检索 GitHub Advisory Database 中的已审查与未审查安全公告。
| 公告编号 | 摘要 | 级别 | 生态 / 软件包 | 审查状态 | 发布时间 | 修改时间 |
|---|---|---|---|---|---|---|
| GHSA-H45P-W933-JXH3 | Improper Verification of Cryptographic Signature in aws-encryption-sdk-javascript | 中危 | npm@aws-crypto/client-browser+1 | 已审查 | 2021-06-02 05:20 | 2021-06-02 02:59 |
| GHSA-Q2Q7-5PP4-W6PG CVE-2021-33503 | Catastrophic backtracking in URL authority parser when passed URL containing many @ characters |
当前筛选结果 366,391 条 · 时间按北京时间显示
| 高危 |
PyPIurllib3 |
| 已审查 |
| 2021-06-02 05:19 |
| 2026-06-09 21:01 |
| GHSA-89V2-G37M-G3FF | Improper Verification of Cryptographic Signature in aws-encryption-sdk-cli | 中危 | PyPIaws-encryption-sdk-cli | 已审查 | 2021-06-02 05:18 | 2021-06-02 02:53 |
| GHSA-X5H4-9GQW-942J | Improper Verification of Cryptographic Signature in aws-encryption-sdk | 中危 | PyPIaws-encryption-sdk | 已审查 | 2021-06-02 05:17 | 2021-06-02 03:12 |
| GHSA-55XH-53M6-936R CVE-2024-23680 | Improper Verification of Cryptographic Signature in aws-encryption-sdk-java | 中危 | Mavencom.amazonaws:aws-encryption-sdk-java | 已审查 | 2021-06-02 05:17 | 2026-01-23 04:52 |
| GHSA-849R-8WVP-4WWG CVE-2020-1701 | Permissions bypass in KubeVirt | 中危 | Gokubevirt.io/kubevirt | 已审查 | 2021-06-02 02:40 | 2024-04-25 05:33 |
| GHSA-G42G-737J-QX6J CVE-2021-25735 | Access Restriction Bypass in kube-apiserver | 中危 | Gok8s.io/kubernetes | 已审查 | 2021-05-29 03:49 | 2022-03-23 02:43 |
| GHSA-6FC8-4GX4-V693 CVE-2021-32640 | ReDoS in Sec-Websocket-Protocol header | 中危 | npmws | 已审查 | 2021-05-29 03:19 | 2021-10-07 06:05 |
| GHSA-5VM8-HHGR-JCJP | Cross-site scripting vulnerability in TinyMCE | 中危 | npmtinymce | 已审查 | 2021-05-29 03:18 | 2021-05-28 05:29 |
| GHSA-4G53-VP7Q-GFJV | constructEvent does not verify header | 高危 | npm@worker-tools/stripe-webhook | 已审查 | 2021-05-29 03:18 | 2021-05-28 06:24 |
| GHSA-6H7W-FC84-X7P6 CVE-2021-32643 | StaticFile.fromUrl can leak presence of a directory | 中危 | Mavenorg.http4s:http4s-core | 已审查 | 2021-05-28 23:54 | 2021-05-28 05:17 |
| GHSA-JCGR-9698-82JX | Improper Neutralization of Special Elements used in a Command ('Command Injection') in @floffah/build | 低危 | npm@floffah/build | 已审查 | 2021-05-28 23:53 | 2021-05-28 05:05 |
| GHSA-59QG-GRP7-5R73 CVE-2020-11091 | Weave Net clusters susceptible to MitM attacks via IPv6 rogue router advertisements | 中危 | Gogithub.com/weaveworks/weave | 已审查 | 2021-05-28 03:00 | 2021-05-25 05:05 |
| GHSA-Q8Q8-93CV-V6H8 CVE-2020-11013 | Lookup function information discolosure in helm | 高危 | Gohelm.sh/helm/v3 | 已审查 | 2021-05-28 02:44 | 2021-05-25 05:15 |
| GHSA-V24H-PJJV-MCP6 CVE-2020-5303 | Denial of service in Tendermint | 低危 | Gogithub.com/tendermint/tendermint | 已审查 | 2021-05-28 02:44 | 2023-10-02 20:27 |
| GHSA-3P3G-VPW6-4W66 CVE-2020-5300 | Authentication Bypass in hydra | 中危 | Gogithub.com/ory/hydra | 已审查 | 2021-05-28 02:43 | 2023-09-30 01:16 |
| GHSA-FH74-HM69-RQJW CVE-2019-19921 | opencontainers runc contains procfs race condition with a shared volume mount | 中危 | Gogithub.com/opencontainers/runc | 已审查 | 2021-05-28 02:41 | 2024-06-01 01:08 |
| GHSA-QMFX-75FF-8MW6 | Listing of upload directory contents possible | 高危 | Gogithub.com/ThomasLeister/prosody-filer | 已审查 | 2021-05-28 02:41 | 2021-05-25 05:22 |
| GHSA-27G8-R9VW-765X CVE-2021-32624 | Private Field data leak | 高危 | npm@keystonejs/keystone | 已审查 | 2021-05-28 02:39 | 2021-05-26 04:20 |
| GHSA-434H-P4GX-JM89 CVE-2021-29621 | Observable Response Discrepancy in Flask-AppBuilder | 中危 | PyPIFlask-AppBuilder | 已审查 | 2021-05-28 02:38 | 2025-03-08 03:08 |
| GHSA-MWQ4-JMCC-2CX4 CVE-2021-20193 | Out-of-bounds Read and Missing Release of Memory after Effective Lifetime in tar | 中危 | —— | 未审查 | 2021-05-27 23:14 | 2021-12-11 03:58 |
| GHSA-RRQV-VJRW-HRCR | Arbitrary Code Execution in json-ptr | 高危 | npmjson-ptr | 已审查 | 2021-05-27 03:59 | 2021-05-27 03:57 |
| GHSA-V5C5-9FH5-F3WX CVE-2020-11737 | Cross-site scripting in Zimbra | 中危 | —— | 未审查 | 2021-05-26 05:03 | 2021-12-11 04:03 |
| GHSA-2R5R-X58V-CX3W CVE-2020-10712 | Information Disclosure in OpenShift Container Platform | 中危 | —— | 未审查 | 2021-05-26 04:05 | 2021-12-21 01:46 |
| GHSA-JJHW-5MXP-2G2Q CVE-2021-25933 | Cross-site Scripting in OpenNMS Horizon | 中危 | Mavenorg.opennms:opennms | 已审查 | 2021-05-26 02:47 | 2025-05-01 08:21 |