这是indexloc提供的服务,不要输入任何密码

Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
GHSA-526j-mv3p-f4vv
  • Go/github.com/lf-edge/ekuiper/v2
eKuiper API endpoints handling SQL queries with user-controlled table names. 10 hours ago
  • Fix available
  • Severity - 8.9 (High)
GHSA-h27m-3qw8-3pw8
  • Go/github.com/goharbor/harbor
Possible ORM Leak Vulnerability in the Harbor yesterday
  • Fix available
  • Severity - 4.9 (Medium)
GHSA-f9vc-vf3r-pqqq
  • Go/github.com/goharbor/harbor
Harbor repository description page has Cross-site Scripting vulnerability yesterday
  • Fix available
  • Severity - 4.1 (Medium)
GHSA-x9hg-5q6g-q3jr
  • Go/github.com/ollama/ollama
Ollama vulnerable to Cross-Domain Token Exposure 2 days ago
  • No fix available
  • Severity - 6.9 (Medium)
GHSA-9g4j-v8w5-7x42
  • Go/goauthentik.io
Authentik has insufficient check for account active status when authenticating with OAuth/SAML Sources 2 days ago
  • Fix available
  • Severity - 7.1 (High)
GHSA-r5p3-955p-5ggq
  • Go/github.com/kyverno/kyverno
Kyverno's Improper JMESPath Variable Evaluation Lead to Denial of Service 2 days ago
  • Fix available
  • Severity - 7.7 (High)
GHSA-5662-cv6m-63wh
  • Go/chainguard.dev/melange
melange's world-writable permissions expose SBOM files to potential image tampering 6 days ago
  • Fix available
  • Severity - 4.4 (Medium)
GHSA-x6ph-r535-3vjw
  • Go/chainguard.dev/apko
apko is vulnerable to attack through incorrect permissions in /etc/ld.so.cache and other files 6 days ago
  • Fix available
  • Severity - 7.0 (High)
GHSA-6v2p-p543-phr9
  • Go/golang.org/x/oauth2
golang.org/x/oauth2 Improper Validation of Syntactic Correctness of Input vulnerability 6 days ago
  • Fix available
  • Severity - 7.5 (High)
GHSA-4fwj-8595-wp25
  • Go/github.com/mattermost/mattermost-server
  • Go/github.com/mattermost/mattermost/server/v8
Mattermost has Insufficiently Protected Credentials 6 days ago
  • Fix available
  • Severity - 2.2 (Low)
GHSA-wvw2-3jh4-4c39
  • Go/github.com/mattermost/mattermost-server
  • Go/github.com/mattermost/mattermost/server/v8
Mattermost Path Traversal vulnerability 6 days ago
  • Fix available
  • Severity - 6.8 (Medium)
GHSA-7h34-9chr-58qh
  • Go/github.com/mattermost/mattermost-server
  • Go/github.com/mattermost/mattermost/server/v8
Mattermost Missing Authentication for Critical Function 6 days ago
  • Fix available
  • Severity - 6.5 (Medium)
GHSA-vqph-p5vc-g644
  • Go/github.com/grafana/grafana
Grafana is vulnerable to XSS attacks through open redirects and path traversal 6 days ago
  • Fix available
  • Severity - 7.6 (High)
GHSA-46m5-8hpj-p5p5
  • Go/github.com/grafana/grafana
Grafana's insecure DingDing Alert integration exposes sensitive information 17 Jul
  • Fix available
  • Severity - 4.3 (Medium)
GHSA-7xqm-7738-642x
  • Go/github.com/filebrowser/filebrowser
File Browser's Uncontrolled Memory Consumption vulnerability can enable DoS attack due to oversized file processing 16 Jul
  • No fix available
  • Severity - 7.7 (High)
GHSA-7xwp-2cpp-p8r7
  • Go/github.com/filebrowser/filebrowser
File Browser’s insecure JWT handling can lead to session replay attacks after logout 16 Jul
  • No fix available
  • Severity - 7.7 (High)