检索 GitHub Advisory Database 中的已审查与未审查安全公告。
| 公告编号 | 摘要 | 级别 | 生态 / 软件包 | 审查状态 | 发布时间 | 修改时间 |
|---|---|---|---|---|---|---|
| GHSA-XPWJ-7V8Q-MCGJ CVE-2021-32619 | Deno's static imports inside dynamically imported modules do not adhere to permission checks | 严重 | crates.iodeno | 已审查 | 2021-09-24 07:18 | 2022-08-12 00:54 |
| GHSA-FPV6-F8JW-RC3R CVE-2021-41088 |
当前筛选结果 366,391 条 · 时间按北京时间显示
| 高危 |
Gogithub.com/elves/elvish |
| 已审查 |
| 2021-09-24 07:17 |
| 2022-08-16 04:07 |
| GHSA-HPF7-4C2G-9CHF CVE-2021-31819 | Remote Code Execution in Halibut | 严重 | NuGetHalibut | 已审查 | 2021-09-24 07:17 | 2021-10-01 02:36 |
| GHSA-2PFH-Q76X-GWVM CVE-2021-3583 | Improper Input Validation and Command Injection in Ansible | 高危 | PyPIansible | 已审查 | 2021-09-24 07:16 | 2024-09-07 01:47 |
| GHSA-X38Q-XG2H-RXGX CVE-2020-23478 | Regular Expression Denial of Service in Leo Editor | 高危 | PyPIleo | 已审查 | 2021-09-24 07:14 | 2024-09-28 05:45 |
| GHSA-HV5F-73MR-7VVJ CVE-2021-37860 | Cross-site Scripting in Mattermost | 中危 | Gogithub.com/mattermost/mattermost-server/v5 | 已审查 | 2021-09-24 07:11 | 2021-10-06 21:08 |
| GHSA-QH7X-J4V8-QW5W CVE-2021-41086 | Clipboard-based XSS | 高危 | npmjsuites | 已审查 | 2021-09-23 04:39 | 2021-10-21 22:19 |
| GHSA-VRXP-MG9F-HWF3 CVE-2021-41087 | Improperly Implemented path matching for in-toto-golang | 中危 | Gogithub.com/in-toto/in-toto-golang | 已审查 | 2021-09-23 04:37 | 2021-09-22 05:51 |
| GHSA-55R9-7MF8-M382 CVE-2021-23443 | Cross-site Scripting in edge.js | 中危 | npmedge.js | 已审查 | 2021-09-23 04:36 | 2023-09-12 00:20 |
| GHSA-F3PP-32QC-36W4 CVE-2021-23444 | Prototype Pollution in jointjs | 中危 | npmjointjs | 已审查 | 2021-09-23 04:36 | 2021-09-22 22:30 |
| GHSA-M489-XR35-FJXR | Regular Expression Denial of Service in millisecond | 中危 | npmmillisecond | 已审查 | 2021-09-23 04:35 | 2021-09-23 04:34 |
| GHSA-5VCM-3XC3-W7X3 CVE-2021-41084 | Response Splitting from unsanitized headers | 高危 | Mavenorg.http4s:http4s-client_2.12+8 | 已审查 | 2021-09-23 03:18 | 2025-12-12 05:12 |
| GHSA-4448-RC82-FCR7 CVE-2019-5444 | Path Traversal in serve-here.js | 中危 | npmserve-here.js | 已审查 | 2021-09-23 02:40 | 2022-12-03 12:01 |
| GHSA-8R4G-CG4M-X23C | Denial of Service in node-static | 中危 | npmnode-static | 已审查 | 2021-09-23 02:22 | 2025-10-04 02:27 |
| GHSA-XPFP-F569-Q3P2 CVE-2021-35042 | SQL Injection in Django | 严重 | PyPIDjango | 已审查 | 2021-09-23 01:34 | 2024-09-20 23:12 |
| GHSA-4JG2-84C2-PJ95 CVE-2023-23619 | Improper Control of Generation of Code ('Code Injection') in @asyncapi/modelina | 严重 | npm@asyncapi/modelina | 已审查 | 2021-09-22 02:41 | 2023-01-27 05:57 |
| GHSA-VW47-MR44-3JF9 CVE-2021-25740 | Confused Deputy in Kubernetes | 低危 | Gok8s.io/kubernetes | 已审查 | 2021-09-22 02:28 | 2026-06-09 18:51 |
| GHSA-74J8-88MM-7496 CVE-2020-8561 | Confused Deputy in Kubernetes | 中危 | Gok8s.io/kubernetes | 已审查 | 2021-09-22 02:28 | 2026-06-09 18:51 |
| GHSA-652H-XWHF-Q4H6 CVE-2020-26301 | OS Command Injection in ssh2 | 高危 | npmssh2 | 已审查 | 2021-09-22 00:50 | 2024-02-12 23:03 |
| GHSA-H9W3-F7X6-V54C CVE-2021-23441 | Deserialization of Untrusted Data in com.jsoniter:jsoniter 已撤回 | 高危 | Mavencom.jsoniter:jsoniter | 已审查 | 2021-09-21 07:18 | 2021-10-29 00:14 |
| GHSA-J8WC-GXX9-82HX CVE-2021-40690 | Exposure of Sensitive Information to an Unauthorized Actor in Apache Santuario | 高危 | Mavenorg.apache.santuario:xmlsec | 已审查 | 2021-09-21 07:18 | 2021-10-04 22:16 |
| GHSA-QHMP-H54X-38QR CVE-2021-39229 | Apprise vulnerable to regex injection with IFTTT Plugin | 高危 | PyPIapprise | 已审查 | 2021-09-21 04:57 | 2024-09-13 04:54 |
| GHSA-RP65-9CF3-CJXR CVE-2021-3803 | Inefficient Regular Expression Complexity in nth-check | 高危 | npmnth-check | 已审查 | 2021-09-21 04:47 | 2023-09-14 05:49 |
| GHSA-8V63-CQQC-6R2C CVE-2021-3805 | Prototype Pollution in object-path | 高危 | npmobject-path | 已审查 | 2021-09-21 04:46 | 2022-08-12 05:52 |
| GHSA-59G9-7GFX-C72P CVE-2021-41079 | Infinite loop in Tomcat due to parsing error | 高危 | Mavenorg.apache.tomcat:tomcat | 已审查 | 2021-09-21 04:45 | 2021-10-18 22:52 |