检索 GitHub Advisory Database 中的已审查与未审查安全公告。
| 公告编号 | 摘要 | 级别 | 生态 / 软件包 | 审查状态 | 发布时间 | 修改时间 |
|---|---|---|---|---|---|---|
| GHSA-P8PQ-R894-FM8F CVE-2021-39146 | XStream is vulnerable to an Arbitrary Code Execution attack | 高危 | Mavencom.thoughtworks.xstream:xstream | 已审查 | 2021-08-25 22:47 | 2022-02-09 05:00 |
| GHSA-H7V4-7XG3-HXCC CVE-2021-39147 | XStream is vulnerable to an Arbitrary Code Execution attack |
当前筛选结果 366,391 条 · 时间按北京时间显示
| 高危 |
Mavencom.thoughtworks.xstream:xstream |
| 已审查 |
| 2021-08-25 22:47 |
| 2022-02-09 04:58 |
| GHSA-QRX8-8545-4WG2 CVE-2021-39148 | XStream is vulnerable to an Arbitrary Code Execution attack | 高危 | Mavencom.thoughtworks.xstream:xstream | 已审查 | 2021-08-25 22:47 | 2022-02-09 04:59 |
| GHSA-3CCQ-5VW3-2P6X CVE-2021-39149 | XStream is vulnerable to an Arbitrary Code Execution attack | 高危 | Mavencom.thoughtworks.xstream:xstream | 已审查 | 2021-08-25 22:47 | 2022-02-09 04:44 |
| GHSA-CXFM-5M4G-X7XP CVE-2021-39150 | A Server-Side Forgery Request can be activated unmarshalling with XStream to access data streams from an arbitrary URL referencing a resource in an intranet or the local host | 高危 | Mavencom.thoughtworks.xstream:xstream | 已审查 | 2021-08-25 22:47 | 2022-02-09 04:43 |
| GHSA-HPH2-M3G5-XXV4 CVE-2021-39151 | XStream is vulnerable to an Arbitrary Code Execution attack | 高危 | Mavencom.thoughtworks.xstream:xstream | 已审查 | 2021-08-25 22:47 | 2022-02-09 04:44 |
| GHSA-XW4P-CRPJ-VJX2 CVE-2021-39152 | A Server-Side Forgery Request can be activated unmarshalling with XStream to access data streams from an arbitrary URL referencing a resource in an intranet or the local host | 高危 | Mavencom.thoughtworks.xstream:xstream | 已审查 | 2021-08-25 22:46 | 2022-02-09 04:43 |
| GHSA-2Q8X-2P7F-574V CVE-2021-39153 | XStream is vulnerable to an Arbitrary Code Execution attack | 高危 | Mavencom.thoughtworks.xstream:xstream | 已审查 | 2021-08-25 22:46 | 2022-02-09 04:43 |
| GHSA-6W62-HX7R-MW68 CVE-2021-39154 | XStream is vulnerable to an Arbitrary Code Execution attack | 高危 | Mavencom.thoughtworks.xstream:xstream | 已审查 | 2021-08-25 22:46 | 2022-02-09 04:43 |
| GHSA-XJ6R-2JPM-QVXP CVE-2021-37694 | Code injection issue for java-spring-cloud-stream-template | 高危 | npm@asyncapi/java-spring-cloud-stream-template | 已审查 | 2021-08-25 22:45 | 2021-08-25 02:50 |
| GHSA-Q7CG-43MG-QP69 CVE-2021-34532 | ASP.NET Core Information Disclosure Vulnerability | 中危 | NuGetMicrosoft.AspNetCore.Authentication.JwtBearer | 已审查 | 2021-08-25 22:45 | 2026-08-12 01:22 |
| GHSA-HR3H-X6GQ-RQCP CVE-2021-35955 | Cross site scripting via HTML attributes in the back end | 中危 | Packagistcontao/contao+1 | 已审查 | 2021-08-25 22:45 | 2025-04-17 20:45 |
| GHSA-JQFH-8HW5-FQJR CVE-2021-39157 | Improper Handling of Exceptional Conditions in detect-character-encoding | 高危 | npmdetect-character-encoding | 已审查 | 2021-08-25 22:44 | 2021-10-21 22:15 |
| GHSA-CGFM-62J4-V4RF CVE-2021-37635 | Heap out of bounds access in sparse reduction operations | 高危 | PyPItensorflow+2 | 已审查 | 2021-08-25 22:44 | 2024-11-14 00:36 |
| GHSA-HP4C-X6R7-6555 CVE-2021-37636 | Floating point exception in `SparseDenseCwiseDiv` | 中危 | PyPItensorflow+2 | 已审查 | 2021-08-25 22:44 | 2024-11-14 00:35 |
| GHSA-C9QF-R67M-P7CG CVE-2021-37637 | Null pointer dereference in `CompressElement` | 高危 | PyPItensorflow+2 | 已审查 | 2021-08-25 22:44 | 2024-11-14 00:34 |
| GHSA-HWR7-8GXX-FJ5P CVE-2021-37638 | Null pointer dereference in `RaggedTensorToTensor` | 高危 | PyPItensorflow+2 | 已审查 | 2021-08-25 22:44 | 2024-11-14 00:33 |
| GHSA-GH6X-4WHR-2QV4 CVE-2021-37639 | Null pointer dereference and heap OOB read in operations restoring tensors | 高危 | PyPItensorflow+2 | 已审查 | 2021-08-25 22:44 | 2024-11-14 00:33 |
| GHSA-95XM-G58G-3P88 CVE-2021-37640 | Integer division by 0 in sparse reshaping | 中危 | PyPItensorflow+2 | 已审查 | 2021-08-25 22:44 | 2024-11-14 00:32 |
| GHSA-9C8H-VVRJ-W2P8 CVE-2021-37641 | Heap OOB in `RaggedGather` | 中危 | PyPItensorflow+2 | 已审查 | 2021-08-25 22:43 | 2024-11-14 00:24 |
| GHSA-CH4F-829C-V5PW CVE-2021-37642 | Division by 0 in `ResourceScatterDiv` | 中危 | PyPItensorflow+2 | 已审查 | 2021-08-25 22:43 | 2024-11-14 01:19 |
| GHSA-FCWC-P4FC-C5CC CVE-2021-37643 | Null pointer dereference in `MatrixDiagPartOp` | 高危 | PyPItensorflow+2 | 已审查 | 2021-08-25 22:43 | 2024-11-14 00:21 |
| GHSA-27J5-4P9V-PP67 CVE-2021-37644 | `std::abort` raised from `TensorListReserve` | 中危 | PyPItensorflow+2 | 已审查 | 2021-08-25 22:43 | 2024-11-14 00:13 |
| GHSA-9W2P-5MGW-P94C CVE-2021-37645 | Integer overflow due to conversion to unsigned | 中危 | PyPItensorflow+2 | 已审查 | 2021-08-25 22:43 | 2024-11-14 00:05 |
| GHSA-H6JH-7GV5-28VG CVE-2021-37646 | Bad alloc in `StringNGrams` caused by integer conversion | 中危 | PyPItensorflow+2 | 已审查 | 2021-08-25 22:43 | 2024-11-14 01:20 |