检索 GitHub Advisory Database 中的已审查与未审查安全公告。
| 公告编号 | 摘要 | 级别 | 生态 / 软件包 | 审查状态 | 发布时间 | 修改时间 |
|---|---|---|---|---|---|---|
| GHSA-7FRV-9PHW-VRVR CVE-2020-27664 | Authorization bypass in Strapi | 严重 | npmstrapi | 已审查 | 2021-05-11 02:43 | 2023-09-14 03:20 |
| GHSA-PXCF-V868-M492 CVE-2020-7749 | Injection and Cross-site Scripting in osm-static-maps |
当前筛选结果 35,190 条 · 时间按北京时间显示
| 高危 |
npmosm-static-maps |
| 已审查 |
| 2021-05-11 02:43 |
| 2023-09-12 04:22 |
| GHSA-GMCH-CM2P-9QW9 CVE-2020-7747 | Cross-site Scripting in lightning-server | 中危 | npmlightning-server | 已审查 | 2021-05-11 02:39 | 2021-04-22 02:19 |
| GHSA-X2FC-MXCX-W4MF CVE-2020-7743 | Prototype Pollution in mathjs | 高危 | npmmathjs | 已审查 | 2021-05-11 02:39 | 2022-07-06 01:36 |
| GHSA-9MX2-PRFP-8HQP CVE-2020-7742 | Prototype Pollution in simpl-schema | 高危 | npmsimpl-schema | 已审查 | 2021-05-11 02:38 | 2021-04-22 04:37 |
| GHSA-HCQ6-H8V2-R5WM CVE-2020-7740 | Server-Side Request Forgery in node-pdf-generator | 高危 | npmnode-pdf-generator | 已审查 | 2021-05-11 02:38 | 2021-04-22 04:52 |
| GHSA-J9PJ-HX76-92V6 CVE-2020-7739 | Server-Side Request Forgery in phantomjs-seo | 高危 | npmphantomjs-seo | 已审查 | 2021-05-11 02:38 | 2021-04-22 04:55 |
| GHSA-R2GR-FHMR-66C5 | Duplicate Advisory: "Arbitrary code execution in socket.io-file" 已撤回 | 高危 | npmsocket.io-file | 已审查 | 2021-05-11 02:38 | 2026-01-23 06:29 |
| GHSA-7MG4-W3W5-X5PC CVE-2020-7709 | Prototype pollution in json-pointer | 中危 | Mavenjson-pointer+1 | 已审查 | 2021-05-11 02:37 | 2025-03-06 03:04 |
| GHSA-JVF4-G24P-2QGW CVE-2020-7738 | Arbitrary Code Execution in shiba | 高危 | npmshiba | 已审查 | 2021-05-11 02:37 | 2023-09-08 02:56 |
| GHSA-H3RX-G5C9-8Q4X CVE-2020-7736 | Prototype Pollution in bmoor | 高危 | npmbmoor | 已审查 | 2021-05-11 02:37 | 2022-12-03 11:40 |
| GHSA-4J54-MXF6-WXX2 CVE-2020-7620 | OS Command Injection in pomelo-monitor | 严重 | npmpomelo-monitor | 已审查 | 2021-05-11 02:37 | 2021-07-29 05:52 |
| GHSA-W83X-FP72-P9QC CVE-2020-28429 | Command Injection in geojson2kml | 严重 | npmgeojson2kml | 已审查 | 2021-05-10 23:59 | 2023-09-07 07:00 |
| GHSA-4Q97-FH3F-J294 CVE-2020-7724 | Prototype Pollution in tiny-conf | 严重 | npmtiny-conf | 已审查 | 2021-05-10 23:59 | 2021-05-08 05:50 |
| GHSA-WJ6H-7CHW-X4H2 CVE-2020-7619 | Command injection in get-git-data | 严重 | npmget-git-data | 已审查 | 2021-05-10 23:59 | 2026-07-06 23:48 |
| GHSA-4943-9VGG-GR5R CVE-2021-3163 | Cross-site Scripting in quill | 中危 | npmquill | 已审查 | 2021-05-10 23:38 | 2024-08-09 22:41 |
| GHSA-C94V-8FFF-73PH CVE-2021-28162 | Command Injection in @theia/messages | 中危 | npm@theia/messages | 已审查 | 2021-05-10 23:36 | 2021-05-08 01:57 |
| GHSA-P3HC-FV2J-RP68 CVE-2021-23370 | Prototype Pollution in swiper | 严重 | npmswiper | 已审查 | 2021-05-10 23:36 | 2021-05-08 01:34 |
| GHSA-HWJ9-H5MP-3PM3 CVE-2021-23368 | Regular Expression Denial of Service in postcss | 中危 | npmpostcss | 已审查 | 2021-05-10 23:29 | 2021-06-15 23:12 |
| GHSA-567X-M4WM-87V8 CVE-2021-28657 | Infinite loop in Apache Tika | 中危 | Mavenorg.apache.tika:tika | 已审查 | 2021-05-10 23:23 | 2022-04-22 23:50 |
| GHSA-GQ28-H5VG-8PRX CVE-2021-22112 | Privilege escalation in spring security | 高危 | Mavenorg.springframework.security:spring-security-bom+1 | 已审查 | 2021-05-10 23:22 | 2021-09-01 05:18 |
| GHSA-CPCR-74Q9-74GP CVE-2021-26074 | Broken Authentication in Atlassian Connect Spring Boot | 中危 | Mavencom.atlassian.connect:atlassian-connect-spring-boot-starter | 已审查 | 2021-05-10 23:19 | 2022-03-03 05:02 |
| GHSA-VWPG-F6GW-RJVF CVE-2021-22113 | Incorrect Authorization in Spring Cloud Netflix Zuul | 中危 | Mavenorg.springframework.cloud:spring-cloud-netflix-zuul | 已审查 | 2021-05-10 23:18 | 2021-05-08 02:52 |
| GHSA-JGCR-FG3G-QVW8 CVE-2021-29262 | Improper permission handling in Apache Solr | 高危 | Mavenorg.apache.solr:solr-core | 已审查 | 2021-05-10 23:18 | 2021-05-08 00:46 |
| GHSA-5PHW-3JRP-3VJ8 CVE-2021-27905 | Server-Side Request Forgery in Apache Solr | 高危 | Mavenorg.apache.solr:solr-parent | 已审查 | 2021-05-10 23:18 | 2021-04-14 23:52 |