检索 GitHub Advisory Database 中的已审查与未审查安全公告。
| 公告编号 | 摘要 | 级别 | 生态 / 软件包 | 审查状态 | 发布时间 | 修改时间 |
|---|---|---|---|---|---|---|
| GHSA-7F53-FMMV-MFJV CVE-2020-1920 | Regular expression denial of service in react-native | 高危 | npmreact-native | 已审查 | 2021-07-21 01:33 | 2021-06-10 22:10 |
| GHSA-89GV-H8WF-CG8R CVE-2021-3647 | URIjs Vulnerable to Hostname spoofing via backslashes in URL |
当前筛选结果 366,391 条 · 时间按北京时间显示
| 中危 |
npmurijs |
| 已审查 |
| 2021-07-20 05:22 |
| 2023-09-08 04:18 |
| GHSA-RR6V-H7M8-WC9F CVE-2021-28114 | Cross-site Scripting in Froala WYSIWYG Editor | 中危 | Packagistfroala/wysiwyg-editor | 已审查 | 2021-07-20 05:21 | 2021-07-29 23:14 |
| GHSA-8H2G-R292-J8XH CVE-2021-36213 | HashiCorp Consul L7 deny intention results in an allow action | 高危 | Gogithub.com/hashicorp/consul | 已审查 | 2021-07-20 05:21 | 2022-08-12 04:43 |
| GHSA-25GF-8QRR-G78R CVE-2021-32574 | Hashicorp Consul Missing SSL Certificate Validation | 高危 | Gogithub.com/hashicorp/consul | 已审查 | 2021-07-20 05:21 | 2022-08-12 04:43 |
| GHSA-RQJW-P5VR-C695 CVE-2021-32770 | Basic-auth app bundle credential exposure in gatsby-source-wordpress | 高危 | npmgatsby-source-wordpress | 已审查 | 2021-07-19 23:21 | 2021-07-28 23:18 |
| GHSA-7638-R9R3-RMJJ CVE-2021-3602 | Buildah processes using chroot isolation may leak environment values to intermediate processes | 中危 | Gogithub.com/containers/buildah | 已审查 | 2021-07-19 23:19 | 2023-08-30 02:32 |
| GHSA-VJV5-GP2W-65VM CVE-2021-34429 | Encoded URIs can access WEB-INF directory in Eclipse Jetty | 中危 | Mavenorg.eclipse.jetty:jetty-webapp | 已审查 | 2021-07-19 23:15 | 2022-04-19 23:15 |
| GHSA-9PQ7-RCXV-47VQ CVE-2021-27293 | Incorrect Regular Expression in RestSharp | 高危 | NuGetRestSharp | 已审查 | 2021-07-15 03:10 | 2021-07-16 04:24 |
| GHSA-G3W9-G82H-CMP4 CVE-2021-22921 | Incorrect Permission Assignment for Critical Resource in Node | 高危 | —— | 未审查 | 2021-07-14 05:17 | 2021-12-04 04:56 |
| GHSA-X3CJ-3539-RCPX CVE-2021-22918 | Out-of-Bounds Read in Node.js | 高危 | —— | 未审查 | 2021-07-14 05:07 | 2021-12-04 05:04 |
| GHSA-2VP8-JV5V-6QH6 CVE-2021-3637 | Allocation of resources without limits or throttling in keycloak-model-infinispan | 高危 | Mavenorg.keycloak:keycloak-model-infinispan | 已审查 | 2021-07-14 01:43 | 2021-07-15 03:41 |
| GHSA-G8JX-66P8-VCM2 CVE-2021-23405 | SQL injection in pimcore/pimcore | 高危 | Packagistpimcore/pimcore | 已审查 | 2021-07-14 01:42 | 2021-07-29 01:37 |
| GHSA-QC36-Q22Q-CJW3 CVE-2021-38189 | SMTP command injection in lettre | 严重 | crates.iolettre | 已审查 | 2021-07-13 01:03 | 2021-08-19 02:52 |
| GHSA-JXHC-Q857-3J6G CVE-2021-32740 | Regular Expression Denial of Service in Addressable templates | 高危 | RubyGemsaddressable | 已审查 | 2021-07-13 00:58 | 2026-04-07 07:12 |
| GHSA-5H46-H7HH-C6X9 CVE-2021-32714 | Integer Overflow in Chunked Transfer-Encoding | 中危 | crates.iohyper | 已审查 | 2021-07-13 00:55 | 2021-09-08 05:47 |
| GHSA-F3PG-QWVG-P99C CVE-2021-32715 | Lenient Parsing of Content-Length Header When Prefixed with Plus Sign | 低危 | crates.iohyper | 已审查 | 2021-07-13 00:54 | 2021-09-08 05:49 |
| GHSA-FP63-499M-HQ6M CVE-2021-32752 | Files or Directories Accessible to External Parties in ether/logs | 高危 | Packagistether/logs | 已审查 | 2021-07-13 00:53 | 2021-07-09 22:04 |
| GHSA-6CGH-HJPW-Q3GQ CVE-2021-32738 | Utils.readChallengeTx does not verify the server account signature | 中危 | npmstellar-sdk | 已审查 | 2021-07-03 03:20 | 2021-07-03 02:25 |
| GHSA-M738-3RC4-5XV3 CVE-2021-32729 | A user without PR can reset user authentication failures information | 低危 | Mavenorg.xwiki.platform:xwiki-platform-security-authentication-script | 已审查 | 2021-07-03 03:19 | 2021-07-03 00:44 |
| GHSA-V9J2-Q4Q5-CXH4 CVE-2021-32730 | No CSRF protection on the password change form | 中危 | Mavenorg.xwiki.platform:xwiki-platform-administration-ui | 已审查 | 2021-07-03 03:19 | 2021-07-03 00:41 |
| GHSA-H4M4-PGP4-WHGM CVE-2021-32731 | The reset password form reveal users email address | 中危 | Mavenorg.xwiki.platform:xwiki-platform-web | 已审查 | 2021-07-03 03:19 | 2022-10-26 04:25 |
| GHSA-2F2W-349X-VRQM CVE-2021-32735 | Cross-site scripting (XSS) from field and configuration text displayed in the Panel | 高危 | Packagistgetkirby/cms | 已审查 | 2021-07-03 03:18 | 2023-04-15 03:24 |
| GHSA-GP6M-VQHM-5CM5 CVE-2021-25951 | XML2Dict XML Entity Expansion Vulnerability | 高危 | PyPIXML2Dict | 已审查 | 2021-07-03 02:37 | 2024-11-20 02:24 |
| GHSA-X2J7-6HXM-87P3 CVE-2021-27903 | Craft CMS Remote Code Injection | 严重 | Packagistcraftcms/cms | 已审查 | 2021-07-03 02:36 | 2023-09-22 03:51 |