检索 GitHub Advisory Database 中的已审查与未审查安全公告。
| 公告编号 | 摘要 | 级别 | 生态 / 软件包 | 审查状态 | 发布时间 | 修改时间 |
|---|---|---|---|---|---|---|
| GHSA-H5G2-38X9-4GV3 CVE-2016-10173 | archive-tar-minitar and minitar vulnerable to Path Traversal | 高危 | RubyGemsarchive-tar-minitar+1 | 已审查 | 2017-10-25 02:33 | 2023-09-06 05:02 |
| GHSA-GVCJ-PFQ2-WXJ7 CVE-2016-1202 |
当前筛选结果 35,190 条 · 时间按北京时间显示
| 高危 |
npmelectron |
| 已审查 |
| 2017-10-25 02:33 |
| 2021-09-13 20:46 |
| GHSA-GCQQ-W6GR-H9J9 CVE-2017-5946 | Directory traversal vulnerability in RubyZip | 严重 | RubyGemsrubyzip | 已审查 | 2017-10-25 02:33 | 2023-01-27 04:55 |
| GHSA-FFPV-C4HM-3X6V CVE-2016-0751 | actionpack is vulnerable to denial of service via a crafted HTTP Accept header | 高危 | RubyGemsactionpack | 已审查 | 2017-10-25 02:33 | 2023-08-01 05:08 |
| GHSA-F7F4-5W9J-23P2 CVE-2016-10194 | festivaltts4r allows arbitrary command execution | 严重 | RubyGemsfestivaltts4r | 已审查 | 2017-10-25 02:33 | 2023-01-26 07:16 |
| GHSA-F522-FFG8-J8R6 CVE-2016-2537 | Regular Expression Denial of Service in is-my-json-valid | 高危 | npmis-my-json-valid | 已审查 | 2017-10-25 02:33 | 2025-10-18 01:50 |
| GHSA-C92M-RRRC-Q5WF CVE-2016-3693 | safemode gem allows context-dependent attackers to obtain sensitive information via the inspect method | 高危 | RubyGemssafemode | 已审查 | 2017-10-25 02:33 | 2023-09-06 05:11 |
| GHSA-87VV-R9J6-G5QV CVE-2016-4055 | Regular Expression Denial of Service in moment | 中危 | npmmoment | 已审查 | 2017-10-25 02:33 | 2022-06-07 22:31 |
| GHSA-78RC-8C29-P45G CVE-2016-2098 | actionpack allows remote code execution via application's unrestricted use of render method | 高危 | RubyGemsactionpack | 已审查 | 2017-10-25 02:33 | 2023-07-04 02:58 |
| GHSA-6H88-QJPV-P32M CVE-2016-7798 | OpenSSL gem for Ruby using inadequate encryption strength | 高危 | RubyGemsopenssl | 已审查 | 2017-10-25 02:33 | 2022-04-26 00:33 |
| GHSA-5VX5-9Q73-WGP4 CVE-2017-7540 | Safemode Gem Has Incomplete List of Disallowed Inputs | 严重 | RubyGemssafemode | 已审查 | 2017-10-25 02:33 | 2023-09-06 05:30 |
| GHSA-543V-GJ2C-R3CH CVE-2016-0753 | activemodel contains Improper Input Validation | 中危 | RubyGemsactivemodel | 已审查 | 2017-10-25 02:33 | 2023-07-01 05:32 |
| GHSA-4JM3-PFPF-H54P CVE-2016-10193 | espeak-ruby allows arbitrary command execution | 严重 | RubyGemsespeak-ruby | 已审查 | 2017-10-25 02:33 | 2023-01-26 06:57 |
| GHSA-3M6R-39P3-JQ25 CVE-2016-6582 | Doorkeeper is vulnerable to replay attacks | 严重 | RubyGemsdoorkeeper | 已审查 | 2017-10-25 02:33 | 2022-04-26 00:34 |
| GHSA-2FQV-H3R5-M4VF CVE-2017-1000006 | Cross Site Scripting (XSS) in plotly.js | 中危 | npmplotly.js | 已审查 | 2017-10-25 02:33 | 2021-08-31 05:12 |