检索 GitHub Advisory Database 中的已审查与未审查安全公告。
| 公告编号 | 摘要 | 级别 | 生态 / 软件包 | 审查状态 | 发布时间 | 修改时间 |
|---|---|---|---|---|---|---|
| GHSA-CF2J-VF36-C6W8 CVE-2021-41189 | Communities and collections administrators can escalate their privilege up to system administrator | 高危 | Mavenorg.dspace:dspace-api | 已审查 | 2021-11-02 03:18 | 2021-10-30 01:26 |
| GHSA-5JXC-HMQF-3F73 CVE-2021-3904 | Cross-Site Scripting in grav |
当前筛选结果 366,391 条 · 时间按北京时间显示
| 中危 |
Packagistgetgrav/grav |
| 已审查 |
| 2021-11-02 03:17 |
| 2021-11-01 22:06 |
| GHSA-HWHF-64MH-R662 CVE-2021-41186 | ReDoS vulnerability in parser_apache2 | 中危 | RubyGemsfluentd | 已审查 | 2021-11-02 03:16 | 2021-11-05 01:05 |
| GHSA-F5F7-6478-QM6P CVE-2021-25741 | Files or Directories Accessible to External Parties in kubernetes | 高危 | Gok8s.io/kubernetes | 已审查 | 2021-11-02 01:32 | 2021-11-02 01:26 |
| GHSA-PFJ7-W373-GQCH CVE-2021-3900 | Cross-Site Request Forgery in firefly-iii | 中危 | Packagistgrumpydictator/firefly-iii | 已审查 | 2021-10-29 07:14 | 2021-10-29 21:49 |
| GHSA-RQGP-CCPH-5W65 CVE-2021-3901 | Cross-Site Request Forgery in firefly-iii | 低危 | Packagistgrumpydictator/firefly-iii | 已审查 | 2021-10-29 07:14 | 2021-11-03 02:42 |
| GHSA-97X5-CC53-CV4V CVE-2020-22864 | Cross site scripting in froala-editor | 中危 | npmfroala-editor | 已审查 | 2021-10-29 07:14 | 2021-10-29 01:21 |
| GHSA-5XVC-VGMP-JGC3 CVE-2021-41194 | Improper Access Control in jupyterhub-firstuseauthenticator | 严重 | PyPIjupyterhub-firstuseauthenticator | 已审查 | 2021-10-29 07:13 | 2024-09-25 05:11 |
| GHSA-M836-GXWQ-J2PM | Improper Access Control in github.com/treeverse/lakefs | 中危 | Gogithub.com/treeverse/lakefs | 已审查 | 2021-10-29 00:27 | 2021-10-28 02:58 |
| GHSA-J8FQ-86C5-5V2R | Duplicate Advisory: Remote code execution in dask 已撤回 | 严重 | PyPIdask | 已审查 | 2021-10-28 02:53 | 2026-02-04 01:37 |
| GHSA-4P3X-8QW9-24W9 CVE-2021-41188 | Authenticated Stored XSS in shopware/shopware | 中危 | Packagistshopware/shopware | 已审查 | 2021-10-28 02:53 | 2021-10-27 01:56 |
| GHSA-JVJP-VH27-R9H5 CVE-2021-25977 | Cross-site Scripting in PiranhaCMS | 中危 | NuGetPiranha | 已审查 | 2021-10-28 02:53 | 2021-10-28 01:07 |
| GHSA-W729-7633-2FW5 CVE-2021-40865 | Deserialization of Untrusted Data leading to Remote Code Execution in Apache Storm | 严重 | Mavenorg.apache.storm:storm | 已审查 | 2021-10-28 02:52 | 2021-10-29 21:51 |
| GHSA-6768-MCJC-8223 CVE-2021-38294 | Command injection leading to Remote Code Execution in Apache Storm | 严重 | Mavenorg.apache.storm:storm | 已审查 | 2021-10-28 02:51 | 2022-10-19 23:36 |
| GHSA-J7QV-PGF6-HVH4 CVE-2021-41183 | XSS in `*Text` options of the Datepicker widget in jquery-ui | 中危 | Mavenjquery-ui+3 | 已审查 | 2021-10-26 22:55 | 2021-10-28 01:00 |
| GHSA-GPQQ-952Q-5327 CVE-2021-41184 | XSS in the `of` option of the `.position()` util in jquery-ui | 中危 | Mavenjquery-ui+3 | 已审查 | 2021-10-26 22:55 | 2025-11-05 03:36 |
| GHSA-9GJ3-HWP5-PMWC CVE-2021-41182 | XSS in the `altField` option of the Datepicker widget in jquery-ui | 中危 | Mavenjquery-ui+3 | 已审查 | 2021-10-26 22:55 | 2021-10-28 01:00 |
| GHSA-W7X8-CQ7R-G5G9 CVE-2021-33988 | Cross Site Scripting in Microweber | 中危 | Packagistmicroweber/microweber | 已审查 | 2021-10-26 03:43 | 2021-10-23 03:37 |
| GHSA-4286-H47H-M5V6 CVE-2021-41745 | Showdoc File Upload Vulnerability | 严重 | Packagistshowdoc/showdoc | 已审查 | 2021-10-26 03:43 | 2023-09-22 06:49 |
| GHSA-PPJ4-34RQ-V8J9 CVE-2021-42836 | github.com/tidwall/gjson Vulnerable to REDoS attack | 高危 | Gogithub.com/tidwall/gjson | 已审查 | 2021-10-26 03:43 | 2024-05-21 04:41 |
| GHSA-3374-7H99-XR85 CVE-2020-23049 | Cross-site scripting in forkcms | 中危 | Packagistforkcms/forkcms | 已审查 | 2021-10-26 03:43 | 2021-10-29 21:52 |
| GHSA-59HH-656J-3P7V CVE-2021-41173 | Geth Node Vulnerable to DoS via maliciously crafted p2p message | 中危 | Gogithub.com/ethereum/go-ethereum | 已审查 | 2021-10-26 03:42 | 2023-08-30 02:55 |
| GHSA-M49F-HCXP-6HM6 CVE-2021-41176 | pterodactyl/panel CSRF allowing an external page to trigger a user logout event | 低危 | Packagistpterodactyl/panel | 已审查 | 2021-10-26 03:42 | 2023-09-21 03:07 |
| GHSA-PJWM-RVH2-C87W CVE-2021-4229 | Embedded malware in ua-parser-js | 高危 | npmua-parser-js | 已审查 | 2021-10-23 04:38 | 2026-02-18 05:57 |
| GHSA-5H9G-X5RV-25WG CVE-2024-21908 | Cross-site scripting vulnerability in TinyMCE | 中危 | npmtinymce+2 | 已审查 | 2021-10-23 00:24 | 2024-01-04 06:34 |