docker.io/atlassian/confluence:9.3.1 linux/amd64

docker.io/atlassian/confluence:9.3.1 - Trivy安全扫描结果 扫描时间: 2025-02-19 10:54
全部漏洞信息
低危漏洞:41 中危漏洞:52 高危漏洞:16 严重漏洞:3

系统OS: ubuntu 24.04 扫描引擎: Trivy 扫描时间: 2025-02-19 10:54

docker.io/atlassian/confluence:9.3.1 (ubuntu 24.04) (ubuntu)
低危漏洞:32 中危漏洞:18 高危漏洞:0 严重漏洞:0
软件包 漏洞 安全状态 安装版本 修复版本 漏洞信息
libfreetype6 CVE-2025-23022 中危 2.13.2+dfsg-1build3 freetype: signed integer overflow in cf2_doFlex

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-23022

镜像层: sha256:479a1d8f9a9bc4d0bdbfddae8a7d3f07810aa39213c340f4978d161f93ce17a9

发布日期: 2025-01-10 15:15 修改: 2025-01-16 21:12

libgssapi-krb5-2 CVE-2024-26462 中危 1.20.1-6ubuntu2.4 krb5: Memory leak at /krb5/src/kdc/ndr.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-26462

镜像层: sha256:82fafe30f95ecde9c37f57c058db65a09c9ef1d6aa003a64816199e3c5e7a121

发布日期: 2024-02-29 01:44 修改: 2024-05-14 15:09

libk5crypto3 CVE-2024-26462 中危 1.20.1-6ubuntu2.4 krb5: Memory leak at /krb5/src/kdc/ndr.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-26462

镜像层: sha256:82fafe30f95ecde9c37f57c058db65a09c9ef1d6aa003a64816199e3c5e7a121

发布日期: 2024-02-29 01:44 修改: 2024-05-14 15:09

libkrb5-3 CVE-2024-26462 中危 1.20.1-6ubuntu2.4 krb5: Memory leak at /krb5/src/kdc/ndr.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-26462

镜像层: sha256:82fafe30f95ecde9c37f57c058db65a09c9ef1d6aa003a64816199e3c5e7a121

发布日期: 2024-02-29 01:44 修改: 2024-05-14 15:09

libkrb5support0 CVE-2024-26462 中危 1.20.1-6ubuntu2.4 krb5: Memory leak at /krb5/src/kdc/ndr.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-26462

镜像层: sha256:82fafe30f95ecde9c37f57c058db65a09c9ef1d6aa003a64816199e3c5e7a121

发布日期: 2024-02-29 01:44 修改: 2024-05-14 15:09

libpam-modules CVE-2024-10041 中危 1.5.3-5ubuntu5.1 pam: libpam: Libpam vulnerable to read hashed password

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-10041

镜像层: sha256:4b7c01ed0534d4f9be9cf97d068da1598c6c20b26cb6134fad066defdb6d541d

发布日期: 2024-10-23 14:15 修改: 2024-12-18 10:15

libpam-modules CVE-2024-10963 中危 1.5.3-5ubuntu5.1 pam: Improper Hostname Interpretation in pam_access Leads to Access Control Bypass

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-10963

镜像层: sha256:4b7c01ed0534d4f9be9cf97d068da1598c6c20b26cb6134fad066defdb6d541d

发布日期: 2024-11-07 16:15 修改: 2024-11-11 18:15

libpam-modules-bin CVE-2024-10041 中危 1.5.3-5ubuntu5.1 pam: libpam: Libpam vulnerable to read hashed password

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-10041

镜像层: sha256:4b7c01ed0534d4f9be9cf97d068da1598c6c20b26cb6134fad066defdb6d541d

发布日期: 2024-10-23 14:15 修改: 2024-12-18 10:15

libpam-modules-bin CVE-2024-10963 中危 1.5.3-5ubuntu5.1 pam: Improper Hostname Interpretation in pam_access Leads to Access Control Bypass

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-10963

镜像层: sha256:4b7c01ed0534d4f9be9cf97d068da1598c6c20b26cb6134fad066defdb6d541d

发布日期: 2024-11-07 16:15 修改: 2024-11-11 18:15

libpam-runtime CVE-2024-10041 中危 1.5.3-5ubuntu5.1 pam: libpam: Libpam vulnerable to read hashed password

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-10041

镜像层: sha256:4b7c01ed0534d4f9be9cf97d068da1598c6c20b26cb6134fad066defdb6d541d

发布日期: 2024-10-23 14:15 修改: 2024-12-18 10:15

libpam-runtime CVE-2024-10963 中危 1.5.3-5ubuntu5.1 pam: Improper Hostname Interpretation in pam_access Leads to Access Control Bypass

