检索 GitHub Advisory Database 中的已审查与未审查安全公告。
| 公告编号 | 摘要 | 级别 | 生态 / 软件包 | 审查状态 | 发布时间 | 修改时间 |
|---|---|---|---|---|---|---|
| GHSA-WPGH-HMV4-R3V5 CVE-2021-25928 | Prototype pollution in safe-obj | 严重 | npmsafe-obj | 已审查 | 2021-06-22 01:18 | 2021-05-21 05:52 |
| GHSA-RGX6-RJJ4-C388 CVE-2021-33829 | ckeditor4 vulnerable to cross-site scripting |
当前筛选结果 35,190 条 · 时间按北京时间显示
| 中危 |
npmckeditor4+2 |
| 已审查 |
| 2021-06-22 01:16 |
| 2024-02-08 17:40 |
| GHSA-JV35-XQG7-F92R CVE-2021-25949 | set-getter Prototype Pollution Vulnerability | 严重 | npmset-getter | 已审查 | 2021-06-22 01:16 | 2023-09-14 04:02 |
| GHSA-X3WR-V4WX-5QPC CVE-2021-25948 | Prototype Pollution | 严重 | npmexpand-hash | 已审查 | 2021-06-22 01:14 | 2022-06-30 04:41 |
| GHSA-339J-HQGX-QRRX CVE-2021-23395 | Prototype Pollution in nedb | 高危 | npmnedb | 已审查 | 2021-06-22 01:13 | 2023-08-09 03:57 |
| GHSA-3R8W-MPHV-2F3F CVE-2021-23396 | Prototype Pollution in lutils | 中危 | npmlutils | 已审查 | 2021-06-22 01:12 | 2023-08-09 03:57 |
| GHSA-5W25-HXP5-H8C9 | Duplicate Advisory: Improper Verification of Cryptographic Signature 已撤回 | 严重 | npmtenvoy | 已审查 | 2021-06-22 01:12 | 2026-01-24 06:42 |
| GHSA-P2C4-GXP4-J3XP CVE-2021-34801 | Denial of service in Valine | 中危 | npmvaline | 已审查 | 2021-06-22 01:11 | 2022-05-04 11:11 |
| GHSA-52QP-GWWH-QRG4 CVE-2021-32684 | Missing Handler in @scandipwa/magento-scripts | 中危 | npm@scandipwa/magento-scripts | 已审查 | 2021-06-22 01:10 | 2021-06-17 04:15 |
| GHSA-35G4-QX3C-VJHX CVE-2021-32659 | Automatic room upgrade handling can be used maliciously to bridge a room non-consentually | 中危 | npmmatrix-appservice-bridge | 已审查 | 2021-06-22 01:09 | 2021-06-17 04:08 |
| GHSA-R578-PJ6F-R4FF CVE-2021-32691 | Auto-merging Person Records Compromised | 高危 | npm@apollosproject/data-connector-rock | 已审查 | 2021-06-22 01:07 | 2021-06-17 05:25 |
| GHSA-RFCF-M67M-JCRQ CVE-2021-32693 | Authentication granted to all firewalls instead of just one | 中危 | Packagistsymfony/security-http+1 | 已审查 | 2021-06-22 01:03 | 2024-02-05 19:13 |
| GHSA-PW59-4QGF-JXR8 CVE-2020-17522 | Cache Manipulation Attack in Apache Traffic Control | 中危 | Gogithub.com/apache/trafficcontrol | 已审查 | 2021-06-19 06:04 | 2022-04-05 05:27 |
| GHSA-QXG5-2QFF-P49R CVE-2021-32696 | Passing in a non-string 'html' argument can lead to unsanitized output | 中危 | npmstriptags | 已审查 | 2021-06-19 03:31 | 2021-06-19 03:31 |
| GHSA-WQVQ-5M8C-6G24 CVE-2020-26137 | CRLF injection in urllib3 | 中危 | PyPIurllib3 | 已审查 | 2021-06-19 02:46 | 2024-11-19 06:42 |
| GHSA-35RG-466W-77H3 CVE-2021-33507 | Cross-site scripting in Products.CMFCore, Products.PluggableAuthService, Plone | 中危 | PyPIPlone+2 | 已审查 | 2021-06-19 02:44 | 2024-10-19 05:50 |
| GHSA-5PR9-V234-JW36 CVE-2021-32633 | Remote Code Execution via traversal in TAL expressions | 高危 | PyPIZope | 已审查 | 2021-06-19 02:44 | 2024-11-20 02:29 |
| GHSA-3XXV-P78R-4FC6 CVE-2021-28359 | Cross-site Scripting in Apache Airflow | 中危 | PyPIapache-airflow | 已审查 | 2021-06-19 02:43 | 2024-09-12 22:00 |
| GHSA-MJ63-64X7-57XF CVE-2021-31800 | Path traversal in impacket | 严重 | PyPIimpacket | 已审查 | 2021-06-19 02:43 | 2024-09-24 01:06 |
| GHSA-37M5-42QP-4QPR CVE-2021-32091 | Cross-site scripting in LocalStack | 中危 | PyPIlocalstack | 已审查 | 2021-06-19 02:38 | 2024-10-01 00:32 |
| GHSA-HPR6-F4VQ-MXCH CVE-2021-32090 | Command injection in LocalStack | 严重 | PyPIlocalstack | 已审查 | 2021-06-19 02:38 | 2024-10-01 00:21 |
| GHSA-656C-6CXF-HVCV CVE-2021-33026 | Deserialization of Untrusted Data in Flask-Caching | 中危 | PyPIFlask-Caching | 已审查 | 2021-06-19 02:33 | 2022-09-20 21:31 |
| GHSA-G5J6-R3X9-GF2M CVE-2020-13258 | Cross-site scripting in Contentful | 中危 | PyPIcontentful | 已审查 | 2021-06-19 02:32 | 2021-05-15 05:45 |
| GHSA-WM2M-XRRP-J74C CVE-2020-7655 | HTTP Request Smuggling in netius | 中危 | PyPInetius | 已审查 | 2021-06-19 02:31 | 2024-10-07 23:08 |
| GHSA-JQMC-FXXP-R589 CVE-2020-14942 | Deserialization of Untrusted Data in Tendenci | 严重 | PyPItendenci | 已审查 | 2021-06-19 02:31 | 2024-10-28 22:01 |