检索 GitHub Advisory Database 中的已审查与未审查安全公告。
| 公告编号 | 摘要 | 级别 | 生态 / 软件包 | 审查状态 | 发布时间 | 修改时间 |
|---|---|---|---|---|---|---|
| GHSA-Q88G-QX42-XFRH CVE-2021-27367 | Path traversal in bolt/core | 高危 | Packagistbolt/core | 已审查 | 2021-02-19 04:51 | 2021-02-24 14:53 |
| GHSA-288C-CQ4H-88GQ CVE-2020-25649 | XML External Entity (XXE) Injection in Jackson Databind |
当前筛选结果 366,391 条 · 时间按北京时间显示
| 高危 |
Mavencom.fasterxml.jackson.core:jackson-databind |
| 已审查 |
| 2021-02-19 04:51 |
| 2024-03-15 08:30 |
| GHSA-PJ4G-4488-WMXM CVE-2019-16328 | Dynamic modification of RPyC service due to missing security check | 高危 | PyPIrpyc | 已审查 | 2021-02-18 03:50 | 2021-09-28 06:48 |
| GHSA-2M8V-572M-FF2V CVE-2021-21315 | Command Injection Vulnerability | 高危 | npmsysteminformation | 已审查 | 2021-02-17 00:51 | 2025-10-23 03:06 |
| GHSA-PG53-56CG-4M8Q CVE-2021-21310 | Token verification bug in next-auth | 低危 | npmnext-auth | 已审查 | 2021-02-12 05:36 | 2021-02-23 04:43 |
| GHSA-43F8-P5W3-5M25 CVE-2018-7667 | vrana/adminer vulnerable to SSRF by connecting to privileged ports | 中危 | Packagistvrana/adminer | 已审查 | 2021-02-12 05:20 | 2023-09-22 03:57 |
| GHSA-W46J-8HM6-H8MM CVE-2021-23327 | XSS in apexcharts | 中危 | npmapexcharts | 已审查 | 2021-02-12 04:47 | 2023-09-13 04:53 |
| GHSA-R3J7-X2G5-9GX6 CVE-2021-27185 | Command injection in samba-client | 严重 | npmsamba-client | 已审查 | 2021-02-12 04:47 | 2022-05-03 11:44 |
| GHSA-M56G-3G8V-2RXW | XSS in Adminer 已撤回 | 中危 | Packagistvrana/adminer | 已审查 | 2021-02-12 04:46 | 2021-02-12 04:37 |
| GHSA-X5R2-HJ5C-8JX6 CVE-2021-21311 | SSRF in adminer | 高危 | Packagistvrana/adminer | 已审查 | 2021-02-12 04:42 | 2025-10-23 03:05 |
| GHSA-9PGX-GCPH-MPQR CVE-2020-35572 | vrana/adminer via XSS in the history parameter in SQL command | 中危 | Packagistvrana/adminer | 已审查 | 2021-02-12 04:42 | 2023-09-22 03:59 |
| GHSA-PMW4-JGXX-PCQ9 CVE-2020-26299 | File System Bounds Escape | 中危 | npmftp-srv | 已审查 | 2021-02-11 02:11 | 2021-02-12 01:04 |
| GHSA-7GGW-H8PP-R95R CVE-2021-3311 | October CMS Session ID not invalidated after logout | 严重 | Packagistoctober/rain | 已审查 | 2021-02-10 10:32 | 2023-09-08 01:47 |
| GHSA-F2VV-H5X4-57GR | Leak of information via Store-API | 严重 | Packagistshopware/platform | 已审查 | 2021-02-10 10:32 | 2021-10-06 00:12 |
| GHSA-JVG4-9RC2-WVCR | Generation of fake documents via public GET-call | 低危 | Packagistshopware/platform | 已审查 | 2021-02-10 10:32 | 2021-02-10 10:17 |
| GHSA-29Q4-GXJQ-RX5C CVE-2021-21479 | Remote Code Execution in SCIMono | 高危 | Mavencom.sap.scimono:scimono-server | 已审查 | 2021-02-10 10:31 | 2021-02-10 09:48 |
| GHSA-RHM9-P9W5-FWM7 CVE-2020-36242 | PyCA Cryptography symmetrically encrypting large values can lead to integer overflow | 高危 | PyPIcryptography | 已审查 | 2021-02-10 09:32 | 2024-09-14 02:33 |
| GHSA-4R62-V4VQ-HR96 CVE-2021-21306 | Regular Expression Denial of Service (REDoS) in Marked | 中危 | npmmarked | 已审查 | 2021-02-09 05:17 | 2021-02-09 05:17 |
| GHSA-5MCR-GQ6C-3HQ2 CVE-2021-21290 | Local Information Disclosure Vulnerability in Netty on Unix-Like systems | 中危 | Mavenio.netty:netty+2 | 已审查 | 2021-02-09 05:17 | 2022-04-19 23:19 |
| GHSA-93XJ-8MRV-444M CVE-2021-21240 | Regular Expression Denial of Service (REDoS) in httplib2 | 高危 | PyPIhttplib2 | 已审查 | 2021-02-09 03:41 | 2024-09-24 00:13 |
| GHSA-CF3W-G86H-35X4 CVE-2021-21305 | Code Injection vulnerability in CarrierWave::RMagick | 高危 | RubyGemscarrierwave | 已审查 | 2021-02-09 03:16 | 2022-04-28 03:58 |
| GHSA-FWCM-636P-68R5 CVE-2021-21288 | Server-side request forgery in CarrierWave | 中危 | RubyGemscarrierwave | 已审查 | 2021-02-09 03:16 | 2023-05-16 23:41 |
| GHSA-RRQM-P222-8PH2 CVE-2021-21304 | Prototype Pollution in Dynamoose | 高危 | npmdynamoose | 已审查 | 2021-02-09 01:44 | 2022-05-27 03:58 |
| GHSA-4PH2-8337-HM62 | Key Caching behavior in the DynamoDB Encryption Client. | 低危 | PyPIdynamodb-encryption-sdk | 已审查 | 2021-02-09 01:43 | 2021-02-06 05:22 |
| GHSA-W736-HF9P-QQH3 | Key Caching behavior in the DynamoDB Encryption Client. | 低危 | Mavencom.amazonaws:aws-dynamodb-encryption-java | 已审查 | 2021-02-09 01:43 | 2021-02-06 05:21 |