检索 GitHub Advisory Database 中的已审查与未审查安全公告。
| 公告编号 | 摘要 | 级别 | 生态 / 软件包 | 审查状态 | 发布时间 | 修改时间 |
|---|---|---|---|---|---|---|
| GHSA-8W3J-G983-8JH5 CVE-2019-1020013 | Sensitive Data Exposure in parse-server | 中危 | npmparse-server | 已审查 | 2019-07-11 22:23 | 2021-06-11 23:37 |
| GHSA-JF85-CPCP-J695 CVE-2019-10744 | Prototype Pollution in lodash |
当前筛选结果 35,190 条 · 时间按北京时间显示
| 严重 |
npmlodash+4 |
| 已审查 |
| 2019-07-11 03:45 |
| 2025-08-13 05:43 |
| GHSA-5H5R-FFC4-C455 CVE-2019-13354 | strong_password Ruby gem malicious version causing Remote Code Execution vulnerability | 严重 | RubyGemsstrong_password | 已审查 | 2019-07-09 04:32 | 2023-03-07 06:51 |
| GHSA-C9JJ-3WVG-Q65H CVE-2019-0228 | Vulnerability that affects org.apache.pdfbox:pdfbox | 严重 | Mavenorg.apache.pdfbox:pdfbox | 已审查 | 2019-07-06 05:12 | 2021-06-16 01:00 |
| GHSA-94HM-8Q65-RMXM CVE-2017-11430 | OmniAuth-SAML authentication bypass via incorrect XML canonicalization and DOM traversal | 高危 | RubyGemsomniauth-saml | 已审查 | 2019-07-06 05:11 | 2023-08-29 22:57 |
| GHSA-X2FR-V8WF-8WWV CVE-2017-11428 | Ruby-SAML Improper Authentication vulnerability | 高危 | RubyGemsruby-saml | 已审查 | 2019-07-06 05:11 | 2023-01-24 22:59 |
| GHSA-J8J8-348V-WFM3 CVE-2017-11427 | Python-saml allows manipulation of SAML data without invalidation of cryptographic signature | 高危 | PyPIpython-saml | 已审查 | 2019-07-06 05:11 | 2024-10-26 05:17 |
| GHSA-5P5W-J3G7-W4WV CVE-2017-11429 | Authentication bypass via incorrect XML canonicalization and DOM traversal in saml2-js | 中危 | npmsaml2-js | 已审查 | 2019-07-06 05:11 | 2021-06-11 22:24 |
| GHSA-958R-G534-CCMR CVE-2019-9845 | MadsKristensen.AspNetCore.Miniblog subject to Improper Input Validation | 严重 | NuGetMadsKristensen.AspNetCore.Miniblog | 已审查 | 2019-07-06 05:11 | 2022-09-17 08:54 |
| GHSA-FFQ8-576R-V26G CVE-2016-6581 | HPACK Denial of Service vulnerability (HPACK Bomb) | 高危 | PyPIhpack | 已审查 | 2019-07-06 05:11 | 2024-09-21 05:39 |
| GHSA-X64G-WJMW-W328 CVE-2015-5306 | Injection vulnerability that affects ironic-discoverd | 严重 | PyPIironic-inspector+1 | 已审查 | 2019-07-06 05:10 | 2024-09-25 02:37 |
| GHSA-H582-2PCH-3XV3 CVE-2015-5143 | Django Denial-of-service by filling session store | 高危 | PyPIDjango | 已审查 | 2019-07-06 05:10 | 2024-09-18 22:45 |
| GHSA-H595-8PW6-5Q6V CVE-2018-15811 | Inadequate Encryption Strength in DotNetNuke | 高危 | NuGetDotNetNuke.Core | 已审查 | 2019-07-06 05:08 | 2025-10-23 01:43 |
| GHSA-PF46-GQG9-J3V3 CVE-2018-15812 | Insufficient Entropy in DotNetNuke | 高危 | NuGetDotNetNuke.Core | 已审查 | 2019-07-06 05:08 | 2021-08-18 00:06 |
| GHSA-XX3H-J3CX-8QFJ CVE-2018-18326 | Insufficient Entropy in DotNetNuke | 高危 | NuGetDotNetNuke.Core | 已审查 | 2019-07-06 05:08 | 2021-08-17 23:50 |
| GHSA-J3G9-6FX5-GJV7 CVE-2018-18325 | Inadequate Encryption Strength in DotNetNuke | 高危 | NuGetDotNetNuke.Core | 已审查 | 2019-07-06 05:08 | 2025-10-23 01:43 |
| GHSA-MCG9-64CP-XWP7 CVE-2019-9827 | Server-Side Request Forgery in Hawt Hawtio | 严重 | Mavenio.hawt:hawtio-core | 已审查 | 2019-07-06 05:08 | 2021-08-17 23:47 |
| GHSA-4XCV-9JJX-GFJ3 | Denial of Service in mem | 中危 | npmmem | 已审查 | 2019-07-06 05:07 | 2021-08-17 23:44 |
| GHSA-7V35-QWWJ-P98G CVE-2019-9843 | Improper Restriction of XML External Entity Reference in DiffPlug Spotless | 高危 | Mavencom.diffplug.spotless:spotless-maven-plugin+1 | 已审查 | 2019-07-06 05:07 | 2022-11-18 02:10 |
| GHSA-MPH4-VHRX-MV67 CVE-2019-12384 | Deserialization of Untrusted Data in FasterXML jackson-databind | 中危 | Mavencom.fasterxml.jackson.core:jackson-databind | 已审查 | 2019-07-06 05:07 | 2024-03-15 09:04 |
| GHSA-G8M7-QHV7-9H5X | Path Traversal in serve-here.js | 高危 | npmserve-here | 已审查 | 2019-07-06 05:07 | 2021-09-23 02:35 |
| GHSA-H92M-42H4-82F6 CVE-2019-16791 | postfix-mta-sts-resolver Algorithm Downgrade vulnerability | 高危 | PyPIpostfix-mta-sts-resolver | 已审查 | 2019-07-06 05:06 | 2024-10-22 04:07 |
| GHSA-6C7V-2F49-8H26 CVE-2019-12781 | Django Incorrect HTTP detection with reverse-proxy connecting via HTTPS | 中危 | PyPIDjango | 已审查 | 2019-07-04 04:37 | 2024-09-19 00:15 |
| GHSA-P3W6-JCG4-52XH CVE-2019-13177 | Improper Verification of Cryptographic Signature in django-rest-registration | 严重 | PyPIdjango-rest-registration | 已审查 | 2019-07-02 23:43 | 2024-09-17 05:58 |
| GHSA-XFHH-RX56-RXCR CVE-2019-1020001 | Path Traversal vulnerability that affects yard | 高危 | RubyGemsyard | 已审查 | 2019-07-02 23:28 | 2024-03-07 08:30 |