检索 GitHub Advisory Database 中的已审查与未审查安全公告。
| 公告编号 | 摘要 | 级别 | 生态 / 软件包 | 审查状态 | 发布时间 | 修改时间 |
|---|---|---|---|---|---|---|
| GHSA-9XGH-XGW5-P5CW CVE-2017-16057 | nodemssql is malware | 高危 | npmnodemssql | 已审查 | 2018-11-10 01:42 | 2023-09-15 01:55 |
| GHSA-F94M-MQHR-MC29 CVE-2018-18853 | Uncontrolled Resource Consumption in spray-json when parsing decimal digit fields |
当前筛选结果 366,391 条 · 时间按北京时间显示
| 高危 |
Mavenio.spray:spray-json_2.10+2 |
| 已审查 |
| 2018-11-10 01:42 |
| 2022-09-15 06:04 |
| GHSA-W4R4-65MG-45X2 CVE-2018-11770 | org.apache.spark:spark-core_2.10 and org.apache.spark:spark-core_2.11 Improper Authentication vulnerability | 中危 | Mavenorg.apache.spark:spark-core_2.10+1 | 已审查 | 2018-11-10 01:41 | 2024-06-11 05:41 |
| GHSA-Q8XJ-8XG3-W432 CVE-2018-18854 | Uncontrolled Resource Consumption in spray-json | 高危 | Mavenio.spray:spray-json_2.10+2 | 已审查 | 2018-11-10 01:41 | 2022-09-15 06:03 |
| GHSA-X3G3-334F-Q6H4 CVE-2018-19056 | Pandao editor.md vulnerable to DOM XSS | 中危 | npmeditor.md | 已审查 | 2018-11-10 01:41 | 2023-09-09 03:44 |
| GHSA-VXP9-WV2F-WQMW CVE-2018-8021 | Deserialization of Untrusted Data in superset | 严重 | PyPIsuperset | 已审查 | 2018-11-10 01:40 | 2024-10-28 22:18 |
| GHSA-HC9W-4P87-J549 CVE-2018-16472 | Prototype Pollution in cached-path-relative | 高危 | npmcached-path-relative | 已审查 | 2018-11-08 04:46 | 2023-02-04 08:15 |
| GHSA-QV2V-M59F-V5FW CVE-2017-16031 | Insecure randomness in socket.io | 高危 | npmsocket.io | 已审查 | 2018-11-07 08:29 | 2021-09-17 05:04 |
| GHSA-26Q7-G57V-MXCP CVE-2017-16043 | HTML Injection in shout | 中危 | npmshout | 已审查 | 2018-11-07 08:28 | 2020-09-01 02:19 |
| GHSA-XGC9-9W4V-H33H CVE-2018-1321 | High severity vulnerability that affects org.apache.syncope:syncope-core | 高危 | Mavenorg.apache.syncope:syncope-core | 已审查 | 2018-11-07 07:17 | 2024-03-05 04:44 |
| GHSA-V3VF-2R98-XW8W CVE-2018-1322 | Exposure of Sensitive Information to an Unauthorized Actor in Apache syncope-cope | 中危 | Mavenorg.apache.syncope:syncope-core | 已审查 | 2018-11-07 07:17 | 2024-03-05 05:02 |
| GHSA-9H9C-F287-C6VP CVE-2018-17184 | Improper Control of Interaction Frequency in Apache syncope-core | 中危 | Mavenorg.apache.syncope:syncope-core | 已审查 | 2018-11-07 07:16 | 2022-09-15 06:02 |
| GHSA-QFJV-998W-Q48F CVE-2018-17186 | Improper Restriction of XML External Entity Reference in org.apache.syncope:syncope-core | 高危 | Mavenorg.apache.syncope:syncope-core | 已审查 | 2018-11-07 07:15 | 2024-03-05 05:31 |
| GHSA-WV26-RJ8C-4R33 CVE-2018-6874 | Cross-Site Request Forgery (CSRF) in Auth0 | 高危 | npmauth0-js | 已审查 | 2018-11-07 07:15 | 2022-09-15 06:00 |
| GHSA-R3VR-PRWV-86G9 CVE-2014-1927 | python-gnupg's shell_quote function does not properly quote strings | 高危 | PyPIpython-gnupg | 已审查 | 2018-11-07 07:14 | 2024-10-26 05:18 |
| GHSA-C2FX-8R76-GH36 CVE-2013-7323 | python-gnupg allows context-dependent attackers to execute arbitrary commands via shell metacharacters | 高危 | PyPIpython-gnupg | 已审查 | 2018-11-07 07:14 | 2025-04-15 05:45 |
| GHSA-F7PH-P5RV-PHW2 CVE-2016-10547 | Cross-Site Scripting in nunjucks | 中危 | npmnunjucks | 已审查 | 2018-11-07 07:13 | 2020-09-01 02:12 |
| GHSA-2JC8-4R6G-282J CVE-2014-1928 | python-gnupg's shell_quote function does not properly escape characters | 高危 | PyPIpython-gnupg | 已审查 | 2018-11-07 07:13 | 2024-10-26 04:46 |
| GHSA-79MX-88W7-8F7Q CVE-2014-9772 | XSS Filter Bypass via Encoded URL in validator | 中危 | npmvalidator | 已审查 | 2018-11-07 07:12 | 2021-09-03 05:06 |
| GHSA-VCR5-XR9H-MVC5 CVE-2014-1929 | python-gnupg vulnerable to shell injection | 严重 | PyPIpython-gnupg | 已审查 | 2018-11-07 07:12 | 2024-10-26 05:20 |
| GHSA-23XP-J737-282V CVE-2018-16473 | Path Traversal in takeapeek | 中危 | npmtakeapeek | 已审查 | 2018-11-07 07:12 | 2023-09-08 06:55 |
| GHSA-VGRX-W6RG-8FQF CVE-2016-10555 | Forgeable Public/Private Tokens in jwt-simple | 严重 | npmjwt-simple | 已审查 | 2018-11-07 07:12 | 2020-09-01 02:10 |
| GHSA-JHGP-HVJ6-X2P2 CVE-2018-16474 | Stored Cross-Site Scripting in tianma-static | 中危 | npmtianma-static | 已审查 | 2018-11-07 07:12 | 2023-09-13 02:44 |
| GHSA-3HVM-HGPW-RX4J CVE-2018-16475 | Path Traversal in knightjs | 高危 | npmknightjs | 已审查 | 2018-11-07 07:11 | 2023-09-13 04:40 |
| GHSA-7G2W-6R25-2J7P CVE-2018-16461 | Command Injection in libnmap | 中危 | npmlibnmap | 已审查 | 2018-11-01 22:51 | 2023-09-08 02:15 |