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-10963

镜像层: sha256:4b7c01ed0534d4f9be9cf97d068da1598c6c20b26cb6134fad066defdb6d541d

发布日期: 2024-11-07 16:15 修改: 2024-11-11 18:15

libpam0g CVE-2024-10041 中危 1.5.3-5ubuntu5.1 pam: libpam: Libpam vulnerable to read hashed password

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-10041

镜像层: sha256:4b7c01ed0534d4f9be9cf97d068da1598c6c20b26cb6134fad066defdb6d541d

发布日期: 2024-10-23 14:15 修改: 2024-12-18 10:15

libpam0g CVE-2024-10963 中危 1.5.3-5ubuntu5.1 pam: Improper Hostname Interpretation in pam_access Leads to Access Control Bypass

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-10963

镜像层: sha256:4b7c01ed0534d4f9be9cf97d068da1598c6c20b26cb6134fad066defdb6d541d

发布日期: 2024-11-07 16:15 修改: 2024-11-11 18:15

login CVE-2024-56433 中危 1:4.13+dfsg1-4ubuntu3.2 shadow-utils: Default subordinate ID configuration in /etc/login.defs could lead to compromise

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-56433

镜像层: sha256:4b7c01ed0534d4f9be9cf97d068da1598c6c20b26cb6134fad066defdb6d541d

发布日期: 2024-12-26 09:15 修改: 2024-12-26 09:15

passwd CVE-2024-56433 中危 1:4.13+dfsg1-4ubuntu3.2 shadow-utils: Default subordinate ID configuration in /etc/login.defs could lead to compromise

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-56433

镜像层: sha256:4b7c01ed0534d4f9be9cf97d068da1598c6c20b26cb6134fad066defdb6d541d

发布日期: 2024-12-26 09:15 修改: 2024-12-26 09:15

python3-jinja2 CVE-2024-56201 中危 3.1.2-1ubuntu1.2 jinja2: Jinja has a sandbox breakout through malicious filenames

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-56201

镜像层: sha256:82fafe30f95ecde9c37f57c058db65a09c9ef1d6aa003a64816199e3c5e7a121

发布日期: 2024-12-23 16:15 修改: 2025-01-08 16:15

python3-jinja2 CVE-2024-56326 中危 3.1.2-1ubuntu1.2 jinja2: Jinja has a sandbox breakout through indirect reference to format method

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-56326

镜像层: sha256:82fafe30f95ecde9c37f57c058db65a09c9ef1d6aa003a64816199e3c5e7a121

发布日期: 2024-12-23 16:15 修改: 2024-12-27 18:15

wget CVE-2021-31879 中危 1.21.4-1ubuntu4.1 wget: authorization header disclosure on redirect

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-31879

镜像层: sha256:479a1d8f9a9bc4d0bdbfddae8a7d3f07810aa39213c340f4978d161f93ce17a9

发布日期: 2021-04-29 05:15 修改: 2022-05-13 20:52

binutils CVE-2017-13716 低危 2.42-4ubuntu2.3 binutils: Memory leak with the C++ symbol demangler routine in libiberty

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-13716

镜像层: sha256:479a1d8f9a9bc4d0bdbfddae8a7d3f07810aa39213c340f4978d161f93ce17a9

发布日期: 2017-08-28 21:29 修改: 2019-10-03 00:03

libgcrypt20 CVE-2024-2236 低危 1.10.3-2build1 libgcrypt: vulnerable to Marvin Attack

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-2236

镜像层: sha256:4b7c01ed0534d4f9be9cf97d068da1598c6c20b26cb6134fad066defdb6d541d

发布日期: 2024-03-06 22:15 修改: 2024-11-12 18:15

libgprofng0 CVE-2017-13716 低危 2.42-4ubuntu2.3 binutils: Memory leak with the C++ symbol demangler routine in libiberty

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-13716

镜像层: sha256:479a1d8f9a9bc4d0bdbfddae8a7d3f07810aa39213c340f4978d161f93ce17a9

发布日期: 2017-08-28 21:29 修改: 2019-10-03 00:03

binutils-common CVE-2017-13716 低危 2.42-4ubuntu2.3 binutils: Memory leak with the C++ symbol demangler routine in libiberty

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-13716

镜像层: sha256:479a1d8f9a9bc4d0bdbfddae8a7d3f07810aa39213c340f4978d161f93ce17a9

发布日期: 2017-08-28 21:29 修改: 2019-10-03 00:03

libgssapi-krb5-2 CVE-2024-26458 低危 1.20.1-6ubuntu2.4 krb5: Memory leak at /krb5/src/lib/rpc/pmap_rmt.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-26458

