检索 GitHub Advisory Database 中的已审查与未审查安全公告。
| 公告编号 | 摘要 | 级别 | 生态 / 软件包 | 审查状态 | 发布时间 | 修改时间 |
|---|---|---|---|---|---|---|
| GHSA-C2Q3-4QRH-FM48 CVE-2020-14061 | Deserialization of untrusted data in Jackson Databind | 高危 | Mavencom.fasterxml.jackson.core:jackson-databind | 已审查 | 2020-06-18 22:44 | 2021-10-22 05:08 |
| GHSA-C265-37VJ-CWCC CVE-2020-14062 | Deserialization of untrusted data in Jackson Databind |
当前筛选结果 366,391 条 · 时间按北京时间显示
| 高危 |
Mavencom.fasterxml.jackson.core:jackson-databind |
| 已审查 |
| 2020-06-18 22:44 |
| 2026-05-07 02:37 |
| GHSA-J823-4QCH-3RGM CVE-2020-14060 | Deserialization of untrusted data in Jackson Databind | 高危 | Mavencom.fasterxml.jackson.core:jackson-databind | 已审查 | 2020-06-18 22:44 | 2026-05-07 02:37 |
| GHSA-MC6H-4QGP-37QH CVE-2020-14195 | Deserialization of untrusted data in Jackson Databind | 高危 | Mavencom.fasterxml.jackson.core:jackson-databind | 已审查 | 2020-06-18 22:44 | 2024-03-15 08:37 |
| GHSA-MHP6-PXH8-R675 CVE-2020-7676 | Angular vulnerable to Cross-site Scripting | 中危 | npmangular | 已审查 | 2020-06-18 22:19 | 2025-11-21 03:31 |
| GHSA-P4X4-RW2P-8J8M CVE-2020-4054 | Cross-site Scripting in Sanitize | 高危 | RubyGemssanitize | 已审查 | 2020-06-17 06:08 | 2023-05-17 00:18 |
| GHSA-CXJC-R2FP-7MQ6 CVE-2020-4051 | Cross-site Scripting in dijit editor's LinkDialog plugin | 低危 | npmdijit | 已审查 | 2020-06-16 05:53 | 2023-03-01 09:09 |
| GHSA-6HGM-866R-3CJV CVE-2015-6420 | Insecure Deserialization in Apache Commons Collection | 高危 | Mavencommons-collections:commons-collections+4 | 已审查 | 2020-06-16 04:36 | 2023-05-31 23:55 |
| GHSA-6PHF-73Q6-GH87 CVE-2019-10086 | Insecure Deserialization in Apache Commons Beanutils | 高危 | Mavencommons-beanutils:commons-beanutils | 已审查 | 2020-06-16 04:36 | 2022-02-09 06:07 |
| GHSA-MVR2-9PJ6-7W5J CVE-2018-10237 | Denial of Service in Google Guava | 中危 | Mavencom.google.guava:guava+5 | 已审查 | 2020-06-16 04:35 | 2023-09-08 06:25 |
| GHSA-XXGP-PCFC-3VGC CVE-2017-7536 | Privilege Escalation in Hibernate Validator | 高危 | Mavenorg.hibernate:hibernate-validator | 已审查 | 2020-06-16 03:57 | 2022-07-20 22:21 |
| GHSA-MM9X-G8PC-W292 CVE-2020-11612 | Denial of Service in Netty | 高危 | Mavenio.netty:netty-handler | 已审查 | 2020-06-16 03:36 | 2021-06-16 01:31 |
| GHSA-FFVQ-7W96-97P7 CVE-2018-15756 | Denial of Service in Spring Framework | 高危 | Mavenorg.springframework:spring-core | 已审查 | 2020-06-16 03:34 | 2024-06-06 01:09 |
| GHSA-2PPP-9496-P23Q CVE-2020-5408 | Insufficient Entropy in Spring Security | 中危 | Mavenorg.springframework.security:spring-security-core | 已审查 | 2020-06-16 03:34 | 2021-06-10 04:15 |
| GHSA-VMQM-G3VH-847M CVE-2012-0881 | Denial of service in Apache Xerces2 | 高危 | Mavenxerces:xercesImpl | 已审查 | 2020-06-16 02:51 | 2021-07-23 06:28 |
| GHSA-334P-WV2M-W3VP CVE-2009-2625 | Denial of service in Apache Xerces2 | 中危 | Mavenxerces:xercesImpl | 已审查 | 2020-06-16 02:51 | 2020-06-15 23:55 |
| GHSA-C9HW-WF7X-JP9J CVE-2020-1938 | Improper Privilege Management in Tomcat | 严重 | Mavenorg.apache.tomcat.embed:tomcat-embed-core | 已审查 | 2020-06-16 02:51 | 2025-10-23 01:46 |
| GHSA-QCXH-W3J9-58QR CVE-2019-0199 | Apache Tomcat Denial of Service vulnerability | 高危 | Mavenorg.apache.tomcat:tomcat-coyote+1 | 已审查 | 2020-06-16 02:51 | 2026-05-21 02:50 |
| GHSA-WRR7-33FX-RCVJ | Deserialization of Untrusted Data in jackson-databind 已撤回 | 高危 | Mavencom.fasterxml.jackson.core:jackson-databind | 已审查 | 2020-06-16 02:44 | 2020-06-17 04:41 |
| GHSA-6WQP-V4V6-C87C CVE-2018-12023 | Deserialization of Untrusted Data | 高危 | Mavencom.fasterxml.jackson.core:jackson-databind | 已审查 | 2020-06-16 02:44 | 2024-03-02 05:50 |
| GHSA-F3J5-RMMP-3FC5 CVE-2019-17267 | Improper Input Validation in jackson-databind | 严重 | Mavencom.fasterxml.jackson.core:jackson-databind | 已审查 | 2020-06-16 02:44 | 2023-09-14 02:28 |
| GHSA-MPGR-2CX9-327H CVE-2020-4045 | Information disclosure in SSB-DB | 高危 | npmssb-db | 已审查 | 2020-06-12 05:09 | 2021-01-09 04:12 |
| GHSA-3GW4-M5W7-V89C CVE-2020-11090 | Uncontrolled Resource Consumption in Indy Node | 严重 | PyPIindy-node | 已审查 | 2020-06-11 08:04 | 2024-11-19 00:26 |
| GHSA-P66X-2CV9-QQ3V CVE-2014-0114 | Arbitrary code execution in Apache Commons BeanUtils | 高危 | Mavencommons-beanutils:commons-beanutils | 已审查 | 2020-06-11 07:38 | 2024-06-05 23:57 |
| GHSA-58PP-9C76-5625 CVE-2020-11112 | jackson-databind mishandles the interaction between serialization gadgets and typing | 高危 | Mavencom.fasterxml.jackson.core:jackson-databind | 已审查 | 2020-06-11 05:12 | 2021-08-30 22:10 |