检索 GitHub Advisory Database 中的已审查与未审查安全公告。
| 公告编号 | 摘要 | 级别 | 生态 / 软件包 | 审查状态 | 发布时间 | 修改时间 |
|---|---|---|---|---|---|---|
| GHSA-5QJQ-69W6-FG57 CVE-2021-32671 | XSS vulnerability with translator | 严重 | Packagistflarum/core | 已审查 | 2021-06-08 05:48 | 2021-06-08 05:05 |
| GHSA-XW7C-JX9M-XH5G CVE-2021-32670 |
当前筛选结果 366,391 条 · 时间按北京时间显示
| 中危 |
PyPIdatasette |
| 已审查 |
| 2021-06-08 05:47 |
| 2024-11-19 00:26 |
| GHSA-VMFG-RJJM-RJRJ CVE-2017-5929 | QOS.ch Logback vulnerable to Deserialization of Untrusted Data | 严重 | Mavench.qos.logback:logback-classic+1 | 已审查 | 2021-06-08 00:07 | 2022-11-18 04:55 |
| GHSA-FVX8-V524-8579 CVE-2020-17495 | django-celery-results Stores Sensitive Information In Cleartext | 高危 | PyPIdjango-celery-results | 已审查 | 2021-06-05 05:46 | 2024-09-14 04:13 |
| GHSA-RVWF-54QP-4R6V CVE-2017-18640 | SnakeYAML Entity Expansion during load operation | 高危 | Mavenorg.yaml:snakeyaml | 已审查 | 2021-06-05 05:37 | 2022-08-12 05:47 |
| GHSA-RMRM-75HP-PHR2 CVE-2020-10693 | Improper Input Validation in Hibernate Validator | 中危 | Mavenorg.hibernate:hibernate-validator+1 | 已审查 | 2021-06-05 05:36 | 2025-09-13 04:15 |
| GHSA-RXJP-MFM9-W4WR CVE-2021-31542 | Path Traversal in Django | 高危 | PyPIDjango | 已审查 | 2021-06-05 05:15 | 2024-09-20 23:30 |
| GHSA-JR3J-WHM4-9WWM CVE-2021-32641 | Reflected XSS when using flashMessages or languageDictionary | 高危 | npmauth0-lock | 已审查 | 2021-06-05 03:10 | 2021-06-08 02:54 |
| GHSA-PWHF-39XG-4RXW CVE-2021-32660 | Script injection | 中危 | npm@backstage/techdocs-common | 已审查 | 2021-06-05 03:09 | 2021-06-05 03:23 |
| GHSA-GG96-F8WR-P89F CVE-2021-32661 | Script injection | 中危 | npm@backstage/plugin-techdocs | 已审查 | 2021-06-05 03:09 | 2021-06-05 03:22 |
| GHSA-PGF8-28GG-VPR6 CVE-2021-32662 | Path traversal | 中危 | npm@backstage/techdocs-common | 已审查 | 2021-06-05 03:09 | 2021-06-08 02:55 |
| GHSA-HR32-MGPM-QF2F CVE-2020-25633 | Generation of Error Message Containing Sensitive Information in RESTEasy client | 中危 | Mavenorg.jboss.resteasy:resteasy-client+1 | 已审查 | 2021-06-04 07:41 | 2021-06-04 07:33 |
| GHSA-7R82-7XV7-XCPJ CVE-2020-13956 | Cross-site scripting in Apache HttpClient | 中危 | Mavenorg.apache.httpcomponents:httpclient | 已审查 | 2021-06-04 07:40 | 2022-02-09 06:02 |
| GHSA-J239-4GQG-5J54 CVE-2017-1000486 | Inadequate Encryption Strength | 严重 | Mavenorg.primefaces:primefaces | 已审查 | 2021-06-04 03:22 | 2025-01-23 05:44 |
| GHSA-H72C-W3Q3-55QQ CVE-2020-13388 | OS Command Injection in jw.util | 严重 | PyPIjw.util | 已审查 | 2021-06-03 05:45 | 2023-03-04 07:20 |
| GHSA-JR9P-R423-9M2R CVE-2021-26813 | markdown2 Regular Expression Denial of Service | 高危 | PyPImarkdown2 | 已审查 | 2021-06-03 05:44 | 2024-10-01 04:15 |
| GHSA-J858-XP5V-F8XX CVE-2021-33564 | Dragonfly contains remote code execution vulnerability | 严重 | RubyGemsdragonfly | 已审查 | 2021-06-03 05:42 | 2023-08-26 05:02 |
| GHSA-GGJR-2F7V-VHQ4 CVE-2021-20278 | Kiali Authentication Bypass vulnerability | 中危 | Gogithub.com/kiali/kiali | 已审查 | 2021-06-02 05:57 | 2022-08-12 00:53 |
| GHSA-H39G-Q63V-4H9P CVE-2021-33038 | Exposure of sensitive information to an unauthorized actor in HyperKitty | 高危 | PyPIHyperKitty | 已审查 | 2021-06-02 05:56 | 2024-09-24 00:25 |
| GHSA-3CV4-XXV7-934Q CVE-2021-22160 | Improper Verification of Cryptographic Signature in Apache Pulsar in TensorFlow | 严重 | Mavenorg.apache.pulsar:pulsar | 已审查 | 2021-06-02 05:53 | 2022-06-07 02:16 |
| GHSA-WV5P-GMMV-WH9V CVE-2021-20178 | Insertion of Sensitive Information into Log File in ansible | 高危 | PyPIansible | 已审查 | 2021-06-02 05:53 | 2024-11-19 00:26 |
| GHSA-8F4M-HCCC-8QPH CVE-2021-20191 | Insertion of Sensitive Information into Log File in ansible | 中危 | PyPIansible | 已审查 | 2021-06-02 05:38 | 2024-09-11 05:36 |
| GHSA-R37H-J483-CJJM CVE-2021-33563 | Improper rate limiting in Koel | 高危 | Packagistphanan/koel | 已审查 | 2021-06-02 05:38 | 2021-06-05 02:50 |
| GHSA-5MV9-Q7FQ-9394 CVE-2021-32635 | Action Commands (run/shell/exec) Against Library URIs Ignore Configured Remote Endpoint | 中危 | Gogithub.com/sylabs/singularity | 已审查 | 2021-06-02 05:21 | 2023-01-11 00:08 |
| GHSA-JQ42-HFCH-42F3 | Action Commands (run/shell/exec) Against Library URIs Ignore Configured Remote Endpoint | 中危 | Gogithub.com/hpcng/singularity | 已审查 | 2021-06-02 05:20 | 2021-10-06 01:22 |