXH-789F-P7M6 CVE-2021-27902 | Craft CMS Cross-site Scripting Vulnerability | 中危 | Packagistcraftcms/cms | 已审查 | 2021-07-03 02:36 | 2023-09-22 03:21 |
| GHSA-HXXP-6546-WV6R CVE-2021-21672 | XXE vulnerability in Jenkins Selenium HTML report Plugin | 中危 | Mavenorg.jenkins-ci.plugins:seleniumhtmlreport | 已审查 | 2021-07-03 02:36 | 2023-10-27 23:58 |
| GHSA-GWRJ-88FP-5M36 CVE-2021-35514 | Code injection in Narou | 高危 | RubyGemsnarou | 已审查 | 2021-07-03 02:36 | 2023-01-24 23:09 |
| GHSA-W9JG-GVGR-354M CVE-2021-22119 | Resource Exhaustion in Spring Security | 高危 | Mavenorg.springframework.security:spring-security-core+1 | 已审查 | 2021-07-03 02:33 | 2022-03-31 05:15 |
| GHSA-62WW-4P3P-7FHJ CVE-2021-22135 | API information disclosure flaw in Elasticsearch | 中危 | Mavenorg.elasticsearch:elasticsearch | 已审查 | 2021-07-03 02:33 | 2021-05-26 04:48 |
| GHSA-GM2X-6475-G9R8 CVE-2021-32737 | XSS Injection in Media Collection Title was possible | 中危 | Packagistsulu/sulu | 已审查 | 2021-07-03 02:32 | 2021-07-13 22:57 |
| GHSA-W6RQ-6H34-VH7Q CVE-2021-29479 | Cached redirect poisoning via X-Forwarded-Host header | 高危 | Mavenio.ratpack:ratpack-core | 已审查 | 2021-07-02 01:02 | 2021-09-02 03:32 |
| GHSA-2CC5-23R7-VC4V CVE-2021-29480 | Ratpack's default client side session signing key is highly predictable | 中危 | Mavenio.ratpack:ratpack-session | 已审查 | 2021-07-02 01:02 | 2022-08-11 08:17 |
| GHSA-PHJ8-4CQ3-794G CVE-2021-29481 | Unencrypted storage of client side sessions | 中危 | Mavenio.ratpack:ratpack-session | 已审查 | 2021-07-02 01:02 | 2021-09-02 03:32 |
| GHSA-VR5M-3H59-7JCP CVE-2021-32736 | Prototype Pollution in think-helper | 高危 | npmthink-helper | 已审查 | 2021-07-02 01:01 | 2022-05-27 03:57 |
| GHSA-HC33-32VW-RPP9 CVE-2021-29485 | Remote Code Execution Vulnerability in Session Storage | 严重 | Mavenio.ratpack:ratpack-core | 已审查 | 2021-07-02 01:01 | 2021-10-21 22:14 |
| GHSA-MJ9R-WWM8-7Q52 CVE-2021-32721 | Open Redirect in github.com/AndrewBurian/powermux | 中危 | Gogithub.com/AndrewBurian/powermux | 已审查 | 2021-07-02 01:00 | 2024-05-21 04:40 |
| GHSA-H58V-C6RF-G9F7 CVE-2021-35210 | Cross site scripting in the system log | 中危 | Packagistcontao/contao+1 | 已审查 | 2021-07-02 01:00 | 2025-04-17 20:45 |
| GHSA-XFHH-G9F5-X4M4 CVE-2020-36049 | Resource exhaustion in socket.io-parser | 高危 | npmsocket.io-parser | 已审查 | 2021-07-01 00:51 | 2021-07-01 00:53 |
| GHSA-P55X-7X9V-Q8M4 CVE-2017-15133 | Denial of Service in miekg-dns | 高危 | Gogithub.com/miekg/dns | 已审查 | 2021-06-30 05:45 | 2021-05-21 04:59 |
| GHSA-7GFG-6934-MQQ2 CVE-2019-20786 | Improper Authenication in Pion DTLS | 严重 | Gogithub.com/pion/dtls | 已审查 | 2021-06-30 05:34 | 2023-02-14 08:18 |
| GHSA-399H-CMVP-QGX5 CVE-2020-12118 | Incorrect Default Permissions in Binance tss-lib | 高危 | Gogithub.com/binance-chain/tss-lib | 已审查 | 2021-06-30 05:32 | 2023-10-02 22:30 |