检索 GitHub Advisory Database 中的已审查与未审查安全公告。
| 公告编号 | 摘要 | 级别 | 生态 / 软件包 | 审查状态 | 发布时间 | 修改时间 |
|---|---|---|---|---|---|---|
| GHSA-3FW8-66WF-PR7M CVE-2013-7370 | methodOverride Middleware Reflected Cross-Site Scripting in connect | 低危 | npmconnect | 已审查 | 2020-09-01 06:41 | 2021-04-08 03:56 |
| GHSA-673X-F5WX-FXPW CVE-2020-15159 | Cross Site Scripting and RCE in baserCMS |
当前筛选结果 366,391 条 · 时间按北京时间显示
| 低危 |
Packagistbaserproject/basercms |
| 已审查 |
| 2020-08-29 05:45 |
| 2021-01-08 07:39 |
| GHSA-CHQJ-J4FH-RW7M CVE-2019-16728 | Cross-Site Scripting in dompurify | 中危 | npmdompurify | 已审查 | 2020-08-29 05:25 | 2023-09-14 02:51 |
| GHSA-49RV-G7W5-M8XX CVE-2017-18635 | Cross-Site Scripting in @novnc/novnc | 中危 | npm@novnc/novnc | 已审查 | 2020-08-29 05:24 | 2021-09-24 03:08 |
| GHSA-4R3M-J6X5-48M3 CVE-2020-15155 | Cross Site Scripting(XSS) Vulnerability in Latest Release 4.3.6 Site basic settings | 低危 | Packagistbaserproject/basercms | 已审查 | 2020-08-29 05:20 | 2021-01-08 07:39 |
| GHSA-CPXC-67RC-C775 CVE-2020-15154 | Cross Site Scripting in baserCMS | 低危 | Packagistbaserproject/basercms | 已审查 | 2020-08-29 04:48 | 2021-01-08 07:39 |
| GHSA-5J4M-89XF-MF5P | Missing Origin Validation in parcel-bundler 已撤回 | 中危 | npmparcel-bundler | 已审查 | 2020-08-28 06:58 | 2020-08-28 06:58 |
| GHSA-C5J4-VW9M-XC95 | Open Redirect in hekto 已撤回 | 低危 | npmhekto | 已审查 | 2020-08-28 06:44 | 2020-08-28 06:44 |
| GHSA-C6H2-MPC6-232H | Command Injection in dns-sync 已撤回 | 中危 | npmdns-sync | 已审查 | 2020-08-28 06:26 | 2020-08-28 06:27 |
| GHSA-R587-7JH2-4QR3 | Server secret was included in static assets and served to clients | 严重 | npmflood | 已审查 | 2020-08-27 03:32 | 2022-09-10 04:56 |
| GHSA-43M5-C88R-CJVV CVE-2020-15156 | XSS due to lack of CSRF validation for replying/publishing | 中危 | npmnodebb-plugin-blog-comments | 已审查 | 2020-08-27 02:55 | 2021-01-08 07:39 |
| GHSA-HRPQ-R399-WHGW CVE-2020-7710 | Sandbox Breakout / Arbitrary Code Execution in safe-eval | 严重 | npmsafe-eval | 已审查 | 2020-08-26 07:40 | 2023-09-12 07:01 |
| GHSA-GR4J-R575-G665 | Cross-Site Scripting in highcharts | 高危 | npmhighcharts | 已审查 | 2020-08-25 22:04 | 2023-11-11 02:07 |
| GHSA-7257-96VG-QF6X CVE-2020-15147 | Remote Code Execution in Red Discord Bot | 高危 | PyPIRed-DiscordBot | 已审查 | 2020-08-22 01:03 | 2024-10-27 02:37 |
| GHSA-55J9-849X-26H4 CVE-2020-15140 | Remote Code Execution in Red Discord Bot | 中危 | PyPIRed-DiscordBot | 已审查 | 2020-08-22 00:30 | 2024-10-26 05:45 |
| GHSA-2828-9VH6-9M6J CVE-2020-6173 | Client Denial of Service on TUF | 中危 | PyPItuf | 已审查 | 2020-08-22 00:25 | 2024-11-19 06:40 |
| GHSA-PWQF-9H7J-7MV8 CVE-2020-6174 | Incorrect threshold signature computation in TUF | 严重 | PyPItuf | 已审查 | 2020-08-22 00:25 | 2024-11-19 06:40 |
| GHSA-H29R-4VQP-8JXF | Cross-Site Scripting in keystone 已撤回 | 中危 | npmkeystone | 已审查 | 2020-08-21 01:21 | 2020-08-21 01:21 |
| GHSA-5WG4-74H6-Q47V CVE-2020-7689 | Integer Overflow or Wraparound and Use of a Broken or Risky Cryptographic Algorithm in bcrypt | 中危 | npmbcrypt | 已审查 | 2020-08-20 22:38 | 2021-07-30 04:49 |
| GHSA-9X4C-63PF-525F CVE-2020-15142 | openapi-python-client Arbitrary Code Generation vulnerability | 高危 | PyPIopenapi-python-client | 已审查 | 2020-08-20 22:38 | 2024-10-08 00:47 |
| GHSA-7WGR-7666-7PWJ CVE-2020-15141 | Path Traversal in openapi-python-client | 低危 | PyPIopenapi-python-client | 已审查 | 2020-08-20 22:38 | 2024-10-08 00:46 |
| GHSA-X4RF-4MQF-CM8W | Open Redirect in ecstatic 已撤回 | 中危 | npmecstatic | 已审查 | 2020-08-20 06:44 | 2020-08-20 06:44 |
| GHSA-M45F-4828-5CV5 | Regular Expression Denial of Service in highcharts 已撤回 | 中危 | npmhighcharts | 已审查 | 2020-08-20 06:39 | 2020-08-20 06:39 |
| GHSA-69P9-9QM9-H447 | Sandbox Breakout / Arbitrary Code Execution in safer-eval 已撤回 | 中危 | npmsafer-eval | 已审查 | 2020-08-20 06:34 | 2020-08-20 06:34 |
| GHSA-Q9R2-F3VC-RJG8 | Command Injection in macaddress 已撤回 | 高危 | npmmacaddress | 已审查 | 2020-08-20 06:28 | 2020-08-20 06:28 |