检索 GitHub Advisory Database 中的已审查与未审查安全公告。
| 公告编号 | 摘要 | 级别 | 生态 / 软件包 | 审查状态 | 发布时间 | 修改时间 |
|---|---|---|---|---|---|---|
| GHSA-6QPR-9MC5-7GCH CVE-2020-28490 | Command Injection in async-git | 严重 | npmasync-git | 已审查 | 2021-04-13 03:50 | 2023-09-08 02:43 |
| GHSA-VH8F-XW5V-8993 CVE-2020-7786 | Command Injection in macfromip |
当前筛选结果 35,190 条 · 时间按北京时间显示
| 严重 |
npmmacfromip |
| 已审查 |
| 2021-04-13 03:01 |
| 2021-04-13 03:01 |
| GHSA-QR9H-VR5P-PWWX CVE-2020-27543 | Denial of Service (DoS) in restify-paginate | 高危 | npmrestify-paginate | 已审查 | 2021-04-13 02:59 | 2022-04-19 05:56 |
| GHSA-RJMF-P882-645M CVE-2021-20327 | mongodb-client-encryption vulnerable to Improper Certificate Validation | 中危 | npmmongodb-client-encryption | 已审查 | 2021-04-13 02:51 | 2024-09-17 06:04 |
| GHSA-6RV4-4QV6-88G2 CVE-2021-25913 | Prototype Pollution in set-or-get | 严重 | npmset-or-get | 已审查 | 2021-04-13 01:39 | 2021-04-13 01:39 |
| GHSA-23C7-6444-399M CVE-2021-21431 | Improper Input Validation in sopel-plugins.channelmgnt | 高危 | PyPIsopel-plugins.channelmgnt | 已审查 | 2021-04-09 23:42 | 2024-10-26 05:10 |
| GHSA-XGXC-V2QG-CHMH CVE-2021-28658 | Directory Traversal in Django | 中危 | PyPIDjango | 已审查 | 2021-04-09 02:11 | 2024-09-20 23:47 |
| GHSA-FXQ4-R6MR-9X64 | CSRF Vuln can expose user's QRcode | 低危 | PyPIFlask-Security-Too | 已审查 | 2021-04-09 00:46 | 2021-04-09 00:45 |
| GHSA-WGPJ-7C2J-VFJM CVE-2021-30185 | Indico Tampering with links (e.g. password reset) in sent emails | 高危 | PyPIindico | 已审查 | 2021-04-09 00:33 | 2024-09-24 00:09 |
| GHSA-244R-FCJ3-GHJQ CVE-2021-20289 | Exposure of class information in RESTEasy | 中危 | Mavenorg.jboss.resteasy:resteasy-core | 已审查 | 2021-04-08 05:51 | 2022-04-22 23:49 |
| GHSA-VCG8-98Q8-G7MJ CVE-2020-1740 | Exposure of Sensitive Information to an Unauthorized Actor and Insecure Temporary File in Ansible | 中危 | PyPIansible | 已审查 | 2021-04-08 05:47 | 2024-09-05 04:42 |
| GHSA-2C8C-84W2-J38J CVE-2020-28736 | Improper Restriction of XML External Entity Reference in Plone | 高危 | PyPIPlone+4 | 已审查 | 2021-04-08 05:14 | 2024-10-16 01:35 |
| GHSA-X7WF-5MJC-6X76 CVE-2020-28735 | SSRF attacks via tracebacks in Plone | 高危 | PyPIPlone+4 | 已审查 | 2021-04-08 05:13 | 2024-10-16 04:03 |
| GHSA-WQ6X-G685-W5F2 CVE-2020-28734 | Improper Restriction of XML External Entity Reference in Plone | 高危 | PyPIPlone+4 | 已审查 | 2021-04-08 05:13 | 2024-10-18 04:59 |
| GHSA-FJQ3-5PXW-4WJ4 CVE-2020-7965 | Cross-Site Request Forgery in Webargs | 高危 | PyPIwebargs | 已审查 | 2021-04-08 05:06 | 2024-11-19 23:34 |
| GHSA-FFW3-6MP6-JMVJ CVE-2021-26559 | Improper Access Control in Apache Airflow | 高危 | PyPIapache-airflow | 已审查 | 2021-04-08 05:05 | 2024-11-19 00:26 |
| GHSA-QHX9-7HX7-CP4R CVE-2020-28473 | bottle HTTP Request smuggling | 中危 | PyPIbottle | 已审查 | 2021-04-08 05:05 | 2024-09-13 22:20 |
| GHSA-CMC7-MFMR-XQRX CVE-2021-3116 | Logic error in authentication in proxy.py | 高危 | PyPIproxy.py | 已审查 | 2021-04-08 05:01 | 2024-10-22 05:02 |
| GHSA-35MM-CC6R-8FJP CVE-2020-8264 | Cross-site scripting in actionpack | 中危 | RubyGemsactionpack | 已审查 | 2021-04-08 04:58 | 2023-08-08 23:34 |
| GHSA-VF4W-FG7R-5V94 CVE-2021-30130 | Improper Certificate Validation in phpseclib | 高危 | Packagistphpseclib/phpseclib | 已审查 | 2021-04-08 04:56 | 2021-04-23 08:22 |
| GHSA-VGV5-CXVH-VFXH CVE-2020-26759 | Arbitrary code execution in clickhouse-driver | 严重 | PyPIclickhouse-driver | 已审查 | 2021-04-08 04:50 | 2024-09-13 23:17 |
| GHSA-P62G-JHG6-V3RQ CVE-2020-10684 | Code Injection, Race Condition, and Execution with Unnecessary Privileges in Ansible | 中危 | PyPIansible | 已审查 | 2021-04-08 04:37 | 2024-11-19 00:26 |
| GHSA-77G3-3J5W-64W4 CVE-2020-10685 | Exposure of Resource to Wrong Sphere and Insecure Temporary File in Ansible | 中危 | PyPIansible | 已审查 | 2021-04-08 04:36 | 2024-09-07 04:16 |
| GHSA-GFR2-QPXH-QJ9M CVE-2020-1735 | Path Traversal in Ansible | 中危 | PyPIansible | 已审查 | 2021-04-08 04:35 | 2024-09-10 05:18 |
| GHSA-86HP-CJ9J-33VV CVE-2020-1753 | Insertion of Sensitive Information into Log File, Invocation of Process Using Visible Sensitive Information, and Exposure of Sensitive Information to an Unauthorized Actor in Ansible | 中危 | PyPIansible | 已审查 | 2021-04-08 04:33 | 2024-09-10 05:23 |