检索 GitHub Advisory Database 中的已审查与未审查安全公告。
| 公告编号 | 摘要 | 级别 | 生态 / 软件包 | 审查状态 | 发布时间 | 修改时间 |
|---|---|---|---|---|---|---|
| GHSA-VF6Q-9F2F-MWHV CVE-2021-32575 | Improper network isolation in Hashicorp Nomad | 中危 | Gogithub.com/hashicorp/nomad | 已审查 | 2021-06-25 04:28 | 2021-06-24 02:01 |
| GHSA-VFVF-6GX5-MQV6 CVE-2021-32701 | Incorrect Authorization in ORY Oathkeeper |
当前筛选结果 366,391 条 · 时间按北京时间显示
| 高危 |
Gogithub.com/ory/oathkeeper |
| 已审查 |
| 2021-06-25 04:16 |
| 2021-06-24 04:38 |
| GHSA-HJ56-84JW-67H6 CVE-2021-32823 | Potential Denial-of-Service in bindata | 中危 | RubyGemsbindata | 已审查 | 2021-06-24 07:42 | 2024-11-19 00:26 |
| GHSA-R48P-VHGJ-X8MM CVE-2021-35206 | Unvalidated redirects | 中危 | —— | 未审查 | 2021-06-24 05:19 | 2021-12-17 03:09 |
| GHSA-M6CP-VXJX-65J6 CVE-2021-34428 | SessionListener can prevent a session from being invalidated breaking logout | 低危 | Mavenorg.eclipse.jetty:jetty-server | 已审查 | 2021-06-24 04:23 | 2022-02-09 05:21 |
| GHSA-C38G-469G-CMGX CVE-2021-21303 | Improper Neutralization of Special Elements in Output in helm.sh/helm/v3 | 中危 | Gohelm.sh/helm/v3 | 已审查 | 2021-06-24 02:14 | 2024-06-01 00:48 |
| GHSA-QQ3J-XP49-J73F CVE-2020-4053 | Plugin archive directory traversal in Helm | 低危 | Gohelm.sh/helm/v3 | 已审查 | 2021-06-24 02:14 | 2024-02-14 00:33 |
| GHSA-7JR6-PRV4-5WF5 | Duplicate Advisory: Helm passes repository credentials to alternate domain 已撤回 | 中危 | Gohelm.sh/helm/v3 | 已审查 | 2021-06-24 02:14 | 2024-05-21 05:26 |
| GHSA-56HP-XQP3-W2JF CVE-2021-32690 | Helm passes repository credentials to alternate domain | 中危 | Gohelm.sh/helm/v3 | 已审查 | 2021-06-24 02:14 | 2024-05-21 05:31 |
| GHSA-6RG3-8H8X-5XFV | Unchecked hostname resolution could allow access to local network resources by users outside the local network | 中危 | Gogithub.com/pterodactyl/wings | 已审查 | 2021-06-24 02:04 | 2021-10-06 01:24 |
| GHSA-JJ6M-R8JC-2GP7 CVE-2021-32699 | Asymmetric Resource Consumption (Amplification) in Docker containers created by Wings | 中危 | Gogithub.com/pterodactyl/wings | 已审查 | 2021-06-24 02:03 | 2022-10-26 04:24 |
| GHSA-CJJC-XP8V-855W CVE-2020-7919 | Helm uses crypto package vulnerable to panic from malformed X.509 certificate | 高危 | Gogithub.com/helm/helm+2 | 已审查 | 2021-06-24 02:02 | 2024-06-01 01:06 |
| GHSA-QVP4-RPMR-XWRR | Possible bypass of token claim validation when OAuth2 Introspection caching is enabled | 高危 | Gogithub.com/ory/oathkeeper | 已审查 | 2021-06-24 02:00 | 2021-06-23 04:50 |
| GHSA-9QQ2-XHMC-H9QR CVE-2018-20321 | Access Control Bypass | 中危 | Gogithub.com/rancher/rancher | 已审查 | 2021-06-24 01:57 | 2022-04-26 04:20 |
| GHSA-H395-QCRW-5VMQ CVE-2020-28483 | Inconsistent Interpretation of HTTP Requests in github.com/gin-gonic/gin | 高危 | Gogithub.com/gin-gonic/gin | 已审查 | 2021-06-24 01:53 | 2024-05-21 03:29 |
| GHSA-W942-GW6M-P62C CVE-2020-35380 | Denial of service in GJSON | 高危 | Gogithub.com/tidwall/gjson | 已审查 | 2021-06-24 01:53 | 2024-05-21 03:27 |
| GHSA-HWQM-X785-QH8P CVE-2020-12797 | Incorrect Permission Assignment for Critical Resource in Hashicorp Consul | 中危 | Gogithub.com/hashicorp/consul | 已审查 | 2021-06-24 01:52 | 2023-10-02 23:09 |
| GHSA-4HQ8-GMXX-H6W9 CVE-2020-27846 | XML Processing error in github.com/crewjam/saml | 严重 | Gogithub.com/crewjam/saml | 已审查 | 2021-06-24 01:29 | 2025-09-20 01:41 |
| GHSA-433W-MM6H-RV9P | Auth bypass in SAML provider | 严重 | Gogithub.com/netlify/gotrue | 已审查 | 2021-06-24 01:29 | 2021-05-22 04:47 |
| GHSA-8J34-9876-PVFQ CVE-2020-26284 | Hugo can execute a binary from the current directory on Windows | 高危 | Gogithub.com/gohugoio/hugo | 已审查 | 2021-06-24 01:28 | 2021-05-22 02:15 |
| GHSA-27PV-Q55R-222G CVE-2020-26279 | Path traversal in github.com/ipfs/go-ipfs | 高危 | Gogithub.com/ipfs/go-ipfs | 已审查 | 2021-06-24 01:27 | 2021-05-22 02:31 |
| GHSA-R4GV-VJ59-CCCM CVE-2020-26283 | Control character injection in console output in github.com/ipfs/go-ipfs | 中危 | Gogithub.com/ipfs/go-ipfs | 已审查 | 2021-06-24 01:27 | 2021-05-22 02:06 |
| GHSA-5GJG-JGH4-GPPM CVE-2021-4236 | Websocket requests did not call AuthenticateMethod | 严重 | Gogithub.com/ecnepsnai/web | 已审查 | 2021-06-24 01:26 | 2026-01-24 06:35 |
| GHSA-GQ5R-CC4W-G8XF | Duplicate Advisory: gosaml2 is vulnerable to NULL Pointer Dereference from malformed XML signatures 已撤回 | 高危 | Gogithub.com/russellhaering/gosaml2+1 | 已审查 | 2021-06-24 01:25 | 2024-05-21 04:18 |
| GHSA-599H-8WPJ-75XJ CVE-2021-23365 | Authentication Bypass in tyk-identity-broker | 严重 | Gogithub.com/tyktechnologies/tyk-identity-broker | 已审查 | 2021-06-24 01:23 | 2021-05-21 05:24 |