检索 GitHub Advisory Database 中的已审查与未审查安全公告。
| 公告编号 | 摘要 | 级别 | 生态 / 软件包 | 审查状态 | 发布时间 | 修改时间 |
|---|---|---|---|---|---|---|
| GHSA-FHJF-83WG-R2J9 CVE-2019-10746 | Prototype Pollution in mixin-deep | 严重 | npmmixin-deep | 已审查 | 2019-08-28 01:42 | 2023-11-30 04:55 |
| GHSA-4Q98-WR72-H35W CVE-2019-12400 | Improper input validation in Apache Santuario XML Security for Java |
当前筛选结果 366,391 条 · 时间按北京时间显示
| 中危 |
Mavenorg.apache.santuario:xmlsec |
| 已审查 |
| 2019-08-28 01:41 |
| 2021-08-18 06:16 |
| GHSA-F5F4-M7QP-W6GC CVE-2019-15477 | Cross-site Scripting in Jooby | 中危 | Mavenorg.jooby:jooby | 已审查 | 2019-08-28 01:40 | 2023-09-12 04:37 |
| GHSA-VX6V-2RG6-865H CVE-2019-15486 | Cross-site Scripting in django-js-reverse | 中危 | PyPIdjango-js-reverse | 已审查 | 2019-08-28 01:39 | 2024-09-17 05:48 |
| GHSA-8CPW-73F2-W58M CVE-2019-15482 | Cross-Site Scripting in selectize-plugin-a11y | 中危 | npmselectize-plugin-a11y | 已审查 | 2019-08-28 01:38 | 2021-08-18 06:13 |
| GHSA-5QFV-RR79-CHX5 CVE-2019-15488 | Cross-site Scripting in Ignite Realtime Openfire | 中危 | Mavenorg.igniterealtime.openfire:xmppserver | 已审查 | 2019-08-28 01:37 | 2022-11-18 02:22 |
| GHSA-JP6R-XCJJ-5H7R CVE-2019-15532 | Cross-Site Scripting in cyberchef | 中危 | npmcyberchef | 已审查 | 2019-08-28 01:36 | 2021-08-18 06:11 |
| GHSA-3GX7-XHV7-5MX3 CVE-2019-15657 | Arbitrary Code Execution in eslint-utils | 严重 | npmeslint-utils | 已审查 | 2019-08-27 00:59 | 2021-09-01 05:04 |
| GHSA-XQH8-5J36-4556 CVE-2019-15658 | SQL Injection in connect-pg-simple | 高危 | npmconnect-pg-simple | 已审查 | 2019-08-27 00:59 | 2022-06-16 02:39 |
| GHSA-MR7P-25V2-35WR CVE-2019-14751 | NLTK Vulnerable To Path Traversal | 高危 | PyPInltk | 已审查 | 2019-08-24 05:53 | 2024-10-07 22:49 |
| GHSA-77JF-FJJF-XCWW CVE-2019-9155 | Invalid Curve Attack in openpgp | 中危 | npmopenpgp | 已审查 | 2019-08-24 05:42 | 2021-07-28 05:15 |
| GHSA-QWQC-28W3-FWW6 CVE-2019-9153 | Message Signature Bypass in openpgp | 高危 | npmopenpgp | 已审查 | 2019-08-24 05:42 | 2021-08-18 06:06 |
| GHSA-HFMF-Q43V-2FFJ CVE-2019-9154 | Improper Key Verification in openpgp | 高危 | npmopenpgp | 已审查 | 2019-08-24 05:42 | 2021-08-18 06:08 |
| GHSA-5Q54-8P9J-X74J CVE-2019-14517 | Cross-site Scripting in pandao editor.md | 中危 | npmeditor.md | 已审查 | 2019-08-23 08:05 | 2021-08-18 05:59 |
| GHSA-X65C-4FGJ-5FC3 CVE-2019-14653 | Cross-site Scripting in pandao | 中危 | npmeditor.md | 已审查 | 2019-08-23 08:05 | 2021-08-18 05:58 |
| GHSA-CWQQ-W8C3-R2JW CVE-2019-14262 | Uncontrolled Resource Consumption in MetadataExtractor | 高危 | NuGetMetadataExtractor | 已审查 | 2019-08-23 08:04 | 2021-08-18 05:57 |
| GHSA-RCH7-F4H5-X9RJ | Identity Spoofing in libp2p-secio | 严重 | npmlibp2p-secio | 已审查 | 2019-08-23 08:04 | 2021-08-18 05:32 |
| GHSA-65P8-3HM4-H9H8 | Denial of Service in rgb2hex | 中危 | npmrgb2hex | 已审查 | 2019-08-23 08:04 | 2021-08-18 05:23 |
| GHSA-3J5X-7CCF-PPGM CVE-2018-20858 | Cross-site scripting in recommender-xblock | 中危 | PyPIrecommender-xblock | 已审查 | 2019-08-22 00:15 | 2024-10-27 02:36 |
| GHSA-GQ9M-QVPX-68HC CVE-2019-14806 | Pallets Werkzeug Insufficient Entropy | 高危 | PyPIwerkzeug | 已审查 | 2019-08-22 00:15 | 2024-11-20 02:05 |
| GHSA-66RH-8FW6-59Q6 CVE-2019-10745 | assign-deep Vulnerable to Prototype Pollution | 高危 | npmassign-deep | 已审查 | 2019-08-22 00:15 | 2022-08-04 00:21 |
| GHSA-4P8F-MMFJ-R45G CVE-2018-20975 | Cross-site scripting in fat_free_crm | 中危 | RubyGemsfat_free_crm | 已审查 | 2019-08-22 00:15 | 2023-08-26 04:28 |
| GHSA-333G-RPR4-7HXQ CVE-2019-15224 | rest-client Gem Contains Malicious Code | 严重 | RubyGemsawesome-bot+9 | 已审查 | 2019-08-20 22:29 | 2023-08-29 05:39 |
| GHSA-8RF6-W2MX-4XJH CVE-2019-15149 | Undirectional routing wasn't respected in some cases in Mitogen 已撤回 | 严重 | PyPImitogen | 已审查 | 2019-08-20 07:45 | 2024-09-26 01:36 |
| GHSA-CR5J-953J-XW5P CVE-2019-5477 | Nokogiri Command Injection Vulnerability | 严重 | RubyGemsnokogiri+1 | 已审查 | 2019-08-20 03:27 | 2023-08-28 22:05 |