镜像层: sha256:82fafe30f95ecde9c37f57c058db65a09c9ef1d6aa003a64816199e3c5e7a121

发布日期: 2024-02-29 01:44 修改: 2024-12-06 21:15

libgssapi-krb5-2 CVE-2024-26461 低危 1.20.1-6ubuntu2.4 krb5: Memory leak at /krb5/src/lib/gssapi/krb5/k5sealv3.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-26461

镜像层: sha256:82fafe30f95ecde9c37f57c058db65a09c9ef1d6aa003a64816199e3c5e7a121

发布日期: 2024-02-29 01:44 修改: 2024-08-14 16:35

binutils-x86-64-linux-gnu CVE-2017-13716 低危 2.42-4ubuntu2.3 binutils: Memory leak with the C++ symbol demangler routine in libiberty

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-13716

镜像层: sha256:479a1d8f9a9bc4d0bdbfddae8a7d3f07810aa39213c340f4978d161f93ce17a9

发布日期: 2017-08-28 21:29 修改: 2019-10-03 00:03

libk5crypto3 CVE-2024-26458 低危 1.20.1-6ubuntu2.4 krb5: Memory leak at /krb5/src/lib/rpc/pmap_rmt.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-26458

镜像层: sha256:82fafe30f95ecde9c37f57c058db65a09c9ef1d6aa003a64816199e3c5e7a121

发布日期: 2024-02-29 01:44 修改: 2024-12-06 21:15

libk5crypto3 CVE-2024-26461 低危 1.20.1-6ubuntu2.4 krb5: Memory leak at /krb5/src/lib/gssapi/krb5/k5sealv3.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-26461

镜像层: sha256:82fafe30f95ecde9c37f57c058db65a09c9ef1d6aa003a64816199e3c5e7a121

发布日期: 2024-02-29 01:44 修改: 2024-08-14 16:35

coreutils CVE-2016-2781 低危 9.4-3ubuntu6 coreutils: Non-privileged session can escape to the parent session in chroot

漏洞详情: https://avd.aquasec.com/nvd/cve-2016-2781

镜像层: sha256:4b7c01ed0534d4f9be9cf97d068da1598c6c20b26cb6134fad066defdb6d541d

发布日期: 2017-02-07 15:59 修改: 2023-11-07 02:32

libkrb5-3 CVE-2024-26458 低危 1.20.1-6ubuntu2.4 krb5: Memory leak at /krb5/src/lib/rpc/pmap_rmt.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-26458

镜像层: sha256:82fafe30f95ecde9c37f57c058db65a09c9ef1d6aa003a64816199e3c5e7a121

发布日期: 2024-02-29 01:44 修改: 2024-12-06 21:15

libkrb5-3 CVE-2024-26461 低危 1.20.1-6ubuntu2.4 krb5: Memory leak at /krb5/src/lib/gssapi/krb5/k5sealv3.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-26461

镜像层: sha256:82fafe30f95ecde9c37f57c058db65a09c9ef1d6aa003a64816199e3c5e7a121

发布日期: 2024-02-29 01:44 修改: 2024-08-14 16:35

dirmngr CVE-2022-3219 低危 2.4.4-2ubuntu17 gnupg: denial of service issue (resource consumption) using compressed packets

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3219

镜像层: sha256:479a1d8f9a9bc4d0bdbfddae8a7d3f07810aa39213c340f4978d161f93ce17a9

发布日期: 2023-02-23 20:15 修改: 2023-05-26 16:31

libkrb5support0 CVE-2024-26458 低危 1.20.1-6ubuntu2.4 krb5: Memory leak at /krb5/src/lib/rpc/pmap_rmt.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-26458

镜像层: sha256:82fafe30f95ecde9c37f57c058db65a09c9ef1d6aa003a64816199e3c5e7a121

发布日期: 2024-02-29 01:44 修改: 2024-12-06 21:15

libkrb5support0 CVE-2024-26461 低危 1.20.1-6ubuntu2.4 krb5: Memory leak at /krb5/src/lib/gssapi/krb5/k5sealv3.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-26461

镜像层: sha256:82fafe30f95ecde9c37f57c058db65a09c9ef1d6aa003a64816199e3c5e7a121

发布日期: 2024-02-29 01:44 修改: 2024-08-14 16:35

gnupg CVE-2022-3219 低危 2.4.4-2ubuntu17 gnupg: denial of service issue (resource consumption) using compressed packets

