—— |
| 未审查 |
| 2026-08-29 08:30 |
| 2026-08-29 08:30 |
| GHSA-QFP6-8RWW-VH6V CVE-2026-73108 | 无摘要 | 高危 | —— | 未审查 | 2026-08-29 08:30 | 2026-08-29 08:30 |
| GHSA-JQH9-6GQV-P52M CVE-2026-80203 | 无摘要 | 严重 | —— | 未审查 | 2026-08-29 08:30 | 2026-08-29 08:30 |
| GHSA-FJ92-J8M5-V339 CVE-2026-80193 | 无摘要 | 高危 | —— | 未审查 | 2026-08-29 08:30 | 2026-08-29 08:30 |
| GHSA-97CX-WFJW-3M7V CVE-2026-80346 | 无摘要 | 高危 | —— | 未审查 | 2026-08-29 08:30 | 2026-08-29 08:30 |
| GHSA-G5XC-5W98-JFVM CVE-2026-55855 | MariaDB has possible SQL injection in Buffer parameter escaping under big5/gbk/sjis/cp932/gb18030 client charsets | 中危 | npmmariadb | 已审查 | 2026-08-29 06:53 | 2026-08-29 06:53 |
| GHSA-FFG3-P8FM-MJX2 CVE-2026-55830 | RestrictedPython guard hooks can be shadowed via positional-only arguments | 高危 | PyPIRestrictedPython | 已审查 | 2026-08-29 06:51 | 2026-08-29 06:51 |
| GHSA-C857-9X2M-CVH2 CVE-2026-55860 | org.mariadb:r2dbc-mariadb vulnerable to cleartext password disclosure to a man-in-the-middle server (clear-text auth plugins not gated on a secure transport) | 中危 | Mavenorg.mariadb:r2dbc-mariadb | 已审查 | 2026-08-29 06:50 | 2026-08-29 06:50 |
| GHSA-5RQC-86VF-G8R2 CVE-2026-55859 | org.mariadb:r2dbc-mariadb has Inappropriate Encoding for Output Context and Improper Encoding or Escaping of Output | 中危 | Mavenorg.mariadb:r2dbc-mariadb | 已审查 | 2026-08-29 06:49 | 2026-08-29 06:49 |
| GHSA-XVR9-35CR-46V9 CVE-2026-55858 | org.mariadb.jdbc:mariadb-java-client has Inappropriate Encoding for Output Context | 中危 | Mavenorg.mariadb.jdbc:mariadb-java-client | 已审查 | 2026-08-29 06:47 | 2026-08-29 06:47 |
| GHSA-QXVW-FVWX-5CP7 CVE-2026-55857 | org.mariadb.jdbc:mariadb-java-client has Cleartext Transmission of Sensitive Information and Insufficiently Protected Credentials | 中危 | Mavenorg.mariadb.jdbc:mariadb-java-client | 已审查 | 2026-08-29 06:45 | 2026-08-29 06:45 |
| GHSA-G9JJ-CGMH-9F38 CVE-2026-55856 | MariaDB has cleartext password disclosure to a MITM on the initial-handshake | 中危 | Mavenorg.mariadb.jdbc:mariadb-java-client | 已审查 | 2026-08-29 06:41 | 2026-08-29 06:41 |
| GHSA-J5G3-42WP-GQM3 CVE-2026-55843 | Snipe-IT has an Improper Privilege Management issue | 高危 | Packagistsnipe/snipe-it | 已审查 | 2026-08-29 06:37 | 2026-08-29 06:37 |
| GHSA-5V29-34H8-V68R CVE-2026-55848 | MapFish Print has XXE that allows reading arbitrary files of certain types | 高危 | Mavenorg.mapfish:print.print-servlet+2 | 已审查 | 2026-08-29 06:33 | 2026-08-29 06:33 |
| GHSA-FP46-6VFW-GC9C CVE-2026-55785 | free5GC AUSF uses non-constant-time authentication comparisons and logs XRES* in 5G-AKA | 低危 | Gogithub.com/free5gc/ausf | 已审查 | 2026-08-29 06:26 | 2026-08-29 06:26 |
| GHSA-334Q-H5G3-FPXV CVE-2026-55784 | free5GC AUSF authentication contexts can be overwritten by concurrent requests for the same SUPI | 高危 | Gogithub.com/free5gc/ausf | 已审查 | 2026-08-29 06:24 | 2026-08-29 06:24 |
| GHSA-M4G4-86QC-V8W7 CVE-2026-55779 | silverstripe/versioned has XSS in archive admin restore | 中危 | Packagistsilverstripe/versioned | 已审查 | 2026-08-29 06:19 | 2026-08-29 06:19 |
| GHSA-56WQ-X3WV-3FF4 CVE-2026-55874 | SeaweedFS: Path traversal in the S3 gateway X-Amz-Copy-Source header allows cross-bucket object read | 高危 | Gogithub.com/seaweedfs/seaweedfs | 已审查 | 2026-08-29 06:17 | 2026-08-29 06:17 |
| GHSA-HGPF-8634-G44C CVE-2026-55873 | SeaweedFS: Improper authorization in the S3Tables / Iceberg REST management API lets a low-privileged S3 user enumerate administrator-owned table buckets | 中危 | Gogithub.com/seaweedfs/seaweedfs | 已审查 | 2026-08-29 06:16 | 2026-08-29 06:16 |
| GHSA-J769-9GV9-65GR CVE-2026-55867 | Graylog token revocation endpoint allows authenticated users to delete other users’ access tokens | 中危 | Mavenorg.graylog2:graylog2-server | 已审查 | 2026-08-29 06:15 | 2026-08-29 06:15 |
| GHSA-GQR6-R77P-C2PJ CVE-2026-55841 | Fortigate syslog message parser can be exploited to modify or delete fields from the original message | 高危 | Mavenorg.graylog2:graylog2-server | 已审查 | 2026-08-29 06:13 | 2026-08-29 06:13 |
| GHSA-MRPP-V6PG-P54X CVE-2026-55764 | klever-go: SFT add-quantity `int64` overflow bypasses a finite per-nonce MaxSupply | 高危 | Gogithub.com/klever-io/klever-go | 已审查 | 2026-08-29 06:08 | 2026-08-29 06:08 |
| GHSA-42R5-VHPQ-M858 CVE-2026-55854 | MariaDB has Cleartext Transmission of Sensitive Information and Insufficiently Protected Credentials | 中危 | npmmariadb | 已审查 | 2026-08-29 06:04 | 2026-08-29 06:04 |
| GHSA-MVV9-5GGF-37RJ CVE-2026-82289 | 无摘要 | 高危 | —— | 未审查 | 2026-08-29 05:31 | 2026-08-29 05:31 |