检索 GitHub Advisory Database 中的已审查与未审查安全公告。
| 公告编号 | 摘要 | 级别 | 生态 / 软件包 | 审查状态 | 发布时间 | 修改时间 |
|---|---|---|---|---|---|---|
| GHSA-5Q58-X5H2-V5RX | Authenticated Privilege Escalation | 低危 | Packagistshopware/core+1 | 已审查 | 2020-12-22 02:01 | 2020-12-22 01:43 |
| GHSA-WVCV-832Q-FJG7 CVE-2020-26263 | RSA weakness in tslite-ng |
当前筛选结果 35,190 条 · 时间按北京时间显示
| 高危 |
PyPItlslite-ng |
| 已审查 |
| 2020-12-22 00:56 |
| 2024-11-14 07:01 |
| GHSA-4CCH-WXPW-8P28 CVE-2020-26258 | Server-Side Forgery Request can be activated unmarshalling with XStream | 中危 | Mavencom.thoughtworks.xstream:xstream | 已审查 | 2020-12-22 00:28 | 2025-01-16 05:31 |
| GHSA-JFVX-7WRX-43FH CVE-2020-26259 | XStream vulnerable to an Arbitrary File Deletion on the local host when unmarshalling | 中危 | Mavencom.thoughtworks.xstream:xstream | 已审查 | 2020-12-22 00:28 | 2021-11-18 23:24 |
| GHSA-VQQX-JW6P-Q3RF CVE-2020-26227 | Cross-Site Scripting in Fluid view helpers | 中危 | Packagisttypo3/cms+1 | 已审查 | 2020-12-22 00:28 | 2021-01-08 06:34 |
| GHSA-5FW9-FQ32-WV5P CVE-2020-7789 | OS Command Injection in node-notifier | 中危 | npmnode-notifier | 已审查 | 2020-12-22 00:04 | 2020-12-22 00:03 |
| GHSA-63Q7-H895-M982 CVE-2020-26870 | Cross-site Scripting in dompurify | 中危 | npmdompurify | 已审查 | 2020-12-19 06:51 | 2022-04-29 01:58 |
| GHSA-P9J6-4PJR-GP48 CVE-2020-35460 | MPXJ path Traversal vulnerability | 中危 | Mavennet.sf.mpxj:mpxj | 已审查 | 2020-12-19 02:28 | 2022-08-12 00:59 |
| GHSA-45Q2-34RF-MR94 CVE-2020-35149 | Code Injection in mquery | 中危 | npmmquery | 已审查 | 2020-12-19 02:23 | 2020-12-18 06:54 |
| GHSA-FFXG-XM4W-3WG9 CVE-2020-28440 | Command Injection in corenlp-js-interface | 严重 | npmcorenlp-js-interface | 已审查 | 2020-12-19 02:23 | 2020-12-18 06:23 |
| GHSA-6R3P-FCVM-XH7C CVE-2020-17513 | SSRF vulnerability in Apache Airflow | 中危 | PyPIapache-airflow | 已审查 | 2020-12-18 05:00 | 2024-09-12 05:08 |
| GHSA-CVCQ-GMC3-Q6M8 CVE-2020-17511 | Apache Airflow logs passwords in plaintext | 低危 | PyPIapache-airflow | 已审查 | 2020-12-18 05:00 | 2024-09-12 02:13 |
| GHSA-W5MP-8P8W-MHH8 CVE-2020-7781 | Command injection in connection-tester | 严重 | npmconnection-tester | 已审查 | 2020-12-18 05:00 | 2021-01-08 06:35 |
| GHSA-M7J4-FHG6-XF5V CVE-2020-28458 | datatables.net vulnerable to Prototype Pollution due to incomplete fix | 高危 | npmdatatables.net | 已审查 | 2020-12-18 05:00 | 2024-06-22 05:33 |
| GHSA-M57P-P67H-MQ74 CVE-2020-26274 | Command Injection Vulnerability in systeminformation | 中危 | npmsysteminformation | 已审查 | 2020-12-17 03:25 | 2020-12-17 03:24 |
| GHSA-JC84-3G44-WF2Q CVE-2019-10775 | Denial of Service in ecstatic | 中危 | npmecstatic | 已审查 | 2020-12-16 00:52 | 2020-12-16 00:52 |
| GHSA-HFVC-G252-RP4G CVE-2020-7791 | Denial of Service in i18n | 高危 | NuGeti18n | 已审查 | 2020-12-15 03:50 | 2022-09-08 22:04 |
| GHSA-CVMR-6428-87W9 | Cross-Site Scripting in Grav | 中危 | Packagistgetgrav/grav | 已审查 | 2020-12-11 07:13 | 2020-12-11 07:12 |
| GHSA-Q263-FVXM-M5MW CVE-2020-26271 | Heap out of bounds access in MakeEdge in TensorFlow | 中危 | PyPItensorflow+2 | 已审查 | 2020-12-11 03:07 | 2024-10-31 05:25 |
| GHSA-M648-33QF-V3GP CVE-2020-26270 | CHECK-fail in LSTM with zero-length input in TensorFlow | 中危 | PyPItensorflow+2 | 已审查 | 2020-12-11 03:07 | 2024-10-29 04:08 |
| GHSA-HHVC-G5HV-48C6 CVE-2020-26268 | Write to immutable memory region in TensorFlow | 中危 | PyPItensorflow+2 | 已审查 | 2020-12-11 03:07 | 2024-10-29 04:04 |
| GHSA-C9F3-9WFR-WGH7 CVE-2020-26267 | Lack of validation in data format attributes in TensorFlow | 低危 | PyPItensorflow+2 | 已审查 | 2020-12-11 03:07 | 2024-10-29 04:02 |
| GHSA-QHXX-J73R-QPM2 CVE-2020-26266 | Uninitialized memory access in TensorFlow | 中危 | PyPItensorflow+2 | 已审查 | 2020-12-11 03:07 | 2024-10-29 03:57 |
| GHSA-QQGX-2P2H-9C37 CVE-2020-7788 | ini before 1.3.6 vulnerable to Prototype Pollution via ini.parse | 高危 | npmini | 已审查 | 2020-12-11 00:53 | 2022-12-03 11:55 |
| GHSA-RCJJ-H6GH-JF3R CVE-2020-17521 | Information Disclosure in Apache Groovy | 中危 | Mavenorg.codehaus.groovy:groovy+1 | 已审查 | 2020-12-10 03:03 | 2024-10-18 00:18 |