检索 GitHub Advisory Database 中的已审查与未审查安全公告。
| 公告编号 | 摘要 | 级别 | 生态 / 软件包 | 审查状态 | 发布时间 | 修改时间 |
|---|---|---|---|---|---|---|
| GHSA-433W-MM6H-RV9P | Auth bypass in SAML provider | 严重 | Gogithub.com/netlify/gotrue | 已审查 | 2021-06-24 01:29 | 2021-05-22 04:47 |
| GHSA-8J34-9876-PVFQ CVE-2020-26284 | Hugo can execute a binary from the current directory on Windows |
当前筛选结果 35,190 条 · 时间按北京时间显示
| 高危 |
Gogithub.com/gohugoio/hugo |
| 已审查 |
| 2021-06-24 01:28 |
| 2021-05-22 02:15 |
| GHSA-27PV-Q55R-222G CVE-2020-26279 | Path traversal in github.com/ipfs/go-ipfs | 高危 | Gogithub.com/ipfs/go-ipfs | 已审查 | 2021-06-24 01:27 | 2021-05-22 02:31 |
| GHSA-R4GV-VJ59-CCCM CVE-2020-26283 | Control character injection in console output in github.com/ipfs/go-ipfs | 中危 | Gogithub.com/ipfs/go-ipfs | 已审查 | 2021-06-24 01:27 | 2021-05-22 02:06 |
| GHSA-5GJG-JGH4-GPPM CVE-2021-4236 | Websocket requests did not call AuthenticateMethod | 严重 | Gogithub.com/ecnepsnai/web | 已审查 | 2021-06-24 01:26 | 2026-01-24 06:35 |
| GHSA-GQ5R-CC4W-G8XF | Duplicate Advisory: gosaml2 is vulnerable to NULL Pointer Dereference from malformed XML signatures 已撤回 | 高危 | Gogithub.com/russellhaering/gosaml2+1 | 已审查 | 2021-06-24 01:25 | 2024-05-21 04:18 |
| GHSA-599H-8WPJ-75XJ CVE-2021-23365 | Authentication Bypass in tyk-identity-broker | 严重 | Gogithub.com/tyktechnologies/tyk-identity-broker | 已审查 | 2021-06-24 01:23 | 2021-05-21 05:24 |
| GHSA-M45G-F45X-VV22 CVE-2021-31232 | Improper input validation in CNCF Cortex | 中危 | Gogithub.com/cortexproject/cortex | 已审查 | 2021-06-24 01:20 | 2021-05-21 05:19 |
| GHSA-QJ26-7GRJ-WHG3 CVE-2018-6558 | Privilege Escalation in fscrypt | 中危 | Gogithub.com/google/fscrypt | 已审查 | 2021-06-24 01:18 | 2024-05-21 03:39 |
| GHSA-86R9-39J9-99WP CVE-2016-9121 | Elliptic Curve Key Disclosure in go-jose | 严重 | Gogithub.com/square/go-jose+1 | 已审查 | 2021-06-24 01:17 | 2021-05-21 00:54 |
| GHSA-3FX4-7F69-5MMG CVE-2016-9123 | Integer Overflow in go-jose | 高危 | Gogithub.com/square/go-jose | 已审查 | 2021-06-24 01:14 | 2026-07-06 23:05 |
| GHSA-9423-6C93-GPP8 CVE-2020-7667 | github.com/sassoftware/go-rpmutils Arbitrary File Write via Archive Extraction (Zip Slip) | 高危 | Gogithub.com/sassoftware/go-rpmutils | 已审查 | 2021-06-24 01:13 | 2023-08-30 07:36 |
| GHSA-MVRG-5C4W-7QV4 CVE-2018-10704 | Cross-site Scripting in yii2cmf | 中危 | Packagistyidashi/yii2cmf | 已审查 | 2021-06-22 23:25 | 2021-05-04 01:59 |
| GHSA-32WR-8WXM-852C CVE-2019-7725 | Deserialization of Untrusted Data in NukeViet | 严重 | Packagistnukeviet/nukeviet | 已审查 | 2021-06-22 23:24 | 2021-04-08 06:08 |
| GHSA-Q4QV-FMWC-QXPX CVE-2019-7726 | SQL Injection in NukeViet | 严重 | Packagistnukeviet/nukeviet | 已审查 | 2021-06-22 23:24 | 2021-04-08 06:06 |
| GHSA-82XF-8H9P-C6QJ CVE-2020-23264 | Cross-Site Request Forgery in forkcms | 高危 | Packagistforkcms/forkcms | 已审查 | 2021-06-22 23:23 | 2021-05-20 04:53 |
| GHSA-JMGG-WX67-7QFV CVE-2020-13252 | Command Injection in Centreon | 高危 | Packagistcentreon/centreon | 已审查 | 2021-06-22 23:23 | 2021-05-21 06:17 |
| GHSA-JFVF-RFMQ-QWF8 CVE-2019-20789 | Croos-site scripting in Croogo | 低危 | Packagistcroogo/croogo | 已审查 | 2021-06-22 23:23 | 2021-05-26 04:19 |
| GHSA-QPXW-6473-PPWW CVE-2020-12467 | Session Fixation in Subrion CMS | 中危 | Packagistintelliants/subrion | 已审查 | 2021-06-22 23:23 | 2021-05-26 04:45 |
| GHSA-77MR-WC79-M8J3 CVE-2021-3603 | PHPMailer untrusted code may be run from an overridden address validator | 高危 | Packagistphpmailer/phpmailer | 已审查 | 2021-06-22 23:18 | 2024-02-08 02:16 |
| GHSA-7Q44-R25X-WM4Q CVE-2021-34551 | Remote Code Execution vulnerability in PHPMailer 6.4.1 running on Windows | 高危 | Packagistphpmailer/phpmailer | 已审查 | 2021-06-22 23:17 | 2021-07-01 02:13 |
| GHSA-MRWR-2945-FR22 CVE-2021-32245 | Cross-site scripting in PageKit | 中危 | Packagistpagekit/pagekit | 已审查 | 2021-06-22 23:17 | 2021-06-24 02:44 |
| GHSA-M5VX-8CHX-QVMM CVE-2021-32697 | Form validation can be skipped | 中危 | Packagistneos/form | 已审查 | 2021-06-22 23:15 | 2021-07-29 22:34 |
| GHSA-257V-VJ4P-3W2H CVE-2021-29060 | Regular Expression Denial of Service (ReDOS) | 中危 | npmcolor-string | 已审查 | 2021-06-22 09:14 | 2021-07-01 02:03 |
| GHSA-33RV-M2GP-MM2R CVE-2021-25927 | Prototype pollution in safe-flat | 严重 | npmsafe-flat | 已审查 | 2021-06-22 01:18 | 2021-05-21 05:34 |