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3219

镜像层: sha256:479a1d8f9a9bc4d0bdbfddae8a7d3f07810aa39213c340f4978d161f93ce17a9

发布日期: 2023-02-23 20:15 修改: 2023-05-26 16:31

gnupg-utils CVE-2022-3219 低危 2.4.4-2ubuntu17 gnupg: denial of service issue (resource consumption) using compressed packets

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3219

镜像层: sha256:479a1d8f9a9bc4d0bdbfddae8a7d3f07810aa39213c340f4978d161f93ce17a9

发布日期: 2023-02-23 20:15 修改: 2023-05-26 16:31

gpg CVE-2022-3219 低危 2.4.4-2ubuntu17 gnupg: denial of service issue (resource consumption) using compressed packets

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3219

镜像层: sha256:479a1d8f9a9bc4d0bdbfddae8a7d3f07810aa39213c340f4978d161f93ce17a9

发布日期: 2023-02-23 20:15 修改: 2023-05-26 16:31

gpg-agent CVE-2022-3219 低危 2.4.4-2ubuntu17 gnupg: denial of service issue (resource consumption) using compressed packets

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3219

镜像层: sha256:479a1d8f9a9bc4d0bdbfddae8a7d3f07810aa39213c340f4978d161f93ce17a9

发布日期: 2023-02-23 20:15 修改: 2023-05-26 16:31

gpgconf CVE-2022-3219 低危 2.4.4-2ubuntu17 gnupg: denial of service issue (resource consumption) using compressed packets

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3219

镜像层: sha256:479a1d8f9a9bc4d0bdbfddae8a7d3f07810aa39213c340f4978d161f93ce17a9

发布日期: 2023-02-23 20:15 修改: 2023-05-26 16:31

gpgsm CVE-2022-3219 低危 2.4.4-2ubuntu17 gnupg: denial of service issue (resource consumption) using compressed packets

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3219

镜像层: sha256:479a1d8f9a9bc4d0bdbfddae8a7d3f07810aa39213c340f4978d161f93ce17a9

发布日期: 2023-02-23 20:15 修改: 2023-05-26 16:31

gpgv CVE-2022-3219 低危 2.4.4-2ubuntu17 gnupg: denial of service issue (resource consumption) using compressed packets

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3219

镜像层: sha256:4b7c01ed0534d4f9be9cf97d068da1598c6c20b26cb6134fad066defdb6d541d

发布日期: 2023-02-23 20:15 修改: 2023-05-26 16:31

keyboxd CVE-2022-3219 低危 2.4.4-2ubuntu17 gnupg: denial of service issue (resource consumption) using compressed packets

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3219

镜像层: sha256:479a1d8f9a9bc4d0bdbfddae8a7d3f07810aa39213c340f4978d161f93ce17a9

发布日期: 2023-02-23 20:15 修改: 2023-05-26 16:31

libsframe1 CVE-2017-13716 低危 2.42-4ubuntu2.3 binutils: Memory leak with the C++ symbol demangler routine in libiberty

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-13716

镜像层: sha256:479a1d8f9a9bc4d0bdbfddae8a7d3f07810aa39213c340f4978d161f93ce17a9

发布日期: 2017-08-28 21:29 修改: 2019-10-03 00:03

libssl3t64 CVE-2024-41996 低危 3.0.13-0ubuntu3.4 openssl: remote attackers (from the client side) to trigger unnecessarily expensive server-side DHE modular-exponentiation calculations

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-41996

镜像层: sha256:4b7c01ed0534d4f9be9cf97d068da1598c6c20b26cb6134fad066defdb6d541d

发布日期: 2024-08-26 06:15 修改: 2024-08-26 16:35

locales CVE-2016-20013 低危 2.39-0ubuntu8.4

漏洞详情: https://avd.aquasec.com/nvd/cve-2016-20013

镜像层: sha256:82fafe30f95ecde9c37f57c058db65a09c9ef1d6aa003a64816199e3c5e7a121

发布日期: 2022-02-19 05:15 修改: 2022-03-03 16:43

libbinutils CVE-2017-13716 低危 2.42-4ubuntu2.3 binutils: Memory leak with the C++ symbol demangler routine in libiberty

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-13716

镜像层: sha256:479a1d8f9a9bc4d0bdbfddae8a7d3f07810aa39213c340f4978d161f93ce17a9

发布日期: 2017-08-28 21:29 修改: 2019-10-03 00:03

openssl CVE-2024-41996 低危 3.0.13-0ubuntu3.4 openssl: remote attackers (from the client side) to trigger unnecessarily expensive server-side DHE modular-exponentiation calculations

