—— |
| 未审查 |
| 2026-08-22 05:31 |
| 2026-08-22 05:31 |
| GHSA-M9Q2-X2X6-X85F CVE-2026-67619 | 无摘要 | 未知 | —— | 未审查 | 2026-08-22 05:31 | 2026-08-22 05:31 |
| GHSA-WX23-RGR5-65RH CVE-2026-77795 | 无摘要 | 中危 | —— | 未审查 | 2026-08-22 05:31 | 2026-08-22 05:31 |
| GHSA-RR8M-J7X3-53WJ CVE-2026-56875 | 无摘要 | 未知 | —— | 未审查 | 2026-08-22 05:31 | 2026-08-22 05:31 |
| GHSA-Q329-HWC8-2X8J CVE-2026-76876 | 无摘要 | 高危 | —— | 未审查 | 2026-08-22 05:31 | 2026-08-22 05:31 |
| GHSA-P9JC-J6CX-2X36 CVE-2026-67362 | 无摘要 | 中危 | —— | 未审查 | 2026-08-22 05:31 | 2026-08-22 05:31 |
| GHSA-MRF5-4PJ3-6JVF CVE-2026-67358 | 无摘要 | 中危 | —— | 未审查 | 2026-08-22 05:31 | 2026-08-22 05:31 |
| GHSA-J3Q5-H4VG-3PFP CVE-2026-67360 | 无摘要 | 中危 | —— | 未审查 | 2026-08-22 05:31 | 2026-08-22 05:31 |
| GHSA-729H-PF7J-C7XW CVE-2026-67359 | 无摘要 | 高危 | —— | 未审查 | 2026-08-22 05:31 | 2026-08-22 05:31 |
| GHSA-42M7-JQH7-G85C CVE-2026-74252 | 无摘要 | 高危 | —— | 未审查 | 2026-08-22 05:31 | 2026-08-22 05:31 |
| GHSA-2VMQ-JQV2-9GFV CVE-2026-67361 | 无摘要 | 中危 | —— | 未审查 | 2026-08-22 05:31 | 2026-08-22 05:31 |
| GHSA-66MM-25PP-RFFF CVE-2026-77415 | JSONata vulnerable to Arbitrary Code Execution via crafted JSONata expressions | 严重 | npmjsonata | 已审查 | 2026-08-22 05:04 | 2026-08-22 05:04 |
| GHSA-2943-5XFG-GQ5F CVE-2026-77414 | JSONata vulnerable to Arbitrary Code Execution via crafted JSONata expressions | 严重 | npmjsonata | 已审查 | 2026-08-22 04:58 | 2026-08-22 04:58 |
| GHSA-2CP2-2R3C-7P7R CVE-2026-68508 | Hydra: hydra.utils.instantiate with untrusted config can lead to code execution | 高危 | PyPIhydra-core | 已审查 | 2026-08-22 04:57 | 2026-08-22 04:57 |
| GHSA-5H77-88J3-R659 CVE-2026-63135 | YOURLS has stored XSS in referrer statistics chart via crafted Referer header | 高危 | Packagistyourls/yourls | 已审查 | 2026-08-22 04:57 | 2026-08-22 04:57 |
| GHSA-8GQ3-VP5J-2GRP CVE-2026-77413 | JSONata: Arbitrary Code Execution via crafted JSONata expressions | 严重 | npmjsonata | 已审查 | 2026-08-22 04:57 | 2026-08-22 04:57 |
| GHSA-XHJ3-7XW9-VR34 CVE-2026-77354 | kin-openapi has uncontrolled resource consumption in openapi3filter deepObject query parameter decoding | 高危 | Gogithub.com/getkin/kin-openapi | 已审查 | 2026-08-22 04:56 | 2026-08-22 04:56 |
| GHSA-X2RJ-828P-HX9M CVE-2026-61539 | Xinference vulnerable to remote code execution via unsafe `eval()` in Llama3 tool-call parsing | 严重 | PyPIxinference | 已审查 | 2026-08-22 04:56 | 2026-08-22 04:56 |
| GHSA-HRWP-4HH9-C8R8 CVE-2026-59989 | Phalcon Volt compiler `join` filter compile-time PHP code injection (SSTI leads to RCE) | 严重 | Packagistphalcon/cphalcon | 已审查 | 2026-08-22 04:55 | 2026-08-28 00:33 |
| GHSA-MMFR-PMJX-HW9W CVE-2026-76905 | kin-openapi openai3filter: nil-pointer panic in ConvertErrors on malformed multipart/form-data body enables unauthenticated DoS | 高危 | Gogithub.com/getkin/kin-openapi | 已审查 | 2026-08-22 04:55 | 2026-08-22 04:55 |
| GHSA-26W5-6G95-GJ28 CVE-2026-64679 | Atlantis Workspace Handling has Path Traversal that Allows Out-of-Bounds Directory Deletion/Creation | 高危 | Gogithub.com/runatlantis/atlantis | 已审查 | 2026-08-22 04:55 | 2026-08-22 04:55 |
| GHSA-CQMQ-8755-7XVH CVE-2026-63421 | Keystone vulnerable to `graphql.maxTake` bypass with negative `take` | 高危 | npm@keystone-6/core | 已审查 | 2026-08-22 04:55 | 2026-08-22 04:55 |
| GHSA-JG4P-G6XJ-4QMF CVE-2026-61824 | Defuddle vulnerable to XSS via unescaped attribute interpolation in site extractors | 高危 | npmdefuddle | 已审查 | 2026-08-22 04:54 | 2026-08-22 04:54 |
| GHSA-MQJF-5F49-2FJH CVE-2026-76904 | GeoTools has unauthenticated SQL injection in the jsonArrayContains filter function against PostGIS layers | 严重 | Mavenorg.geotools.jdbc:gt-jdbc-postgis | 已审查 | 2026-08-22 04:25 | 2026-08-22 04:26 |