检索 GitHub Advisory Database 中的已审查与未审查安全公告。
| 公告编号 | 摘要 | 级别 | 生态 / 软件包 | 审查状态 | 发布时间 | 修改时间 |
|---|---|---|---|---|---|---|
| GHSA-69V6-XC2J-R2JF CVE-2020-26241 | Shallow copy bug in geth | 中危 | Gogithub.com/ethereum/go-ethereum | 已审查 | 2021-06-30 05:13 | 2025-01-30 22:37 |
| GHSA-V592-XF75-856P CVE-2020-26240 | Erroneous Proof of Work calculation in geth |
当前筛选结果 366,391 条 · 时间按北京时间显示
| 中危 |
Gogithub.com/ethereum/go-ethereum |
| 已审查 |
| 2021-06-30 05:12 |
| 2025-01-30 22:39 |
| GHSA-9HX4-QM7H-X84J CVE-2014-8683 | Cross-site Scripting in Gogs | 中危 | Gogogs.io/gogs | 已审查 | 2021-06-30 02:32 | 2021-05-21 00:31 |
| GHSA-G6XV-8Q23-W2Q3 CVE-2014-8682 | SQL Injection in Gogs | 高危 | Gogogs.io/gogs | 已审查 | 2021-06-30 02:32 | 2021-05-21 00:59 |
| GHSA-MR6H-CHQP-P9G2 CVE-2014-8681 | SQL Injection in gogs.io/gogs | 中危 | Gogithub.com/gogits/gogs+1 | 已审查 | 2021-06-30 02:32 | 2023-02-10 04:01 |
| GHSA-CPGW-2WXR-PWW3 CVE-2018-15178 | Open Redirect | 中危 | Gogogs.io/gogs | 已审查 | 2021-06-30 02:32 | 2021-05-21 04:55 |
| GHSA-V85C-HGQ5-7PFW CVE-2021-23399 | Arbitrary Command Injection | 严重 | npmwincred | 已审查 | 2021-06-30 02:26 | 2021-07-03 00:59 |
| GHSA-P696-GF58-9W97 CVE-2021-32709 | Missing Authentication for Critical Function | 中危 | Packagistshopware/platform | 已审查 | 2021-06-30 01:23 | 2021-06-25 23:36 |
| GHSA-9F46-5R25-5WFM CVE-2021-32708 | Time-of-check Time-of-use (TOCTOU) Race Condition in league/flysystem | 严重 | Packagistleague/flysystem | 已审查 | 2021-06-29 11:13 | 2021-09-21 22:55 |
| GHSA-RPXH-VG2X-526V CVE-2021-32720 | List of order ids, number, items total and token value exposed for unauthorized uses via new API | 中危 | Packagistsylius/sylius | 已审查 | 2021-06-29 11:12 | 2021-07-01 01:59 |
| GHSA-GJ77-59WH-66HG CVE-2021-32723 | Regular Expression Denial of Service (ReDoS) in Prism | 高危 | npmprismjs | 已审查 | 2021-06-29 02:33 | 2022-02-09 05:21 |
| GHSA-243Q-G9J3-QF6R | non-admin users can create integration role with administrator role | 中危 | Packagistshopware/core+1 | 已审查 | 2021-06-29 02:21 | 2021-06-25 03:31 |
| GHSA-GPMH-G94G-QRHR | Internal hidden fields are visible on to many associations in admin api | 中危 | Packagistshopware/core+1 | 已审查 | 2021-06-29 02:20 | 2021-06-25 03:20 |
| GHSA-VRF2-XGHR-J52V | Private files publicly accessible with Cloud Storage providers | 高危 | Packagistshopware/core+1 | 已审查 | 2021-06-29 02:20 | 2021-10-06 01:26 |
| GHSA-7P8H-86P5-WV3P CVE-2021-21422 | Cross-site scripting | 高危 | npmmongo-express | 已审查 | 2021-06-29 01:18 | 2021-06-22 23:44 |
| GHSA-7R96-8G3X-G36M CVE-2021-32685 | Improper Verification of Cryptographic Signature | 严重 | npmtenvoy | 已审查 | 2021-06-29 01:16 | 2026-01-24 06:42 |
| GHSA-G7W8-PP9W-7P32 | Creation of order credits was not validated by acl in admin orders | 低危 | Packagistshopware/core+1 | 已审查 | 2021-06-29 00:57 | 2021-10-06 01:26 |
| GHSA-WQ3R-JWRQ-XG6W | Canceling of orders not related to the logged-in user | 中危 | Packagistshopware/core+1 | 已审查 | 2021-06-29 00:57 | 2021-06-25 02:04 |
| GHSA-C99R-67X4-WHJ6 CVE-2021-33604 | Reflected cross-site scripting in development mode handler in Vaadin 14, 15-19 | 低危 | Mavencom.vaadin:vaadin-bom | 已审查 | 2021-06-29 00:56 | 2021-10-06 01:29 |
| GHSA-QRG9-F472-QWFM CVE-2021-31412 | Possible route enumeration in production mode via RouteNotFoundError view in Vaadin 10, 11-14, and 15-19 | 中危 | Mavencom.vaadin:vaadin-bom | 已审查 | 2021-06-29 00:55 | 2021-06-25 03:46 |
| GHSA-8VFW-V2JV-9HWC | Reflected cross-site scripting in development mode handler in Vaadin | 低危 | Mavencom.vaadin:flow-server | 已审查 | 2021-06-29 00:52 | 2021-06-25 03:39 |
| GHSA-954C-JJX6-CXV7 CVE-2021-32702 | Reflected XSS from the callback handler's error query parameter | 高危 | npm@auth0/nextjs-auth0 | 已审查 | 2021-06-29 00:46 | 2021-06-29 03:06 |
| GHSA-2JX8-V4HV-GX3H CVE-2020-12642 | XXE vulnerability in Launch import | 高危 | Mavencom.epam.reportportal:service-api | 已审查 | 2021-06-29 00:45 | 2021-10-06 01:29 |
| GHSA-24WF-7VF2-PV59 CVE-2021-29620 | XXE vulnerability on Launch import with externally-defined DTD file | 高危 | Mavencom.epam.reportportal:service-api | 已审查 | 2021-06-29 00:38 | 2021-06-25 21:06 |
| GHSA-35QP-XQ9F-2RJX CVE-2021-3283 | Improper Privilege Management in HashiCorp Nomad | 高危 | Gogithub.com/hashicorp/nomad | 已审查 | 2021-06-25 04:28 | 2021-05-13 05:38 |