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-41996

镜像层: sha256:479a1d8f9a9bc4d0bdbfddae8a7d3f07810aa39213c340f4978d161f93ce17a9

发布日期: 2024-08-26 06:15 修改: 2024-08-26 16:35

libc-bin CVE-2016-20013 低危 2.39-0ubuntu8.4

漏洞详情: https://avd.aquasec.com/nvd/cve-2016-20013

镜像层: sha256:82fafe30f95ecde9c37f57c058db65a09c9ef1d6aa003a64816199e3c5e7a121

发布日期: 2022-02-19 05:15 修改: 2022-03-03 16:43

libc6 CVE-2016-20013 低危 2.39-0ubuntu8.4

漏洞详情: https://avd.aquasec.com/nvd/cve-2016-20013

镜像层: sha256:82fafe30f95ecde9c37f57c058db65a09c9ef1d6aa003a64816199e3c5e7a121

发布日期: 2022-02-19 05:15 修改: 2022-03-03 16:43

libctf-nobfd0 CVE-2017-13716 低危 2.42-4ubuntu2.3 binutils: Memory leak with the C++ symbol demangler routine in libiberty

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-13716

镜像层: sha256:479a1d8f9a9bc4d0bdbfddae8a7d3f07810aa39213c340f4978d161f93ce17a9

发布日期: 2017-08-28 21:29 修改: 2019-10-03 00:03

libctf0 CVE-2017-13716 低危 2.42-4ubuntu2.3 binutils: Memory leak with the C++ symbol demangler routine in libiberty

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-13716

镜像层: sha256:479a1d8f9a9bc4d0bdbfddae8a7d3f07810aa39213c340f4978d161f93ce17a9

发布日期: 2017-08-28 21:29 修改: 2019-10-03 00:03

Java (jar)
低危漏洞:2 中危漏洞:24 高危漏洞:6 严重漏洞:2
软件包 漏洞 安全状态 安装版本 修复版本 漏洞信息
org.codehaus.jackson:jackson-mapper-asl CVE-2019-10202 严重 1.9.13 codehaus: incomplete fix for unsafe deserialization in jackson-databind vulnerabilities

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10202

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2019-10-01 15:15 修改: 2023-02-12 23:33

org.springframework:spring-web CVE-2016-1000027 严重 5.3.39-atlassian-3 6.0.0 spring: HttpInvokerServiceExporter readRemoteInvocation method untrusted java deserialization

漏洞详情: https://avd.aquasec.com/nvd/cve-2016-1000027

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2020-01-02 23:15 修改: 2023-04-20 09:15

org.apache.velocity:velocity CVE-2020-13936 高危 1.6.4-atlassian-38 velocity: arbitrary code execution when attacker is able to modify templates

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-13936

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2021-03-10 08:15 修改: 2023-11-07 03:17

org.apache.velocity:velocity CVE-2020-13936 高危 1.6.4-atlassian-38 velocity: arbitrary code execution when attacker is able to modify templates

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-13936

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2021-03-10 08:15 修改: 2023-11-07 03:17

com.thoughtworks.xstream:xstream CVE-2024-47072 高危 1.4.20 1.4.21 com.thoughtworks.xstream: XStream is vulnerable to a Denial of Service attack due to stack overflow from a manipulated binary input stream

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-47072

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2024-11-08 00:15 修改: 2024-11-08 19:01

org.codehaus.jackson:jackson-mapper-asl CVE-2019-10172 高危 1.9.13 jackson-mapper-asl: XML external entity similar to CVE-2016-3720

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10172

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2019-11-18 17:15 修改: 2023-02-12 23:33

com.thoughtworks.xstream:xstream CVE-2024-47072 高危 1.4.20 1.4.21 com.thoughtworks.xstream: XStream is vulnerable to a Denial of Service attack due to stack overflow from a manipulated binary input stream

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-47072

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2024-11-08 00:15 修改: 2024-11-08 19:01

org.springframework:spring-webmvc CVE-2024-38819 高危 5.3.39-atlassian-3 6.1.14 org.springframework:spring-webmvc: Path traversal vulnerability in functional web frameworks

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-38819

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2024-12-19 18:15 修改: 2025-01-10 13:15

ch.qos.logback:logback-core CVE-2024-12798 中危 1.3.14 1.5.13, 1.3.15 logback-core: arbitrary code execution via JaninoEventEvaluator

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-12798

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2024-12-19 16:15 修改: 2025-01-03 14:15

ch.qos.logback:logback-core CVE-2024-12798 中危 1.3.14 1.5.13, 1.3.15 logback-core: arbitrary code execution via JaninoEventEvaluator

