检索 GitHub Advisory Database 中的已审查与未审查安全公告。
| 公告编号 | 摘要 | 级别 | 生态 / 软件包 | 审查状态 | 发布时间 | 修改时间 |
|---|---|---|---|---|---|---|
| GHSA-7H8X-WMQ2-7MFF CVE-2021-23330 | Command injection in launchpad | 严重 | npmlaunchpad | 已审查 | 2021-04-13 23:20 | 2022-07-06 02:01 |
| GHSA-2F6G-W5GJ-C93H CVE-2021-23328 | Prototype Pollution in iniparserjs |
当前筛选结果 366,391 条 · 时间按北京时间显示
| 中危 |
npminiparserjs |
| 已审查 |
| 2021-04-13 23:20 |
| 2021-03-23 07:02 |
| GHSA-9MRV-456V-PF22 CVE-2020-28487 | Cross-site Scripting in vis-timeline | 中危 | npmvis-timeline | 已审查 | 2021-04-13 23:19 | 2021-03-23 07:06 |
| GHSA-JXG6-FHWC-9V9C CVE-2020-28501 | Regular Expression Denial of Service (ReDoS) in es6-crawler-detect | 中危 | npmes6-crawler-detect | 已审查 | 2021-04-13 23:19 | 2021-03-24 03:29 |
| GHSA-8695-FR6H-9FQ8 CVE-2020-28430 | Command Injection in nuance-gulp-build-common 已撤回 | 严重 | npmnuance-gulp-build-common | 已审查 | 2021-04-13 23:19 | 2023-09-12 00:28 |
| GHSA-45W5-PVR8-4RH5 CVE-2021-26275 | Command injection in eslint-fixer | 严重 | npmeslint-fixer | 已审查 | 2021-04-13 23:19 | 2021-03-27 06:09 |
| GHSA-CWG9-C9CR-P5FQ CVE-2021-28161 | Improper Neutralization of Input in Theia console | 中危 | npm@theia/console | 已审查 | 2021-04-13 23:18 | 2021-03-27 07:20 |
| GHSA-43CH-2H55-2VJ7 CVE-2020-28360 | Server-Side Request Forgery in private-ip | 严重 | npmprivate-ip | 已审查 | 2021-04-13 23:18 | 2021-03-30 05:49 |
| GHSA-GCM9-CC3R-C6VJ CVE-2020-27224 | Cross-site Scripting (XSS) in Eclipse Theia | 严重 | npm@theia/preview | 已审查 | 2021-04-13 23:18 | 2021-03-30 06:10 |
| GHSA-F7VX-J8MP-3H2X CVE-2019-17636 | Insufficient Verification of Data Authenticity in Eclipse Theia | 高危 | npm@theia/mini-browser | 已审查 | 2021-04-13 23:18 | 2021-03-30 06:11 |
| GHSA-WHQ6-MJ2R-MJQC CVE-2019-10783 | OS Command Injection in lsof | 高危 | npmlsof | 已审查 | 2021-04-13 23:17 | 2021-03-30 06:11 |
| GHSA-PH32-23P8-9RW5 CVE-2019-10786 | Improper Input Validation in network-manager | 严重 | npmnetwork-manager | 已审查 | 2021-04-13 23:17 | 2021-07-29 02:30 |
| GHSA-QFXV-QQVG-24PG CVE-2019-10788 | OS Command Injection in im-metadata | 高危 | npmim-metadata | 已审查 | 2021-04-13 23:17 | 2021-03-30 06:57 |
| GHSA-R9VM-RHMF-7HXX CVE-2019-10787 | OS Command Injection in im-resize | 高危 | npmim-resize | 已审查 | 2021-04-13 23:17 | 2021-03-30 07:01 |
| GHSA-FC42-H7Q4-QP8H CVE-2021-23360 | Command Injection in killport | 高危 | npmkillport | 已审查 | 2021-04-13 23:16 | 2021-03-23 02:24 |
| GHSA-4GFQ-6M28-M5MG CVE-2020-7775 | Improper neutralization of arguments in freediskspace | 严重 | npmfreediskspace | 已审查 | 2021-04-13 23:16 | 2021-03-20 07:11 |
| GHSA-6Q4W-3WP4-Q5WF CVE-2021-27191 | Denial of Service in get-ip-range | 高危 | npmget-ip-range | 已审查 | 2021-04-13 23:15 | 2022-05-03 10:57 |
| GHSA-67MM-M3WX-J7FR CVE-2021-26541 | Command injection in gitlog | 严重 | npmgitlog | 已审查 | 2021-04-13 23:15 | 2022-04-28 03:13 |
| GHSA-88RC-3P98-RGVX | After order payment process manipulation in shopware/platform and shopware/core | 严重 | Packagistshopware/core+1 | 已审查 | 2021-04-13 23:13 | 2021-04-13 06:33 |
| GHSA-3PCR-4982-548M | Exposure of .env if project root is configured as web root in shopware/production | 中危 | Packagistshopware/production+1 | 已审查 | 2021-04-13 23:13 | 2026-06-09 07:14 |
| GHSA-QG7C-Q3VQ-RGXR | Leak of information via Store-API aggregations in shopware/platform and shopware/core | 严重 | Packagistshopware/core+1 | 已审查 | 2021-04-13 23:13 | 2021-04-13 06:32 |
| GHSA-5WRH-4JWV-5W78 CVE-2021-21392 | Open redirect via transitional IPv6 addresses on dual-stack networks | 高危 | PyPImatrix-synapse | 已审查 | 2021-04-13 23:13 | 2024-10-01 04:28 |
| GHSA-W9FG-XFFH-P362 CVE-2021-21394 | Denial of service (via resource exhaustion) due to improper input validation on third-party identifier endpoints | 中危 | PyPImatrix-synapse | 已审查 | 2021-04-13 23:12 | 2024-09-25 04:08 |
| GHSA-JRH7-MHHX-6H88 CVE-2021-21393 | Denial of service (via resource exhaustion) due to improper input validation on groups/communities endpoints | 中危 | PyPImatrix-synapse | 已审查 | 2021-04-13 23:12 | 2024-10-01 04:39 |
| GHSA-7FJP-G4M7-FX23 | User (Encrypted) Password Field Being Serialised | 低危 | Packagistpwweb/laravel-core | 已审查 | 2021-04-13 23:12 | 2021-04-13 04:05 |