docker.io/jupyterhub/configurable-http-proxy:4.4.0 linux/amd64

docker.io/jupyterhub/configurable-http-proxy:4.4.0 - Trivy安全扫描结果 扫描时间: 2026-08-11 08:50
全部漏洞信息
低危漏洞:4 中危漏洞:19 高危漏洞:36 严重漏洞:6

系统OS: alpine 3.12.7 扫描引擎: Trivy 扫描时间: 2026-08-11 08:50

docker.io/jupyterhub/configurable-http-proxy:4.4.0 (alpine 3.12.7) (alpine)
低危漏洞:4 中危漏洞:14 高危漏洞:33 严重漏洞:6
软件包 漏洞 安全状态 安装版本 修复版本 漏洞信息
apk-tools CVE-2021-36159 严重 2.10.6-r0 2.10.7-r0 libfetch: an out of boundary read while libfetch uses strtol to parse the relevant numbers into address bytes leads to information leak or crash

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-36159

镜像层: sha256:32f366d666a541852cad754ee1cdb53a736110b550f0c2d5a46bc5ba519896b6

发布日期: 2021-08-03 14:15 修改: 2026-06-17 03:58

curl CVE-2021-22945 严重 7.76.1-r0 7.79.0-r0 curl: use-after-free and double-free in MQTT sending

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22945

镜像层: sha256:12ef90053f4861056c79c2c5cb04f861668707c768ba0458ca62feb4f3d342d3

发布日期: 2021-09-23 13:15 修改: 2026-06-17 03:38

libcrypto1.1 CVE-2021-3711 严重 1.1.1k-r0 1.1.1l-r0 openssl: SM2 Decryption Buffer Overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-3711

镜像层: sha256:32f366d666a541852cad754ee1cdb53a736110b550f0c2d5a46bc5ba519896b6

发布日期: 2021-08-24 15:15 修改: 2026-06-17 04:05

libcurl CVE-2021-22945 严重 7.76.1-r0 7.79.0-r0 curl: use-after-free and double-free in MQTT sending

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22945

镜像层: sha256:12ef90053f4861056c79c2c5cb04f861668707c768ba0458ca62feb4f3d342d3

发布日期: 2021-09-23 13:15 修改: 2026-06-17 03:38

libssl1.1 CVE-2021-3711 严重 1.1.1k-r0 1.1.1l-r0 openssl: SM2 Decryption Buffer Overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-3711

镜像层: sha256:32f366d666a541852cad754ee1cdb53a736110b550f0c2d5a46bc5ba519896b6

发布日期: 2021-08-24 15:15 修改: 2026-06-17 04:05

zlib CVE-2022-37434 严重 1.2.11-r3 1.2.12-r2 zlib: heap-based buffer over-read and overflow in inflate() in inflate.c via a large gzip header extra field

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-37434

镜像层: sha256:32f366d666a541852cad754ee1cdb53a736110b550f0c2d5a46bc5ba519896b6

发布日期: 2022-08-05 07:15 修改: 2026-07-14 12:16

busybox CVE-2021-42383 高危 1.31.1-r20 1.31.1-r21 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the evaluate()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42383

镜像层: sha256:32f366d666a541852cad754ee1cdb53a736110b550f0c2d5a46bc5ba519896b6

发布日期: 2021-11-15 21:15 修改: 2026-06-17 04:09

busybox CVE-2021-42384 高危 1.31.1-r20 1.31.1-r21 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the handle_special()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42384

镜像层: sha256:32f366d666a541852cad754ee1cdb53a736110b550f0c2d5a46bc5ba519896b6

发布日期: 2021-11-15 21:15 修改: 2026-06-17 04:09

busybox CVE-2021-42385 高危 1.31.1-r20 1.31.1-r21 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the evaluate()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42385

镜像层: sha256:32f366d666a541852cad754ee1cdb53a736110b550f0c2d5a46bc5ba519896b6

发布日期: 2021-11-15 21:15 修改: 2026-06-17 04:09

busybox CVE-2021-42386 高危 1.31.1-r20 1.31.1-r21 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the nvalloc()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42386

镜像层: sha256:32f366d666a541852cad754ee1cdb53a736110b550f0c2d5a46bc5ba519896b6

发布日期: 2021-11-15 21:15 修改: 2026-06-17 04:09

busybox CVE-2022-28391 高危 1.31.1-r20 1.31.1-r22 busybox: remote attackers may execute arbitrary code if netstat is used

