检索 GitHub Advisory Database 中的已审查与未审查安全公告。
| 公告编号 | 摘要 | 级别 | 生态 / 软件包 | 审查状态 | 发布时间 | 修改时间 |
|---|---|---|---|---|---|---|
| GHSA-8VH8-VC28-M2HF CVE-2019-10212 | Potential to access user credentials from the log files when debug logging enabled | 严重 | Mavenio.undertow:undertow-core | 已审查 | 2019-11-20 09:33 | 2022-02-12 05:12 |
| GHSA-H7QW-MXRM-C6H2 CVE-2016-6485 |
当前筛选结果 366,391 条 · 时间按北京时间显示
| 高危 |
Packagistmagento/community-edition+1 |
| 已审查 |
| 2019-11-20 09:33 |
| 2025-02-11 04:07 |
| GHSA-6G88-VR3V-76MF CVE-2019-19010 | Eval injection in Supybot/Limnoria | 严重 | PyPIlimnoria | 已审查 | 2019-11-20 09:31 | 2024-10-01 00:22 |
| GHSA-PGWJ-PRPQ-JPC2 CVE-2019-10910 | Symfony Service IDs Allow Injection | 严重 | Packagistsymfony/dependency-injection+2 | 已审查 | 2019-11-19 01:27 | 2025-05-30 06:51 |
| GHSA-89R3-RCPJ-H7W6 CVE-2019-0207 | Path traversal attack on Windows platforms | 高危 | Mavenorg.apache.tapestry:tapestry-core | 已审查 | 2019-11-19 01:19 | 2023-03-07 04:46 |
| GHSA-5WHQ-J5QG-WJVP CVE-2019-12562 | Stored Cross-Site Scripting vulnerability in admin component of DotNetNuke | 中危 | NuGetDotNetNuke.Core | 已审查 | 2019-11-19 01:16 | 2021-08-19 06:33 |
| GHSA-425C-CCF3-3JRR CVE-2019-16762 | Critical severity vulnerability that affects slpjs | 严重 | npmslpjs | 已审查 | 2019-11-16 07:10 | 2021-01-09 03:57 |
| GHSA-WMX6-VXCF-C3GR CVE-2019-16761 | Validation Bypass in slp-validate | 严重 | npmslp-validate | 已审查 | 2019-11-16 07:10 | 2021-01-09 04:11 |
| GHSA-PF8F-W267-MQ2H CVE-2019-18978 | The rack-cors rubygem may allow directory traveral | 中危 | RubyGemsrack-cors | 已审查 | 2019-11-16 04:26 | 2023-01-24 04:22 |
| GHSA-CFF7-6H4Q-Q5PJ CVE-2019-18848 | JSON-jwt Gem lacked element count during splitting of JWE string | 高危 | RubyGemsjson-jwt | 已审查 | 2019-11-14 23:25 | 2023-08-26 07:33 |
| GHSA-GJMW-VF9H-G25V CVE-2019-17531 | jackson-databind polymorphic typing issue | 严重 | Mavencom.fasterxml.jackson.core:jackson-databind | 已审查 | 2019-11-13 08:32 | 2023-09-14 22:55 |
| GHSA-FMMC-742Q-JG75 CVE-2019-16943 | jackson-databind polymorphic typing issue | 严重 | Mavencom.fasterxml.jackson.core:jackson-databind | 已审查 | 2019-11-13 08:32 | 2023-09-14 22:55 |
| GHSA-6R58-4XGR-GM6M CVE-2019-12617 | SilverStripe Priviledge escalation through cache pollution | 低危 | Packagistsilverstripe/framework | 已审查 | 2019-11-13 07:01 | 2023-09-20 17:57 |
| GHSA-JVX5-RM6Q-GX7P CVE-2019-12245 | Lack of access control on upoaded files | 中危 | Packagistsilverstripe/assets+1 | 已审查 | 2019-11-13 07:01 | 2021-08-19 06:29 |
| GHSA-W7R7-R8R9-VRG2 CVE-2019-12203 | Session fixation in change password form | 中危 | Packagistsilverstripe/framework | 已审查 | 2019-11-13 07:01 | 2021-08-19 06:28 |
| GHSA-CG8J-8W52-735V CVE-2019-12204 | Missing warning can lead to unauthenticated admin access in SilverStripe | 严重 | Packagistsilverstripe/cms+1 | 已审查 | 2019-11-13 07:01 | 2024-02-05 18:39 |
| GHSA-XM6J-X342-GWQ9 CVE-2019-16409 | SilverStripe Versioned Files module Unpublished files are exposed publicly | 中危 | Packagistsilverstripe/framework+1 | 已审查 | 2019-11-13 07:01 | 2024-02-08 02:26 |
| GHSA-G996-Q5R8-W7G2 CVE-2019-10909 | Symfony Cross-site Scripting (XSS) vulnerability | 中危 | Packagistdrupal/core+3 | 已审查 | 2019-11-13 07:00 | 2024-02-14 23:22 |
| GHSA-FM68-89M8-4GJJ CVE-2019-8233 | Composer JavaScript injection possible via html comments | 中危 | Packagistmagento/community-edition | 已审查 | 2019-11-13 06:59 | 2023-09-06 21:49 |
| GHSA-XV69-F7X5-R4QW CVE-2019-8145 | Magento Cross-Site Scripting via Attribute Set Name | 中危 | Packagistmagento/community-edition | 已审查 | 2019-11-13 06:59 | 2024-02-03 02:12 |
| GHSA-62FX-3V4F-MWXM CVE-2019-8133 | Bypass of sitemp access restrictions | 中危 | Packagistmagento/community-edition | 已审查 | 2019-11-13 06:59 | 2024-02-12 19:58 |
| GHSA-3Q5X-7MXP-RP6J CVE-2019-8135 | Remote code execution via vulnerable Symphony dependecy injection | 严重 | Packagistmagento/community-edition | 已审查 | 2019-11-13 06:59 | 2024-02-12 19:59 |
| GHSA-89CH-HQF9-RGP3 CVE-2019-8121 | Using JS libraries with known security vulnerabilities | 高危 | Packagistmagento/community-edition+1 | 已审查 | 2019-11-13 06:59 | 2019-11-16 04:11 |
| GHSA-427G-2R83-3CCM CVE-2019-8126 | Information disclosure through processing of external XML entities | 中危 | Packagistmagento/community-edition | 已审查 | 2019-11-13 06:59 | 2024-02-12 19:49 |
| GHSA-7QQR-3PJ3-Q2F5 CVE-2019-13236 | XSS issues in the management interface | 中危 | Mavenorg.opencms:opencms-core | 已审查 | 2019-11-13 06:58 | 2021-08-19 06:25 |