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-12798

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2024-12-19 16:15 修改: 2025-01-03 14:15

org.codehaus.groovy:groovy-all CVE-2020-17521 中危 2.4.15 2.4.21, 2.5.14, 3.0.7 groovy: OS temporary directory leads to information disclosure

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-17521

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2020-12-07 20:15 修改: 2023-11-07 03:19

org.codehaus.groovy:groovy-all CVE-2020-17521 中危 2.4.15 2.4.21, 2.5.14, 3.0.7 groovy: OS temporary directory leads to information disclosure

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-17521

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2020-12-07 20:15 修改: 2023-11-07 03:19

io.netty:netty-common CVE-2024-47535 中危 4.1.108.Final 4.1.115 netty: Denial of Service attack on windows app using Netty

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-47535

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2024-11-12 16:15 修改: 2024-11-13 17:01

io.netty:netty-common CVE-2024-47535 中危 4.1.108.Final 4.1.115 netty: Denial of Service attack on windows app using Netty

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-47535

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2024-11-12 16:15 修改: 2024-11-13 17:01

org.eclipse.jetty:jetty-http CVE-2024-6763 中危 10.0.24 12.0.12 org.eclipse.jetty:jetty-http: jetty: Jetty URI parsing of invalid authority

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-6763

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2024-10-14 16:15 修改: 2024-11-08 21:15

org.eclipse.jetty:jetty-http CVE-2024-6763 中危 10.0.24 12.0.12 org.eclipse.jetty:jetty-http: jetty: Jetty URI parsing of invalid authority

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-6763

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2024-10-14 16:15 修改: 2024-11-08 21:15

org.owasp.antisamy:antisamy CVE-2023-43643 中危 1.6.8-atlassian-12 1.7.4 AntiSamy is a library for performing fast, configurable cleansing of H ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-43643

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2023-10-09 14:15 修改: 2023-10-13 17:35

org.owasp.antisamy:antisamy CVE-2023-43643 中危 1.6.8-atlassian-12 1.7.4 AntiSamy is a library for performing fast, configurable cleansing of H ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-43643

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2023-10-09 14:15 修改: 2023-10-13 17:35

org.owasp.antisamy:antisamy CVE-2023-43643 中危 1.6.8-atlassian-12 1.7.4 AntiSamy is a library for performing fast, configurable cleansing of H ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-43643

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2023-10-09 14:15 修改: 2023-10-13 17:35

org.owasp.antisamy:antisamy CVE-2024-23635 中危 1.6.8-atlassian-12 1.7.5 AntiSamy is a library for performing fast, configurable cleansing of H ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-23635

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2024-02-02 17:15 修改: 2024-02-10 01:38

org.owasp.antisamy:antisamy CVE-2024-23635 中危 1.6.8-atlassian-12 1.7.5 AntiSamy is a library for performing fast, configurable cleansing of H ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-23635

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2024-02-02 17:15 修改: 2024-02-10 01:38

org.owasp.antisamy:antisamy CVE-2024-23635 中危 1.6.8-atlassian-12 1.7.5 AntiSamy is a library for performing fast, configurable cleansing of H ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-23635

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2024-02-02 17:15 修改: 2024-02-10 01:38

org.owasp.antisamy:antisamy CVE-2023-43643 中危 1.6.8-atlassian-13 1.7.4 AntiSamy is a library for performing fast, configurable cleansing of H ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-43643

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2023-10-09 14:15 修改: 2023-10-13 17:35

org.owasp.antisamy:antisamy CVE-2023-43643 中危 1.6.8-atlassian-13 1.7.4 AntiSamy is a library for performing fast, configurable cleansing of H ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-43643

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2023-10-09 14:15 修改: 2023-10-13 17:35

org.owasp.antisamy:antisamy CVE-2023-43643 中危 1.6.8-atlassian-13 1.7.4 AntiSamy is a library for performing fast, configurable cleansing of H ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-43643

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2023-10-09 14:15 修改: 2023-10-13 17:35

org.owasp.antisamy:antisamy CVE-2024-23635 中危 1.6.8-atlassian-13 1.7.5 AntiSamy is a library for performing fast, configurable cleansing of H ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-23635

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2024-02-02 17:15 修改: 2024-02-10 01:38

org.owasp.antisamy:antisamy CVE-2024-23635 中危 1.6.8-atlassian-13 1.7.5 AntiSamy is a library for performing fast, configurable cleansing of H ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-23635

