检索 GitHub Advisory Database 中的已审查与未审查安全公告。
| 公告编号 | 摘要 | 级别 | 生态 / 软件包 | 审查状态 | 发布时间 | 修改时间 |
|---|---|---|---|---|---|---|
| GHSA-J7J6-7HFX-5522 | Duplicate Advisory: Inconsistent Interpretation of HTTP Requests in Waitress 已撤回 | 高危 | PyPIwaitress | 已审查 | 2022-05-25 01:07 | 2026-02-25 22:07 |
当前筛选结果 998 条 · 时间按北京时间显示
Duplicate Advisory: tree-kill vulnerable to remote code execution 已撤回 |
| 严重 |
npmtree-kill |
| 已审查 |
| 2022-05-25 01:04 |
| 2023-11-09 04:03 |
| GHSA-3MRP-QHCJ-MWV5 CVE-2016-1000021 | Duplicate Advisory: Node CLI Allows Arbitrary File Overwrite 已撤回 | 低危 | npmcli | 已审查 | 2022-05-25 01:02 | 2023-12-09 05:57 |
| GHSA-W8VH-5V64-J3VR CVE-2019-8229 | Withdrawn Advisory: Magento 2 Community Edition RCE Vulnerability 已撤回 | 高危 | Packagistmagento/community-edition | 已审查 | 2022-05-25 01:00 | 2023-09-29 05:18 |
| GHSA-988G-WFWF-5666 CVE-2019-8228 | Withdrawn Advisory: Magento 2 Community Edition XSS Vulnerability 已撤回 | 中危 | Packagistmagento/community-edition | 已审查 | 2022-05-25 01:00 | 2023-09-27 08:33 |
| GHSA-GMG5-R3C4-3FM9 CVE-2019-10226 | Withdrawn Advisory: Fat Free CRM Cross-site Scripting vulnerability 已撤回 | 中危 | RubyGemsfat_free_crm | 已审查 | 2022-05-25 00:47 | 2024-02-24 02:00 |
| GHSA-5H6X-M52P-23PH CVE-2019-0223 | Withdrawn Advisory: Improper Certificate Validation in Apache Qpid Proton 已撤回 | 高危 | Mavenorg.apache.qpid:proton-j | 已审查 | 2022-05-25 00:44 | 2025-07-02 05:15 |
| GHSA-MJQC-5C9X-XFCC | Duplicate advisory: Configuration exposure in github.com/coreos/ignition 已撤回 | 中危 | Gogithub.com/coreos/ignition/v2 | 已审查 | 2022-05-18 08:00 | 2022-06-09 06:35 |
| GHSA-8HMH-MHQV-7638 CVE-2008-7227 | PartialBufferOutputStream2 flush issues 已撤回 | 中危 | Mavenorg.geoserver:gs-main+1 | 已审查 | 2022-05-17 13:51 | 2024-07-11 03:35 |
| GHSA-4PMP-38HF-RMWJ CVE-2014-3555 | OpenStack Neutron allows remote authenticated users to cause a denial of service 已撤回 | 中危 | PyPIneutron | 已审查 | 2022-05-17 11:06 | 2023-04-15 02:33 |
| GHSA-7WFQ-WMX2-3WR4 CVE-2017-16782 | Withdrawn Advisory: Home Assistant Frontend XSS Vulnerability 已撤回 | 中危 | npmhome-assistant-frontend | 已审查 | 2022-05-17 08:20 | 2023-10-11 02:21 |
| GHSA-8CP3-66VR-3R4C CVE-2022-29622 | Formidable arbitrary file upload 已撤回 | 严重 | npmformidable | 已审查 | 2022-05-17 08:01 | 2024-05-01 21:11 |
| GHSA-CR9C-RHQ6-VH53 CVE-2022-29351 | Withdrawn: Code execution via SVG file upload in tiddlywiki 已撤回 | 严重 | npmtiddlywiki | 已审查 | 2022-05-17 08:01 | 2024-05-18 02:36 |
| GHSA-9848-V244-962P CVE-2012-1007 | Withdrawn Advisory: Apache Struts XSS 已撤回 | 中危 | Mavenorg.apache.struts:struts-core+1 | 已审查 | 2022-05-14 10:21 | 2026-05-14 21:03 |
| GHSA-X6RC-54XP-CCXX CVE-2015-3208 | Withdrawn Advisory: Improper Restriction of XML External Entity Reference in Apache ActiveMQ 已撤回 | 严重 | Mavenorg.apache.activemq:activemq-client | 已审查 | 2022-05-14 10:21 | 2025-07-19 01:25 |
| GHSA-7MJ4-2984-955F CVE-2018-18307 | Withdrawn Advisory: AlchemyCMS is vulnerable to stored XSS via the /admin/pictures image field 已撤回 | 中危 | RubyGemsalchemy_cms | 已审查 | 2022-05-14 09:57 | 2025-08-30 04:34 |
| GHSA-PWJQ-6WRH-5W8Q CVE-2018-19960 | Withdrawn Advisory: OnionShare Predictable Pathname 已撤回 | 高危 | PyPIonionshare-cli | 已审查 | 2022-05-14 09:36 | 2023-10-09 08:43 |
| GHSA-7R36-JF3C-JHP4 | Duplicate Advisory: tgstation-server vulnerable to cached user logins in legacy server 已撤回 | 严重 | NuGetTGServiceInterface | 已审查 | 2022-05-13 09:50 | 2023-06-10 06:54 |
| GHSA-574P-6FW4-4HW8 CVE-2018-10917 | Withdrawn Advisory: Pulp Improper Path Parsing 已撤回 | 中危 | PyPIpulpcore | 已审查 | 2022-05-13 09:48 | 2023-10-09 08:43 |
| GHSA-M833-87VF-576C CVE-2017-15113 | ovirt-engine Logs Plaintext Passwords To File 已撤回 | 中危 | Mavenorg.ovirt.engine.sdk:ovirt-engine-sdk-java | 已审查 | 2022-05-13 09:37 | 2023-08-19 05:25 |
| GHSA-JGWG-35HF-XQRR CVE-2019-3876 | Withdrawn Advisory: OpenShift OAuth Server XSS Vulnerability 已撤回 | 中危 | Gogithub.com/openshift/oauth-apiserver | 已审查 | 2022-05-13 09:12 | 2023-09-29 04:29 |
| GHSA-WQ4C-WM6X-JW44 CVE-2018-7160 | Withdrawn Advisory: Node.js Inspector RCE via DNS Rebinding 已撤回 | 高危 | npmnode-inspector | 已审查 | 2022-05-13 09:08 | 2023-10-09 08:42 |
| GHSA-6HVF-XVWM-VRW4 CVE-2019-9628 | XMLTooling Library Incorrectly Handles Some Exceptions 已撤回 | 高危 | Mavenorg.opensaml:xmltooling | 已审查 | 2022-05-13 09:02 | 2023-08-02 02:26 |
| GHSA-XH97-72WW-2W58 | Duplicate Advisory: Improper Verification of Cryptographic Signature in google-oauth-java-client 已撤回 | 高危 | Mavencom.google.oauth-client:google-oauth-client | 已审查 | 2022-05-04 08:00 | 2024-04-09 23:11 |
| GHSA-CGR9-H9QQ-X9FX CVE-2010-1022 | TYPO3 Authentication Bypass via Salted user password hashes extension 已撤回 | 高危 | Packagisttypo3/cms-saltedpasswords | 已审查 | 2022-05-02 14:18 | 2024-02-14 23:09 |