检索 GitHub Advisory Database 中的已审查与未审查安全公告。
| 公告编号 | 摘要 | 级别 | 生态 / 软件包 | 审查状态 | 发布时间 | 修改时间 |
|---|---|---|---|---|---|---|
| GHSA-FH37-CX83-Q542 CVE-2021-26697 | Improper Authentication in Apache Airflow | 中危 | PyPIapache-airflow | 已审查 | 2021-06-19 02:30 | 2024-09-13 04:10 |
| GHSA-4PWQ-FJ89-6RJC CVE-2020-13944 | Apache Airflow Cross-site Scripting |
当前筛选结果 35,190 条 · 时间按北京时间显示
| 中危 |
PyPIapache-airflow |
| 已审查 |
| 2021-06-19 02:29 |
| 2024-09-12 04:04 |
| GHSA-9GWX-9CWP-5C2M CVE-2021-32623 | Billion laughs attack (XML bomb) | 高危 | Mavenorg.opencastproject:opencast-kernel | 已审查 | 2021-06-18 04:11 | 2021-10-21 21:40 |
| GHSA-XFRW-HXR5-GHQF CVE-2021-32681 | Cross-site Scripting in wagtail | 中危 | PyPIwagtail | 已审查 | 2021-06-18 04:10 | 2026-06-09 21:02 |
| GHSA-V528-7HRM-FRQP CVE-2021-27568 | Improper Check for Unusual or Exceptional Conditions in json-smart | 中危 | Mavennet.minidev:json-smart+1 | 已审查 | 2021-06-17 02:03 | 2023-02-16 02:39 |
| GHSA-2H3J-M7GR-25XJ CVE-2021-27807 | Excessive Iteration Denial of Service in Apache PDFBox | 中危 | Mavenorg.apache.pdfbox:pdfbox | 已审查 | 2021-06-17 01:56 | 2021-10-22 01:32 |
| GHSA-Q4HM-FWC9-HMV6 CVE-2021-23331 | Insecure temporary file used in com.squareup:connect | 低危 | Mavencom.squareup:connect | 已审查 | 2021-06-17 01:53 | 2022-04-19 05:55 |
| GHSA-JJ4F-P7VV-J4V9 CVE-2021-26919 | Arbitrary code execution in Apache Druid | 高危 | Mavenorg.apache.druid:druid | 已审查 | 2021-06-17 01:51 | 2022-06-07 02:06 |
| GHSA-QJWC-V72V-FQ6R CVE-2021-20220 | HTTP request smuggling in Undertow | 中危 | Mavenio.undertow:undertow-core | 已审查 | 2021-06-17 01:47 | 2022-02-12 05:11 |
| GHSA-J39C-C8HJ-X4J3 CVE-2021-25122 | Exposure of Sensitive Information to an Unauthorized Actor in Apache Tomcat | 高危 | Mavenorg.apache.tomcat:tomcat-coyote+1 | 已审查 | 2021-06-17 01:45 | 2026-08-26 02:31 |
| GHSA-PX9F-597F-WMCF CVE-2021-27576 | Uncontrolled Resource Consumption in Apache OpenMeetings server | 高危 | Mavenorg.apache.openmeetings:openmeetings-parent | 已审查 | 2021-06-17 01:43 | 2021-03-27 07:09 |
| GHSA-WRQF-RRRW-W3MG CVE-2021-25646 | Code injection in Apache Druid | 高危 | Mavenorg.apache.druid:druid | 已审查 | 2021-06-17 01:40 | 2021-04-06 05:52 |
| GHSA-9MGM-GCQ8-86WQ CVE-2021-26117 | Improper Authentication in Apache ActiveMQ and Apache Artemis | 高危 | Mavenorg.apache.activemq:activemq-parent+1 | 已审查 | 2021-06-17 01:39 | 2024-03-15 05:31 |
| GHSA-Q7FR-VQHQ-V5XR CVE-2021-26118 | Apache ActiveMQ Artemis vulnerable to Improper Access Control | 高危 | Mavenorg.apache.activemq:artemis-openwire-protocol | 已审查 | 2021-06-17 01:39 | 2026-07-07 21:33 |
| GHSA-MW3R-PFMG-XP92 CVE-2021-23926 | Improper Restriction of Recursive Entity References in Apache XMLBeans | 严重 | Mavenorg.apache.xmlbeans:xmlbeans | 已审查 | 2021-06-17 01:37 | 2021-10-22 02:58 |
| GHSA-MM8J-9X84-M9CV CVE-2021-23899 | Arbitrary code injection in json-sanitizer | 严重 | Mavencom.mikesamuel:json-sanitizer | 已审查 | 2021-06-17 01:34 | 2021-04-07 05:44 |
| GHSA-MJ8X-CPR8-X39H CVE-2021-27850 | Remote code execution in Apache Tapestry | 严重 | Mavenorg.apache.tapestry:tapestry-core | 已审查 | 2021-06-17 01:33 | 2021-04-20 05:38 |
| GHSA-2F88-5HG8-9X2X CVE-2021-26291 | Origin Validation Error in Apache Maven | 严重 | Mavenorg.apache.maven:maven-compat+1 | 已审查 | 2021-06-17 01:32 | 2023-08-16 01:39 |
| GHSA-GQ67-PP9W-43GP CVE-2021-26296 | Cryptographically weak CSRF tokens in Apache MyFaces | 高危 | Mavenorg.apache.myfaces.core:myfaces-core-module | 已审查 | 2021-06-17 01:31 | 2021-05-08 05:12 |
| GHSA-4FFQ-6G62-J4V4 CVE-2021-21620 | Cross-Site Request Forgery in the Jenkins Claim plugin | 中危 | Mavenorg.jenkins-ci.plugins:claim | 已审查 | 2021-06-17 01:29 | 2023-10-27 21:36 |
| GHSA-H6QV-F5GF-8GCF CVE-2021-21654 | Missing Authorization in Jenkins P4 plugin | 中危 | Mavenorg.jenkins-ci.plugins:p4 | 已审查 | 2021-06-17 01:29 | 2023-10-27 22:23 |
| GHSA-5557-J87H-CVF4 CVE-2021-21653 | Missing Authorization in jenkins xray-connector | 中危 | Mavenorg.jenkins-ci.plugins:xray-connector | 已审查 | 2021-06-17 01:29 | 2021-05-20 02:54 |
| GHSA-W5RH-J4G3-JR29 CVE-2021-21651 | Missing Authorization in Jenkins S3 publisher Plugin | 中危 | Mavenorg.jenkins-ci.plugins:s3 | 已审查 | 2021-06-17 01:29 | 2023-05-24 22:45 |
| GHSA-FVFC-8PQR-WJPV CVE-2021-21650 | Missing Authorization in Jenkins S3 publisher Plugin | 中危 | Mavenorg.jenkins-ci.plugins:s3 | 已审查 | 2021-06-17 01:29 | 2023-10-27 22:29 |
| GHSA-RRVG-2C69-P9RF CVE-2021-21652 | CSRF vulnerability in Jenkins Xray - Test Management for Jira Plugin allows capturing credentials | 高危 | Mavenorg.jenkins-ci.plugins:xray-connector | 已审查 | 2021-06-17 01:28 | 2023-10-27 22:35 |