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2024-02-02 17:15 修改: 2024-02-10 01:38

org.owasp.antisamy:antisamy CVE-2024-23635 中危 1.6.8-atlassian-13 1.7.5 AntiSamy is a library for performing fast, configurable cleansing of H ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-23635

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2024-02-02 17:15 修改: 2024-02-10 01:38

org.springframework:spring-context CVE-2024-38820 中危 5.3.39-atlassian-3 6.1.14 The fix for CVE-2022-22968 made disallowedFieldspatterns in DataBinder ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-38820

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2024-10-18 06:15 修改: 2024-11-29 12:15

io.netty:netty-common CVE-2024-47535 中危 4.1.111.Final 4.1.115 netty: Denial of Service attack on windows app using Netty

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-47535

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2024-11-12 16:15 修改: 2024-11-13 17:01

io.netty:netty-common CVE-2024-47535 中危 4.1.111.Final 4.1.115 netty: Denial of Service attack on windows app using Netty

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-47535

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2024-11-12 16:15 修改: 2024-11-13 17:01

org.springframework:spring-webmvc CVE-2024-38828 中危 5.3.39-atlassian-3 5.3.42 org.springframework:spring-webmvc: DoS via Spring MVC controller method with byte[] parameter

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-38828

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2024-11-18 04:15 修改: 2024-11-18 17:11

ch.qos.logback:logback-core CVE-2024-12801 低危 1.3.14 1.5.13, 1.3.15 logback-core: SaxEventRecorder vulnerable to Server-Side Request Forgery (SSRF) attacks

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-12801

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2024-12-19 17:15 修改: 2025-01-03 14:15

ch.qos.logback:logback-core CVE-2024-12801 低危 1.3.14 1.5.13, 1.3.15 logback-core: SaxEventRecorder vulnerable to Server-Side Request Forgery (SSRF) attacks

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-12801

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2024-12-19 17:15 修改: 2025-01-03 14:15

Node.js (node-pkg)
低危漏洞:7 中危漏洞:10 高危漏洞:10 严重漏洞:1
软件包 漏洞 安全状态 安装版本 修复版本 漏洞信息
loader-utils CVE-2022-37601 严重 1.4.0 2.0.3, 1.4.1 loader-utils: prototype pollution in function parseQuery in parseQuery.js

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-37601

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2022-10-12 20:15 修改: 2023-02-28 15:02

jquery-ui CVE-2016-7103 高危 1.8.18 >=1.12.0 jquery-ui: cross-site scripting in dialog closeText

漏洞详情: https://avd.aquasec.com/nvd/cve-2016-7103

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2017-03-15 16:59 修改: 2023-06-22 19:50

json5 CVE-2022-46175 高危 1.0.1 2.2.2, 1.0.2 json5: Prototype Pollution in JSON5 via Parse Method

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-46175

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2022-12-24 04:15 修改: 2023-11-26 01:15

braces CVE-2024-4068 高危 2.3.2 3.0.3 braces: fails to limit the number of characters it can handle

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-4068

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2024-05-14 15:42 修改: 2024-07-03 02:07

loader-utils CVE-2022-37599 高危 1.4.0 1.4.2, 2.0.4, 3.2.1 loader-utils: regular expression denial of service in interpolateName.js

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-37599

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2022-10-11 19:15 修改: 2024-02-28 03:15

loader-utils CVE-2022-37603 高危 1.4.0 1.4.2, 2.0.4, 3.2.1 loader-utils: Regular expression denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-37603

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2022-10-14 16:15 修改: 2023-11-07 03:49

node-fetch CVE-2022-0235 高危 1.7.3 3.1.1, 2.6.7 node-fetch: exposure of sensitive information to an unauthorized actor

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0235

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2022-01-16 17:15 修改: 2023-02-03 19:16

path-to-regexp CVE-2024-45296 高危 1.8.0 1.9.0, 0.1.10, 8.0.0, 3.3.0, 6.3.0 path-to-regexp: Backtracking regular expressions cause ReDoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-45296

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2024-09-09 19:15 修改: 2024-09-10 12:09

semver CVE-2022-25883 高危 5.7.1 7.5.2, 6.3.1, 5.7.2 nodejs-semver: Regular expression denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-25883

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2023-06-21 05:15 修改: 2024-12-06 17:15

ua-parser-js CVE-2022-25927 高危 0.7.24 0.7.33, 1.0.33 ua-parser-js: ReDoS vulnerability via the trim() function

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-25927

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2023-01-26 21:15 修改: 2023-11-07 03:44

ua-parser-js CVE-2022-25927 高危 0.7.31 0.7.33, 1.0.33 ua-parser-js: ReDoS vulnerability via the trim() function

