检索 GitHub Advisory Database 中的已审查与未审查安全公告。
| 公告编号 | 摘要 | 级别 | 生态 / 软件包 | 审查状态 | 发布时间 | 修改时间 |
|---|---|---|---|---|---|---|
| GHSA-JWHM-9CJM-4493 CVE-2021-21649 | Cross-site Scripting in Jenkins Dashboard View Plugin | 中危 | Mavenorg.jenkins-ci.plugins:dashboard-view | 已审查 | 2021-06-17 01:24 | 2023-10-27 22:30 |
| GHSA-GCHQ-9R68-6JWV CVE-2021-21648 | Cross-Site Request Forgery in Jenkins Credentials Plugin |
当前筛选结果 35,190 条 · 时间按北京时间显示
| 中危 |
Mavenorg.jenkins-ci.plugins:credentials |
| 已审查 |
| 2021-06-17 01:24 |
| 2023-10-27 22:31 |
| GHSA-2X7V-W2MV-F3RX CVE-2021-26077 | Improper Authentication in Atlassian Connect Spring Boot | 高危 | Mavencom.atlassian.connect:atlassian-connect-spring-boot | 已审查 | 2021-06-17 01:23 | 2021-05-20 03:44 |
| GHSA-67F6-C8MX-4Q2M CVE-2021-32053 | Uncontrolled Resource Consumption in JPA Server in HAPI FHIR | 中危 | Mavenca.uhn.hapi.fhir:hapi-fhir-jpaserver-base | 已审查 | 2021-06-17 01:21 | 2021-05-20 03:47 |
| GHSA-P2RP-CMJQ-R7WM CVE-2020-11977 | Shell command injection in Apache Syncope | 高危 | Mavenorg.apache.syncope:syncope | 已审查 | 2021-06-17 01:19 | 2021-05-05 04:57 |
| GHSA-VJQW-R3WW-WJ2W CVE-2020-1959 | Expression Language Injection in Apache Syncope | 严重 | Mavenorg.apache.syncope:syncope-core | 已审查 | 2021-06-17 01:18 | 2021-07-30 00:57 |
| GHSA-4W4P-XWRR-9CRH CVE-2020-1961 | Injection in Apache Syncope | 高危 | Mavenorg.apache.syncope:syncope-core | 已审查 | 2021-06-17 01:18 | 2021-05-26 04:57 |
| GHSA-RM7F-MPCJ-W4F6 CVE-2021-31164 | Command injection in Apache Unomi | 高危 | Mavenorg.apache.unomi:unomi | 已审查 | 2021-06-17 01:17 | 2021-05-20 06:11 |
| GHSA-XRG9-WWRQ-XMX9 CVE-2021-21661 | Missing Authorization in Jenkins Kubernetes CLI Plugin | 中危 | Mavenorg.jenkins-ci.plugins:kubernetes-cli | 已审查 | 2021-06-17 01:11 | 2023-10-27 23:33 |
| GHSA-8H77-3XWR-HQHH CVE-2021-21666 | Cross-site scripting in Jenkins Kiuwan Plugin | 中危 | Mavenorg.jenkins-ci.plugins:kiuwanJenkinsPlugin | 已审查 | 2021-06-17 01:10 | 2023-10-27 22:38 |
| GHSA-WPH3-44RJ-92PR CVE-2021-32682 | elFinder before 2.1.59 contains multiple vulnerabilities leading to RCE | 严重 | Packagiststudio-42/elfinder | 已审查 | 2021-06-17 01:04 | 2022-08-11 08:02 |
| GHSA-GC9G-67CQ-P7V4 CVE-2021-33511 | Server-Side Request Forgery in Plone | 高危 | PyPIPlone | 已审查 | 2021-06-16 00:12 | 2024-10-19 05:48 |
| GHSA-4MG4-WVMX-5332 CVE-2021-33510 | Server-Side Request Forgery in Plone | 中危 | PyPIPlone | 已审查 | 2021-06-16 00:11 | 2024-10-19 05:49 |
| GHSA-HM2P-FHWX-9285 CVE-2021-33509 | Incorrect Permission Assignment for Critical Resource in Plone | 严重 | PyPIPlone | 已审查 | 2021-06-16 00:11 | 2024-10-19 05:49 |
| GHSA-962M-M8JW-8WRR | Duplicate Advisory: Path Traversal in Zope 已撤回 | 高危 | PyPIZope | 已审查 | 2021-06-16 00:10 | 2024-11-20 02:25 |
| GHSA-R6H7-5PQ2-J77H CVE-2020-10729 | Insufficiently random values in Ansible | 中危 | PyPIansible | 已审查 | 2021-06-16 00:10 | 2024-09-11 03:16 |
| GHSA-F6MQ-5M25-4R72 CVE-2021-20329 | go.mongodb.org/mongo-driver improperly validates cstrings when marshalling Go objects into BSON | 中危 | Gogo.mongodb.org/mongo-driver | 已审查 | 2021-06-16 00:08 | 2024-09-17 23:38 |
| GHSA-29QJ-RVV6-QRMV CVE-2020-10688 | Cross-site scripting in RESTEasy | 中危 | Mavenorg.jboss.resteasy:resteasy-bom+1 | 已审查 | 2021-06-16 00:05 | 2021-06-02 04:09 |
| GHSA-5H26-C766-G93V CVE-2021-20293 | Cross-Site Scripting | 高危 | Mavenorg.jboss.resteasy:resteasy-bom+1 | 已审查 | 2021-06-15 23:59 | 2021-09-01 05:05 |
| GHSA-PJC4-3W99-J7V4 CVE-2021-23393 | Open redirect in Flask-Unchained | 中危 | PyPIFlask-Unchained | 已审查 | 2021-06-15 23:56 | 2024-09-21 04:01 |
| GHSA-FG3J-Q579-V8X4 CVE-2021-31811 | Uncontrolled memory consumption | 中危 | Mavenorg.apache.pdfbox:pdfbox+1 | 已审查 | 2021-06-15 23:54 | 2022-02-09 05:22 |
| GHSA-7GRW-6PJH-JPC9 CVE-2021-31812 | Infinite Loop in Apache PDFBox | 中危 | Mavenorg.apache.pdfbox:pdfbox+1 | 已审查 | 2021-06-15 23:54 | 2022-02-09 05:22 |
| GHSA-QM58-CVVM-C5QR CVE-2021-23394 | elFinder unsafe upload filtering leading to remote code execution | 高危 | Packagiststudio-42/elfinder | 已审查 | 2021-06-15 23:51 | 2022-08-11 08:02 |
| GHSA-8WWF-2644-F8X4 CVE-2021-34363 | The Fuck Arbitrary File Deletion via Path Traversal | 高危 | PyPIthefuck | 已审查 | 2021-06-15 23:49 | 2024-11-14 07:02 |
| GHSA-8CH4-58QP-G3MP CVE-2021-33880 | Observable Timing Discrepancy in aaugustin websockets library | 高危 | PyPIwebsockets | 已审查 | 2021-06-12 01:43 | 2024-11-20 02:19 |