检索 GitHub Advisory Database 中的已审查与未审查安全公告。
| 公告编号 | 摘要 | 级别 | 生态 / 软件包 | 审查状态 | 发布时间 | 修改时间 |
|---|---|---|---|---|---|---|
| GHSA-XJXC-VFW2-CG96 CVE-2018-20997 | Use after free in openssl | 严重 | crates.ioopenssl | 已审查 | 2021-08-26 04:43 | 2023-06-14 03:56 |
| GHSA-69FV-GW6G-8CCG CVE-2018-20998 | Potential memory corruption in arrayfire |
当前筛选结果 366,391 条 · 时间按北京时间显示
| 严重 |
crates.ioarrayfire |
| 已审查 |
| 2021-08-26 04:43 |
| 2024-09-13 04:47 |
| GHSA-2V78-J59H-FMPF CVE-2018-21000 | Heap overflow or corruption in safe-transmute | 严重 | crates.iosafe-transmute | 已审查 | 2021-08-26 04:43 | 2023-06-14 05:04 |
| GHSA-C3CW-C387-PJ65 CVE-2018-20996 | Double free in crossbeam | 严重 | crates.iocrossbeam | 已审查 | 2021-08-26 04:43 | 2023-06-14 01:11 |
| GHSA-GFFV-5HR2-F9GJ CVE-2018-20999 | Flaw in streaming state in orion | 高危 | crates.ioorion | 已审查 | 2021-08-26 04:43 | 2023-06-14 04:12 |
| GHSA-369H-PJR2-6WRH CVE-2018-20994 | Uncontrolled recursion in trust-dns-proto | 高危 | crates.iotrust-dns-proto | 已审查 | 2021-08-26 04:43 | 2023-06-14 06:25 |
| GHSA-HV87-47H9-JCVQ CVE-2018-20993 | Uncontrolled recursion in rust-yaml | 高危 | crates.ioyaml-rust | 已审查 | 2021-08-26 04:43 | 2023-06-14 06:23 |
| GHSA-34P9-F4Q3-C4R7 CVE-2016-10931 | Improper Certificate Validation in openssl | 高危 | crates.ioopenssl | 已审查 | 2021-08-26 04:43 | 2023-06-14 04:14 |
| GHSA-PQ6V-X7GP-7776 CVE-2016-10933 | Source code is downloaded over cleartext HTTP in portaudio | 中危 | crates.ioportaudio | 已审查 | 2021-08-26 04:43 | 2021-08-20 05:25 |
| GHSA-9XJR-M6F3-V5WM CVE-2016-10932 | HTTPS MitM vulnerability due to lack of hostname verification | 中危 | crates.iohyper | 已审查 | 2021-08-26 04:43 | 2023-06-14 01:38 |
| GHSA-Q89X-F52W-6HJ2 CVE-2017-18587 | Headers containing newline characters can split messages in hyper | 中危 | crates.iohyper | 已审查 | 2021-08-26 04:43 | 2023-06-14 01:39 |
| GHSA-VJRQ-CG9X-RFJP CVE-2017-18589 | Improper Input Validation in cookie | 高危 | crates.iocookie | 已审查 | 2021-08-26 04:43 | 2023-06-14 01:03 |
| GHSA-JQQR-C2R2-9CVR CVE-2017-18588 | Improper Certificate Validation in security-framework | 中危 | crates.iosecurity-framework | 已审查 | 2021-08-26 04:42 | 2023-06-14 04:37 |
| GHSA-HR3C-6MMP-6M39 CVE-2018-20995 | Memory corruption slice-deque | 严重 | crates.ioslice-deque | 已审查 | 2021-08-26 04:42 | 2023-06-14 04:55 |
| GHSA-RXR4-X558-X7HW CVE-2018-20991 | Double free in smallvec | 严重 | crates.iosmallvec | 已审查 | 2021-08-26 04:42 | 2023-06-14 04:58 |
| GHSA-W65J-G6C7-G3M4 | Multiple memory safety issues in actix-web | 中危 | crates.ioactix-web | 已审查 | 2021-08-26 04:42 | 2026-06-09 18:46 |
| GHSA-XP5Q-77MH-6HM2 CVE-2021-3728 | firefly-iii is vulnerable to Cross-Site Request Forgery (CSRF) | 中危 | Packagistgrumpydictator/firefly-iii | 已审查 | 2021-08-25 22:50 | 2021-08-25 04:02 |
| GHSA-C676-MCW3-QG55 CVE-2021-3730 | firefly-iii is vulnerable to Cross-Site Request Forgery (CSRF) | 中危 | Packagistgrumpydictator/firefly-iii | 已审查 | 2021-08-25 22:50 | 2021-08-27 20:48 |
| GHSA-GP6W-CCQV-P7QR CVE-2021-3729 | firefly-iii is vulnerable to Cross-Site Request Forgery (CSRF) | 中危 | Packagistgrumpydictator/firefly-iii | 已审查 | 2021-08-25 22:49 | 2021-08-25 04:06 |
| GHSA-X2XG-6WCJ-6XF9 CVE-2020-36474 | SafeCurl before 0.9.2 has a DNS rebinding vulnerability. | 严重 | Packagistvanilla/safecurl | 已审查 | 2021-08-25 22:49 | 2021-08-25 04:08 |
| GHSA-64XX-CQ4Q-MF44 CVE-2021-39139 | XStream is vulnerable to an Arbitrary Code Execution attack | 高危 | Mavencom.thoughtworks.xstream:xstream | 已审查 | 2021-08-25 22:48 | 2022-02-09 05:01 |
| GHSA-6WF9-JMG9-VXCC CVE-2021-39140 | XStream can cause a Denial of Service | 中危 | Mavencom.thoughtworks.xstream:xstream | 已审查 | 2021-08-25 22:48 | 2022-02-09 04:59 |
| GHSA-G5W6-MRJ7-75H2 CVE-2021-39141 | XStream is vulnerable to an Arbitrary Code Execution attack | 高危 | Mavencom.thoughtworks.xstream:xstream | 已审查 | 2021-08-25 22:48 | 2022-02-09 04:58 |
| GHSA-J9H8-PHRW-H4FH CVE-2021-39144 | XStream is vulnerable to a Remote Command Execution attack | 高危 | Mavencom.thoughtworks.xstream:xstream | 已审查 | 2021-08-25 22:48 | 2025-10-23 03:07 |
| GHSA-8JRJ-525P-826V CVE-2021-39145 | XStream is vulnerable to an Arbitrary Code Execution attack | 高危 | Mavencom.thoughtworks.xstream:xstream | 已审查 | 2021-08-25 22:48 | 2022-07-30 02:10 |