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-25927

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2023-01-26 21:15 修改: 2023-11-07 03:44

jquery-ui CVE-2021-41183 中危 1.8.18 1.13.0 jquery-ui: XSS in *Text options of the datepicker widget

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-41183

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2021-10-26 15:15 修改: 2023-08-31 03:15

micromatch CVE-2024-4067 中危 3.1.10 4.0.8 micromatch: vulnerable to Regular Expression Denial of Service

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-4067

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2024-05-14 15:42 修改: 2024-08-28 00:15

nanoid CVE-2024-55565 中危 3.3.7 5.0.9, 3.3.8 nanoid: nanoid mishandles non-integer values

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-55565

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2024-12-09 02:15 修改: 2024-12-12 19:15

jquery-ui CVE-2021-41184 中危 1.8.18 1.13.0 jquery-ui: XSS in the 'of' option of the .position() util

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-41184

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2021-10-26 15:15 修改: 2023-08-31 03:15

jquery-ui CVE-2022-31160 中危 1.8.18 1.13.2 jqueryui: XSS when refreshing a checkboxradio with an HTML-like initial text label

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-31160

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2022-07-20 20:15 修改: 2023-11-07 03:47

request CVE-2023-28155 中危 2.88.2 The Request package through 2.88.1 for Node.js allows a bypass of SSRF ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-28155

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2023-03-16 15:15 修改: 2024-08-02 13:15

select2 CVE-2016-10744 中危 3.5.4 4.0.6 select2: XSS due to missing sanitization when HTML templates are used to display remotely-loaded data.

漏洞详情: https://avd.aquasec.com/nvd/cve-2016-10744

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2019-03-27 04:29 修改: 2019-03-27 16:09

jquery-ui CVE-2010-5312 中危 1.8.18 1.10.0 jquery-ui: XSS vulnerability in jQuery.ui.dialog title option

漏洞详情: https://avd.aquasec.com/nvd/cve-2010-5312

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2014-11-24 16:59 修改: 2023-06-21 18:26

jquery-ui CVE-2012-6662 中危 1.8.18 1.10.0 jquery-ui: XSS vulnerability in default content in Tooltip widget

漏洞详情: https://avd.aquasec.com/nvd/cve-2012-6662

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2014-11-24 16:59 修改: 2018-07-14 01:29

jquery-ui CVE-2021-41182 中危 1.8.18 1.13.0 jquery-ui: XSS in the altField option of the datepicker widget

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-41182

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2021-10-26 15:15 修改: 2023-08-31 03:15

elliptic CVE-2024-48948 低危 6.5.7 6.6.0 elliptic: ECDSA signature verification error may reject legitimate transactions

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-48948

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2024-10-15 14:15 修改: 2024-12-20 13:15

clean-css GHSA-wxhq-pm8v-cw75 低危 2.2.23 4.1.11 Regular Expression Denial of Service in clean-css

漏洞详情: https://github.com/advisories/GHSA-wxhq-pm8v-cw75

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

elliptic CVE-2024-42459 低危 6.5.5 6.5.7 elliptic: nodejs/elliptic: EDDSA signature malleability due to missing signature length check

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-42459

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2024-08-02 07:16 修改: 2024-08-02 15:35

elliptic CVE-2024-42460 低危 6.5.5 6.5.7 elliptic: nodejs/elliptic: ECDSA signature malleability due to missing checks

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-42460

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2024-08-02 07:16 修改: 2024-08-02 16:35

elliptic CVE-2024-42461 低危 6.5.5 6.5.7 elliptic: nodejs/elliptic: ECDSA implementation malleability due to BER-enconded signatures being allowed

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-42461

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2024-08-02 07:16 修改: 2024-08-16 16:51

elliptic CVE-2024-48948 低危 6.5.5 6.6.0 elliptic: ECDSA signature verification error may reject legitimate transactions

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-48948

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2024-10-15 14:15 修改: 2024-12-20 13:15

elliptic CVE-2024-48949 低危 6.5.5 6.5.6 elliptic: Missing Validation in Elliptic's EDDSA Signature Verification

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-48949

镜像层: sha256:49360a377f5a69d991b8ddc4737dbd8506acc0ecc56afef31809d5e7fe31c349

发布日期: 2024-10-10 01:15 修改: 2024-12-27 16:15

Python (python-pkg)
低危漏洞:0 中危漏洞:0 高危漏洞:0 严重漏洞:0
软件包 漏洞 安全状态 安装版本 修复版本 漏洞信息