检索 GitHub Advisory Database 中的已审查与未审查安全公告。
| 公告编号 | 摘要 | 级别 | 生态 / 软件包 | 审查状态 | 发布时间 | 修改时间 |
|---|---|---|---|---|---|---|
| GHSA-WX8Q-RGFR-CF6V CVE-2021-22565 | Insufficient Granularity of Access Control in github.com/google/exposure-notifications-verification-server | 中危 | Gogithub.com/google/exposure-notifications-verification-server | 已审查 | 2021-11-11 02:20 | 2021-12-11 02:30 |
| GHSA-9J9M-8WJC-FF96 CVE-2021-25979 |
当前筛选结果 366,391 条 · 时间按北京时间显示
| 严重 |
npmapostrophe |
| 已审查 |
| 2021-11-11 01:02 |
| 2022-08-23 06:01 |
| GHSA-3RCW-9P9X-582V CVE-2021-41228 | Code injection in `saved_model_cli` | 中危 | PyPItensorflow+2 | 已审查 | 2021-11-11 00:54 | 2024-11-14 06:06 |
| GHSA-J6WP-3859-VXFG CVE-2021-41230 | OIDC claims not updated from Identity Provider in Pomerium | 中危 | Gogithub.com/pomerium/pomerium | 已审查 | 2021-11-11 00:52 | 2021-11-09 05:37 |
| GHSA-GP2F-254M-RH32 CVE-2021-41251 | Unauthorized access to data in @sap-cloud-sdk/core | 中危 | npm@sap-cloud-sdk/core | 已审查 | 2021-11-11 00:51 | 2021-11-09 05:31 |
| GHSA-8C5P-4362-9333 CVE-2021-3924 | Path traversal in grav | 高危 | Packagistgetgrav/grav | 已审查 | 2021-11-11 00:48 | 2021-11-09 05:30 |
| GHSA-4R9C-JGHC-CX5M CVE-2021-25978 | Cross-site Scripting in apostrophe | 中危 | npmapostrophe | 已审查 | 2021-11-11 00:45 | 2021-11-09 05:26 |
| GHSA-JCJX-C3J3-44PR | Insufficient Session Expiration in @cyyynthia/tokenize | 高危 | npm@cyyynthia/tokenize | 已审查 | 2021-11-11 00:44 | 2021-11-09 05:09 |
| GHSA-3V56-Q6R6-4GCW CVE-2021-41170 | Insecure Inherited Permissions in neoan3-apps/template | 高危 | Packagistneoan3-apps/template | 已审查 | 2021-11-11 00:41 | 2021-11-09 05:04 |
| GHSA-35M5-8CVJ-8783 CVE-2021-39182 | Improper hashing in enrocrypt | 高危 | PyPIenrocrypt | 已审查 | 2021-11-11 00:28 | 2024-09-21 00:50 |
| GHSA-C9X9-XV66-XP3V CVE-2020-14389 | Improper privilege management in Keycloak | 高危 | Mavenorg.keycloak:keycloak-core | 已审查 | 2021-11-10 23:30 | 2021-11-09 02:54 |
| GHSA-9WX7-JRVC-28MM | Signature verification vulnerability in Stark Bank ecdsa libraries | 高危 | Mavencom.starkbank:ecdsa-java+1 | 已审查 | 2021-11-09 05:51 | 2021-11-09 05:34 |
| GHSA-26CM-QRC6-MFGJ CVE-2021-41232 | Improper Neutralization of Special Elements used in an LDAP Query in stevenweathers/thunderdome-planning-poker | 高危 | Gogithub.com/stevenweathers/thunderdome-planning-poker | 已审查 | 2021-11-09 02:16 | 2024-02-09 06:24 |
| GHSA-3J9M-HCV9-RPJ8 CVE-2021-41174 | XSS vulnerability allowing arbitrary JavaScript execution | 中危 | npm@grafana/data | 已审查 | 2021-11-09 02:13 | 2021-11-29 23:05 |
| GHSA-P6RW-44Q7-3FW4 CVE-2021-41134 | Stored XSS in Jupyter nbdime | 中危 | npmnbdime+1 | 已审查 | 2021-11-09 02:09 | 2024-10-02 03:31 |
| GHSA-QM7X-RC44-RRQW | Cross-site Scripting Vulnerability in GraphQL Playground (distributed by Apollo Server) | 高危 | npmapollo-server | 已审查 | 2021-11-09 02:07 | 2021-11-05 03:46 |
| GHSA-59R9-6JP6-JCM7 CVE-2021-41249 | XSS vulnerability in GraphQL Playground from untrusted schemas | 高危 | npmgraphql-playground-react | 已审查 | 2021-11-09 02:06 | 2021-11-05 03:36 |
| GHSA-X4R7-M2Q9-69C8 CVE-2021-41248 | GraphiQL introspection schema template injection attack | 高危 | npmgraphiql | 已审查 | 2021-11-09 02:03 | 2021-11-05 03:36 |
| GHSA-CW7P-Q79F-M2V7 CVE-2021-41247 | incomplete JupyterHub logout with simultaneous JupyterLab sessions | 中危 | PyPIjupyterhub | 已审查 | 2021-11-09 02:02 | 2024-09-25 04:50 |
| GHSA-862G-9H5M-M3QV CVE-2021-3917 | coreos-installer < 0.10.0 writes world-readable Ignition config to installed system | 中危 | crates.iocoreos-installer | 已审查 | 2021-11-09 02:01 | 2022-09-08 22:25 |
| GHSA-46RX-6JG9-4FH8 CVE-2021-43324 | Cross-site Scripting in LibreNMS | 中危 | Packagistlibrenms/librenms | 已审查 | 2021-11-09 01:59 | 2021-11-09 01:58 |
| GHSA-6G47-63MV-QPGH CVE-2021-23624 | Prototype Pollution in dotty | 中危 | npmdotty | 已审查 | 2021-11-09 01:55 | 2021-11-05 01:01 |
| GHSA-MW6Q-98MP-G8G8 CVE-2021-23472 | Cross-site Scripting in bootstrap-table | 低危 | npmbootstrap-table | 已审查 | 2021-11-09 01:54 | 2023-01-24 02:49 |
| GHSA-W4V7-HWX7-9929 CVE-2021-23784 | Cross-site Scripting in tempura | 中危 | npmtempura | 已审查 | 2021-11-09 01:50 | 2021-11-09 01:49 |
| GHSA-282F-QQGM-C34Q CVE-2021-23807 | Prototype Pollution in node-jsonpointer | 中危 | npmjsonpointer+1 | 已审查 | 2021-11-09 01:44 | 2025-03-06 03:06 |