检索 GitHub Advisory Database 中的已审查与未审查安全公告。
| 公告编号 | 摘要 | 级别 | 生态 / 软件包 | 审查状态 | 发布时间 | 修改时间 |
|---|---|---|---|---|---|---|
| GHSA-F39R-CPMJ-WHCG CVE-2021-23376 | Command Injection in ffmpegdotjs | 严重 | npmffmpegdotjs | 已审查 | 2021-05-06 23:55 | 2022-07-06 01:39 |
| GHSA-CQ77-8JPX-892G CVE-2021-23381 | Command Injection in killing |
当前筛选结果 35,190 条 · 时间按北京时间显示
| 高危 |
npmkilling |
| 已审查 |
| 2021-05-06 23:53 |
| 2022-07-06 01:39 |
| GHSA-R6FW-8M27-43C9 CVE-2021-23379 | Command injection in portkiller | 高危 | npmportkiller | 已审查 | 2021-05-06 23:53 | 2022-07-06 02:02 |
| GHSA-M8FM-MV5W-33PV CVE-2021-23375 | Command Injection in psnode | 高危 | npmpsnode | 已审查 | 2021-05-06 23:52 | 2022-07-06 02:00 |
| GHSA-QCG2-H349-VWM3 CVE-2021-31712 | Cross-site Scripting in React Draft Wysiwyg | 中危 | npmreact-draft-wysiwyg | 已审查 | 2021-05-06 23:52 | 2023-09-12 06:34 |
| GHSA-8QPM-5C82-RF96 CVE-2021-20085 | Prototype Pollution in backbone-query-parameters | 高危 | npmbackbone-query-parameters | 已审查 | 2021-05-06 23:52 | 2023-08-09 03:54 |
| GHSA-79JW-6WG7-R9G4 CVE-2021-29491 | Use of Potentially Dangerous Function in mixme | 高危 | npmmixme | 已审查 | 2021-05-06 23:45 | 2021-05-08 05:13 |
| GHSA-8J65-4PCQ-XQ95 CVE-2021-29489 | Options structure open to Cross-site Scripting if passed unfiltered | 高危 | npmhighcharts | 已审查 | 2021-05-06 23:45 | 2022-06-07 02:17 |
| GHSA-QRMM-W4V4-Q7F8 | Unauthorized access through URL manipulation | 高危 | PyPIdocassemble | 已审查 | 2021-05-06 23:27 | 2021-05-06 02:45 |
| GHSA-P826-8VHQ-H439 CVE-2021-31411 | Insecure temporary directory usage in frontend build functionality of Vaadin 14 and 15-19 | 高危 | Mavencom.vaadin:vaadin-bom | 已审查 | 2021-05-06 23:27 | 2021-05-20 01:41 |
| GHSA-C57F-4VP2-JQHM | Insecure temporary directory usage in frontend build functionality of Vaadin 14 and 15-19 | 中危 | Mavencom.vaadin:flow-server | 已审查 | 2021-05-06 23:27 | 2021-10-06 00:29 |
| GHSA-46F2-3V63-3XRP CVE-2021-28966 | Tempfile on Windows path traversal vulnerability | 高危 | RubyGemstmpdir | 已审查 | 2021-05-06 23:01 | 2022-08-16 04:01 |
| GHSA-7WJX-3G7J-8584 CVE-2021-22904 | Possible DoS Vulnerability in Action Controller Token Authentication | 高危 | RubyGemsactionpack | 已审查 | 2021-05-06 03:49 | 2023-08-09 00:06 |
| GHSA-HJG4-8Q5F-X6FM CVE-2021-22885 | Action Pack contains Information Disclosure / Unintended Method Execution vulnerability | 高危 | RubyGemsactionpack | 已审查 | 2021-05-06 03:49 | 2023-07-06 04:17 |
| GHSA-5HQ2-XF89-9JXQ CVE-2021-22903 | Possible Open Redirect Vulnerability in Action Pack | 中危 | RubyGemsactionpack | 已审查 | 2021-05-06 03:48 | 2023-08-08 23:56 |
| GHSA-G8WW-46X2-2P65 CVE-2021-22902 | Denial of Service in Action Dispatch | 高危 | RubyGemsactionpack | 已审查 | 2021-05-06 03:48 | 2023-08-08 23:37 |
| GHSA-7WPW-2HJM-89GP CVE-2020-28499 | Prototype Pollution in merge | 高危 | npmmerge | 已审查 | 2021-05-05 04:18 | 2024-02-14 06:31 |
| GHSA-H4J5-C7CJ-74XG CVE-2020-28502 | xmlhttprequest and xmlhttprequest-ssl vulnerable to Arbitrary Code Injection | 严重 | npmxmlhttprequest+1 | 已审查 | 2021-05-05 02:02 | 2023-09-09 03:46 |
| GHSA-4WHQ-R978-2X68 | Arbitrary code execution in ExifTool | 高危 | npmexiftool-vendored | 已审查 | 2021-05-05 01:43 | 2021-10-09 05:20 |
| GHSA-58QP-5328-V7MH CVE-2021-29486 | cumulative-distribution-function Infinite Loop vulnerability | 高危 | npmcumulative-distribution-function | 已审查 | 2021-05-05 01:43 | 2022-08-11 08:22 |
| GHSA-FCR8-6Q7R-M4WG CVE-2021-21264 | Bypass of fix for CVE-2020-26231, Twig sandbox escape | 中危 | Packagistoctober/cms | 已审查 | 2021-05-05 01:42 | 2022-10-20 21:56 |
| GHSA-M298-FH5C-JC66 CVE-2020-36326 | Object injection in PHPMailer/PHPMailer | 严重 | Packagistphpmailer/phpmailer | 已审查 | 2021-05-05 01:42 | 2026-07-21 21:42 |
| GHSA-C332-W4JM-55WV CVE-2021-31409 | Regular expression Denial of Service (ReDoS) in EmailValidator class in V7 compatibility module in Vaadin 8 | 高危 | Mavencom.vaadin:vaadin-compatibility-server | 已审查 | 2021-05-05 01:42 | 2021-05-01 01:43 |
| GHSA-XRX6-FMXQ-RJJ2 CVE-2020-25658 | Timing attacks in python-rsa | 高危 | PyPIrsa | 已审查 | 2021-05-01 01:35 | 2024-10-27 06:33 |
| GHSA-836C-XG97-8P4H CVE-2020-27197 | libtaxii Server-Side Request Forgery vulnerability | 严重 | PyPIlibtaxii | 已审查 | 2021-05-01 01:34 | 2024-09-28 05:39 |