检索 GitHub Advisory Database 中的已审查与未审查安全公告。
| 公告编号 | 摘要 | 级别 | 生态 / 软件包 | 审查状态 | 发布时间 | 修改时间 |
|---|---|---|---|---|---|---|
| GHSA-8GWJ-8HXC-285W CVE-2021-23509 | Prototype Pollution in json-ptr | 中危 | npmjson-ptr | 已审查 | 2021-11-09 01:43 | 2021-11-09 01:43 |
| GHSA-V5VG-G7RQ-363W CVE-2021-23820 | Prototype Pollution in json-pointer |
当前筛选结果 366,391 条 · 时间按北京时间显示
npmjson-pointer |
| 已审查 |
| 2021-11-09 01:40 |
| 2022-07-16 04:23 |
| GHSA-G2Q5-5433-RHRF | Embedded malware in rc | 严重 | npmrc | 已审查 | 2021-11-05 00:24 | 2022-09-08 06:17 |
| GHSA-73QR-PFMQ-6RP8 | Embedded malware in coa | 严重 | npmcoa | 已审查 | 2021-11-05 00:22 | 2022-09-08 06:16 |
| GHSA-P49H-HJVM-JG3H CVE-2020-5312 | PCX P mode buffer overflow in Pillow | 严重 | PyPIpillow | 已审查 | 2021-11-04 02:05 | 2024-10-08 21:03 |
| GHSA-3XV8-3J54-HGRP CVE-2020-10378 | Out-of-bounds read in Pillow | 高危 | PyPIpillow | 已审查 | 2021-11-04 02:04 | 2024-10-10 04:52 |
| GHSA-VCQG-3P29-XW73 CVE-2020-5310 | Integer overflow in Pillow | 严重 | PyPIpillow | 已审查 | 2021-11-04 02:04 | 2024-10-08 21:03 |
| GHSA-HGC3-HP6X-WPGX CVE-2021-3840 | Antilles Dependency Confusion Vulnerability | 高危 | PyPIantilles-tools | 已审查 | 2021-11-04 01:36 | 2024-09-05 04:58 |
| GHSA-V935-PQMR-G8V9 | Unexpected panics in num-bigint | 中危 | crates.ionum-bigint | 已审查 | 2021-11-04 01:36 | 2021-11-03 23:02 |
| GHSA-QGMG-GPPG-76G5 CVE-2021-3765 | Inefficient Regular Expression Complexity in validator.js | 中危 | npmvalidator | 已审查 | 2021-11-04 01:34 | 2021-11-03 22:46 |
| GHSA-X24J-87X9-JVV5 CVE-2021-25973 | Publify `guest` role users can self-register even when the admin does not allow it | 中危 | RubyGemspublify_core | 已审查 | 2021-11-04 01:34 | 2022-08-12 06:06 |
| GHSA-93C4-VF86-3RJ7 CVE-2021-33611 | Reflected cross-site scripting in vaadin-menu-bar webjar resources in Vaadin 14 | 中危 | Mavencom.vaadin:vaadin-bom+1 | 已审查 | 2021-11-04 01:33 | 2021-11-05 01:03 |
| GHSA-7RQ6-7GV8-C37H CVE-2021-41238 | Missing Authorization with Default Settings in Dashboard UI | 高危 | NuGetHangfire.Core | 已审查 | 2021-11-04 01:30 | 2021-11-03 22:35 |
| GHSA-6MCM-J9CJ-3VC3 CVE-2021-41973 | Infinite loop in Apache MINA | 中危 | Mavenorg.apache.mina:mina-core | 已审查 | 2021-11-04 01:30 | 2021-11-03 22:49 |
| GHSA-93G4-3PHC-G4XW CVE-2021-27644 | SQL injection in Apache DolphinScheduler | 高危 | Mavenorg.apache.dolphinscheduler:dolphinscheduler-server | 已审查 | 2021-11-04 01:30 | 2021-11-03 22:48 |
| GHSA-HF9P-9R39-R2H3 CVE-2020-11476 | Unrestricted Uploads in Concrete5 | 高危 | Packagistconcrete5/concrete5 | 已审查 | 2021-11-04 01:29 | 2021-11-03 02:39 |
| GHSA-R8HM-W5F7-WJ39 CVE-2024-21910 | Cross-site scripting vulnerability in TinyMCE plugins | 中危 | npmdjango-tinymce+3 | 已审查 | 2021-11-02 23:42 | 2024-01-04 06:33 |
| GHSA-4QWQ-Q4PR-RR7R CVE-2020-36378 | Vulnerability in packageCmd function leads to arbitrary code execution via filePath parameters | 严重 | npmaaptjs | 已审查 | 2021-11-02 23:42 | 2022-05-04 11:45 |
| GHSA-9CQ3-FJ2H-GGJ5 CVE-2020-36379 | Vulnerability in remove function leads to arbitrary code execution via filePath parameters | 严重 | npmaaptjs | 已审查 | 2021-11-02 23:42 | 2022-05-04 09:52 |
| GHSA-R496-7HGP-53WF CVE-2020-36377 | Vulnerability in dump function leads to arbitrary code execution via filePath parameters | 严重 | npmaaptjs | 已审查 | 2021-11-02 23:42 | 2022-05-04 11:45 |
| GHSA-4G7X-7VGQ-3J28 CVE-2020-36376 | Vulnerability in list function leads to arbitrary code execution via filePath parameters | 严重 | npmaaptjs | 已审查 | 2021-11-02 23:42 | 2022-05-04 11:46 |
| GHSA-V899-28G4-QMH8 CVE-2020-26705 | XML External Entity vulnerability in Easy-XML | 高危 | PyPIeasy-xml | 已审查 | 2021-11-02 03:19 | 2024-11-19 00:26 |
| GHSA-VHFP-9WVJ-GWVG CVE-2020-25911 | XML External Entity vulnerability in MODX CMS | 严重 | Packagistmodx/revolution | 已审查 | 2021-11-02 03:19 | 2021-11-03 22:51 |
| GHSA-7FW7-GH23-F832 CVE-2020-36381 | Vulnerability in singleCrunch function leads to arbitrary code execution via filePath parameters | 严重 | npmaaptjs | 已审查 | 2021-11-02 03:19 | 2022-05-04 11:47 |
| GHSA-M7P2-GHFH-PJVX CVE-2020-36380 | Vulnerability in crunch function leads to arbitrary code execution via filePath parameters | 严重 | npmaaptjs | 已审查 | 2021-11-02 03:18 | 2022-05-04 11:44 |