检索 GitHub Advisory Database 中的已审查与未审查安全公告。
| 公告编号 | 摘要 | 级别 | 生态 / 软件包 | 审查状态 | 发布时间 | 修改时间 |
|---|---|---|---|---|---|---|
| GHSA-6GJF-7W99-J7X7 CVE-2021-41126 | Deleted Admin Can Sign In to Admin Interface | 高危 | Packagistoctober/october+1 | 已审查 | 2021-10-07 01:46 | 2022-10-14 02:02 |
| GHSA-JWQP-28GF-P498 CVE-2021-41125 |
当前筛选结果 366,391 条 · 时间按北京时间显示
| 中危 |
PyPIScrapy |
| 已审查 |
| 2021-10-07 01:46 |
| 2024-10-27 06:53 |
| GHSA-MCWM-2WMC-6HV4 CVE-2021-31957 | ASP.NET Core Denial of Service Vulnerability 已撤回 | 高危 | NuGetMicrosoft.NETCore.App.Ref | 已审查 | 2021-10-06 08:23 | 2021-10-06 08:23 |
| GHSA-P6VG-P826-QP3V CVE-2021-22963 | URL Redirection to Untrusted Site ('Open Redirect') in fastify-static | 中危 | npmfastify-static | 已审查 | 2021-10-06 04:24 | 2021-10-21 23:01 |
| GHSA-7534-MM45-C74V CVE-2021-34552 | Buffer Overflow in Pillow | 严重 | PyPIpillow | 已审查 | 2021-10-06 04:24 | 2024-10-10 05:03 |
| GHSA-69J6-29VR-P3J9 CVE-2021-39226 | Authentication bypass for viewing and deletions of snapshots | 高危 | Gogithub.com/grafana/grafana | 已审查 | 2021-10-06 04:24 | 2025-10-23 03:08 |
| GHSA-657M-V5VM-F6RW CVE-2021-41113 | Cross-Site-Request-Forgery in Backend | 高危 | Packagisttypo3/cms+1 | 已审查 | 2021-10-06 04:23 | 2024-02-05 19:18 |
| GHSA-M2JH-FXW4-GPHM CVE-2021-41114 | HTTP Host Header Injection | 中危 | Packagisttypo3/cms+1 | 已审查 | 2021-10-06 04:23 | 2021-10-06 02:47 |
| GHSA-FRQG-7G38-6GCF CVE-2021-41116 | Improper escaping of command arguments on Windows leading to command injection | 高危 | Packagistcomposer/composer | 已审查 | 2021-10-06 04:23 | 2021-10-12 02:39 |
| GHSA-J28R-J54M-GPC4 CVE-2021-22557 | Code Injection in SLO Generator | 中危 | PyPIslo-generator | 已审查 | 2021-10-06 01:53 | 2024-10-23 00:34 |
| GHSA-CR3F-R24J-3CHW CVE-2021-40325 | Cobbler before 3.3.0 allows authorization bypass for modification of settings. | 高危 | PyPIcobbler | 已审查 | 2021-10-06 01:53 | 2024-09-14 01:50 |
| GHSA-CPQF-3C3R-C9G2 CVE-2021-40323 | Cobbler before 3.3.0 allows log poisoning | 高危 | PyPIcobbler | 已审查 | 2021-10-06 01:53 | 2024-09-13 23:11 |
| GHSA-4CFR-GJFX-FJ3X CVE-2021-40324 | Cobbler before 3.3.0 allows arbitrary file write operations via upload_log_data. | 高危 | PyPIcobbler | 已审查 | 2021-10-06 01:53 | 2024-09-14 01:50 |
| GHSA-C2H3-6MXW-7MVQ CVE-2021-41103 | Insufficiently restricted permissions on plugin directories | 中危 | Gogithub.com/containerd/containerd | 已审查 | 2021-10-05 04:14 | 2021-10-16 01:31 |
| GHSA-XPV2-8PPJ-79HH CVE-2021-41862 | Expression injection in AviatorScript | 严重 | Mavencom.googlecode.aviator:aviator | 已审查 | 2021-10-05 04:14 | 2024-02-21 04:07 |
| GHSA-5VFX-8W6M-H3V4 CVE-2021-41129 | Pterodactyl Panel vulnerable to authentication bypass due to improper user-provided security token verification | 高危 | Packagistpterodactyl/panel | 已审查 | 2021-10-05 04:14 | 2022-08-16 04:12 |
| GHSA-X2GW-85W6-FJJW CVE-2021-40926 | Cross-site scripting in demos/demo.mysqli.php in getID3 | 中危 | Packagistjames-heinrich/getid3 | 已审查 | 2021-10-05 04:13 | 2021-10-06 00:02 |
| GHSA-GXMC-5WJ3-JX64 CVE-2021-41467 | Cross-site scripting in application/controllers/dropbox.php in JustWriting | 中危 | Packagisthjue/justwriting | 已审查 | 2021-10-05 04:13 | 2021-10-06 00:02 |
| GHSA-M72G-42Q6-GVC2 CVE-2020-20129 | Cross-site Scripting in LaraCMS | 中危 | Packagistwanglelecc/laracms | 已审查 | 2021-10-05 04:13 | 2021-10-04 22:22 |
| GHSA-XRPJ-F9V6-2332 | CSV injection in Craft CMS 已撤回 | 高危 | Packagistcraftcms/cms | 已审查 | 2021-10-05 04:12 | 2021-10-19 03:08 |
| GHSA-9378-F4V7-JGM4 CVE-2021-41616 | Deserialization of Untrusted Data in org.apache.ddlutils:ddlutils | 严重 | Mavenorg.apache.ddlutils:ddlutils | 已审查 | 2021-10-05 04:12 | 2021-10-09 05:29 |
| GHSA-5PCX-VQJP-P34W CVE-2021-25963 | Cross-site Scripting in shuup | 中危 | PyPIshuup | 已审查 | 2021-10-05 04:11 | 2024-10-24 02:35 |
| GHSA-RWH9-8XX8-4WFM CVE-2021-25959 | Cross-site Scripting in OpenCRX | 中危 | Mavenorg.opencrx:opencrx-client+4 | 已审查 | 2021-10-01 04:50 | 2021-10-01 02:31 |
| GHSA-663J-RJCR-789F CVE-2021-25962 | CSV injection in shuup | 高危 | PyPIshuup | 已审查 | 2021-10-01 04:50 | 2024-10-24 02:35 |
| GHSA-HWQC-PGJW-VJQP CVE-2020-20693 | Cross-Site Request Forgery in GilaCMS | 高危 | Packagistgilacms/gila | 已审查 | 2021-10-01 01:13 | 2021-10-04 21:51 |