检索 GitHub Advisory Database 中的已审查与未审查安全公告。
| 公告编号 | 摘要 | 级别 | 生态 / 软件包 | 审查状态 | 发布时间 | 修改时间 |
|---|---|---|---|---|---|---|
| GHSA-H7F2-F9CC-H2GV | ImageMagick: Memory Leak in YUV decoder when opening of blob fails | 低危 | NuGetMagick.NET-Q16-AnyCPU+16 | 已审查 | 2026-07-24 23:09 | 2026-07-24 23:09 |
| GHSA-JFQ9-Q63X-RC63 |
当前筛选结果 35,190 条 · 时间按北京时间显示
ImageMagick: Memory Leak in TIFF encoder when an allocation fails |
| 低危 |
NuGetMagick.NET-Q16-AnyCPU+16 |
| 已审查 |
| 2026-07-24 22:35 |
| 2026-07-24 22:35 |
| GHSA-99W9-HV66-RFV7 | ImageMagick: Memory Leak in JNG encoder when a blob could not be opened | 低危 | NuGetMagick.NET-Q16-AnyCPU+16 | 已审查 | 2026-07-24 22:35 | 2026-07-24 22:35 |
| GHSA-J8RH-V2R8-V94X | ImageMagick: Memory Leak in hough lines operation when an operation fails | 低危 | NuGetMagick.NET-Q16-AnyCPU+16 | 已审查 | 2026-07-24 22:34 | 2026-07-24 22:34 |
| GHSA-7C7M-FPJW-GWCQ | ImageMagick: Memory Leak in color transformation to log colorspace when operation fails | 低危 | NuGetMagick.NET-Q16-AnyCPU+16 | 已审查 | 2026-07-24 22:34 | 2026-07-24 22:34 |
| GHSA-6VXP-GFWF-HCR9 | ImageMagick: Memory Leak in TIFF encoder when a temporary file could not be created. | 低危 | NuGetMagick.NET-Q16-AnyCPU+16 | 已审查 | 2026-07-24 22:30 | 2026-07-24 22:30 |
| GHSA-HWF3-R46V-5GGX | ImageMagick: Information Disclosure when printing profiles with debug enabled | 低危 | NuGetMagick.NET-Q16-AnyCPU+16 | 已审查 | 2026-07-24 22:29 | 2026-07-24 22:29 |
| GHSA-QVXH-PRVR-85W2 | ImageMagick: Use-After-Free in FormatMagickCaption when memory allocation fails | 低危 | NuGetMagick.NET-Q16-AnyCPU+16 | 已审查 | 2026-07-24 22:29 | 2026-07-24 22:29 |
| GHSA-6JWG-7Q3P-5FQM | ImageMagick: Use-After-Free when freetype initialization fails | 低危 | NuGetMagick.NET-Q16-AnyCPU+16 | 已审查 | 2026-07-24 22:23 | 2026-07-24 22:23 |
| GHSA-VGHG-5JRG-2398 | ImageMagick: Policy Bypass in script operation due to missing checks | 低危 | NuGetMagick.NET-Q16-AnyCPU+16 | 已审查 | 2026-07-24 22:21 | 2026-07-24 22:21 |
| GHSA-V3J6-27VC-7PW2 | ImageMagick: Policy Bypass in APNG encoder and delegates due to a missing check | 低危 | NuGetMagick.NET-Q16-AnyCPU+16 | 已审查 | 2026-07-24 22:20 | 2026-07-24 22:20 |
| GHSA-QH5G-Q395-CX4J | ImageMagick: Heap-use-after-free via XMP profile could result in a crash | 低危 | NuGetMagick.NET-Q16-AnyCPU+16 | 已审查 | 2026-07-24 22:15 | 2026-07-24 22:15 |
| GHSA-HC76-7MPC-QJQH | ImageMagick: Code injection in HTML encoder due to incomplete fix of CVE-2026-25797 | 中危 | NuGetMagick.NET-Q16-AnyCPU+16 | 已审查 | 2026-07-24 22:09 | 2026-07-24 22:09 |
| GHSA-56M6-8Q75-F2RW | ImageMagick: Policy Bypass due to an incomplete fix of CVE-2026-49219 | 中危 | NuGetMagick.NET-Q16-AnyCPU+16 | 已审查 | 2026-07-24 22:08 | 2026-07-24 22:08 |
| GHSA-RVHP-75F6-9JQH | ImageMagick: Policy Bypass possible with matrix-backed operations | 低危 | NuGetMagick.NET-Q16-AnyCPU+16 | 已审查 | 2026-07-24 22:08 | 2026-07-24 22:08 |
| GHSA-4W2J-M93H-CJ5J | Quinn: Remote memory exhaustion in quinn-proto from unbounded out-of-order stream reassembly | 高危 | crates.ioquinn-proto | 已审查 | 2026-07-24 22:07 | 2026-07-24 22:07 |
| GHSA-CHX6-HX7R-MCP5 CVE-2026-55685 | React Router: Unauthenticated Denial of Service via Inefficient Route Matching | 高危 | npmreact-router | 已审查 | 2026-07-24 22:06 | 2026-07-24 22:06 |
| GHSA-82MP-VP5C-9PF7 CVE-2026-55628 | ImageMagick: Policy Bypass in concatenate operation due to missing checks | 中危 | NuGetMagick.NET-Q16-AnyCPU+16 | 已审查 | 2026-07-24 22:06 | 2026-07-24 22:06 |
| GHSA-C4V7-W88G-M6C4 CVE-2026-55597 | ImageMagick: Heap Buffer Over-Write in JP2 encoder when due to incorrect handling of arguments | 中危 | NuGetMagick.NET-Q16-AnyCPU+16 | 已审查 | 2026-07-24 22:06 | 2026-07-24 22:06 |
| GHSA-QHMF-7FC4-8Q3H CVE-2026-55595 | ImageMagick: Infinite Loop in connected-components when providing invalid arguments | 中危 | NuGetMagick.NET-Q16-AnyCPU+16 | 已审查 | 2026-07-24 22:05 | 2026-07-24 22:05 |
| GHSA-MX48-2QQ3-23HF CVE-2026-55594 | ImageMagick: Stack Overflow in MVG decoder due to missing depth check. | 中危 | NuGetMagick.NET-Q16-AnyCPU+16 | 已审查 | 2026-07-24 22:05 | 2026-07-24 22:05 |
| GHSA-G357-X5C3-C72P CVE-2026-55575 | LiquidJS: `pop` filter bypasses `memoryLimit` accounting that its array-filter siblings enforce | 高危 | npmliquidjs | 已审查 | 2026-07-24 22:05 | 2026-07-24 22:05 |
| GHSA-FF5C-8X9R-8QCW CVE-2026-55510 | ImageMagick: Use-After-Free in crafted 8BIM when identifying an image | 中危 | NuGetMagick.NET-Q16-AnyCPU+16 | 已审查 | 2026-07-24 22:04 | 2026-07-24 22:04 |
| GHSA-P2F4-R6V6-J797 CVE-2026-54673 | electron-updater: Cross-origin redirect leaks `PRIVATE-TOKEN` and mixed-case `Authorization` credentials in `builder-util-runtime` | 高危 | npmbuilder-util-runtime | 已审查 | 2026-07-24 22:03 | 2026-07-24 22:03 |
| GHSA-7G7R-GX96-252G CVE-2026-54672 | electron-updater: Uncontrolled search path elements within `AppImage` built by `app-builder-lib` | 高危 | npmapp-builder-lib | 已审查 | 2026-07-24 22:00 | 2026-07-24 22:00 |