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-28391

镜像层: sha256:32f366d666a541852cad754ee1cdb53a736110b550f0c2d5a46bc5ba519896b6

发布日期: 2022-04-03 21:15 修改: 2026-06-17 04:38

busybox CVE-2021-42378 高危 1.31.1-r20 1.31.1-r21 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the getvar_i()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42378

镜像层: sha256:32f366d666a541852cad754ee1cdb53a736110b550f0c2d5a46bc5ba519896b6

发布日期: 2021-11-15 21:15 修改: 2026-06-17 04:09

curl CVE-2021-22901 高危 7.76.1-r0 7.77.0-r0 curl: Use-after-free in TLS session handling when using OpenSSL TLS backend

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22901

镜像层: sha256:12ef90053f4861056c79c2c5cb04f861668707c768ba0458ca62feb4f3d342d3

发布日期: 2021-06-11 16:15 修改: 2026-06-17 03:37

curl CVE-2021-22946 高危 7.76.1-r0 7.79.0-r0 curl: Requirement to use TLS not properly enforced for IMAP, POP3, and FTP protocols

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22946

镜像层: sha256:12ef90053f4861056c79c2c5cb04f861668707c768ba0458ca62feb4f3d342d3

发布日期: 2021-09-29 20:15 修改: 2026-06-17 03:38

curl CVE-2022-22576 高危 7.76.1-r0 7.79.1-r1 curl: OAUTH2 bearer bypass in connection re-use

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-22576

镜像层: sha256:12ef90053f4861056c79c2c5cb04f861668707c768ba0458ca62feb4f3d342d3

发布日期: 2022-05-26 17:15 修改: 2026-06-17 04:28

curl CVE-2022-27775 高危 7.76.1-r0 7.79.1-r1 curl: bad local IPv6 connection reuse

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-27775

镜像层: sha256:12ef90053f4861056c79c2c5cb04f861668707c768ba0458ca62feb4f3d342d3

发布日期: 2022-06-02 14:15 修改: 2026-06-17 04:37

busybox CVE-2021-42379 高危 1.31.1-r20 1.31.1-r21 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the next_input_file()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42379

镜像层: sha256:32f366d666a541852cad754ee1cdb53a736110b550f0c2d5a46bc5ba519896b6

发布日期: 2021-11-15 21:15 修改: 2026-06-17 04:09

libcrypto1.1 CVE-2021-3712 高危 1.1.1k-r0 1.1.1l-r0 openssl: Read buffer overruns processing ASN.1 strings

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-3712

镜像层: sha256:32f366d666a541852cad754ee1cdb53a736110b550f0c2d5a46bc5ba519896b6

发布日期: 2021-08-24 15:15 修改: 2026-06-17 04:05

libcrypto1.1 CVE-2022-0778 高危 1.1.1k-r0 1.1.1n-r0 openssl: Infinite loop in BN_mod_sqrt() reachable when parsing certificates

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0778

镜像层: sha256:32f366d666a541852cad754ee1cdb53a736110b550f0c2d5a46bc5ba519896b6

发布日期: 2022-03-15 17:15 修改: 2026-06-17 04:21

busybox CVE-2021-42380 高危 1.31.1-r20 1.31.1-r21 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the clrvar()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42380

镜像层: sha256:32f366d666a541852cad754ee1cdb53a736110b550f0c2d5a46bc5ba519896b6

发布日期: 2021-11-15 21:15 修改: 2026-06-17 04:09

libcurl CVE-2021-22901 高危 7.76.1-r0 7.77.0-r0 curl: Use-after-free in TLS session handling when using OpenSSL TLS backend

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22901

镜像层: sha256:12ef90053f4861056c79c2c5cb04f861668707c768ba0458ca62feb4f3d342d3

发布日期: 2021-06-11 16:15 修改: 2026-06-17 03:37

libcurl CVE-2021-22946 高危 7.76.1-r0 7.79.0-r0 curl: Requirement to use TLS not properly enforced for IMAP, POP3, and FTP protocols

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22946

镜像层: sha256:12ef90053f4861056c79c2c5cb04f861668707c768ba0458ca62feb4f3d342d3

发布日期: 2021-09-29 20:15 修改: 2026-06-17 03:38

libcurl CVE-2022-22576 高危 7.76.1-r0 7.79.1-r1 curl: OAUTH2 bearer bypass in connection re-use

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-22576

镜像层: sha256:12ef90053f4861056c79c2c5cb04f861668707c768ba0458ca62feb4f3d342d3

发布日期: 2022-05-26 17:15 修改: 2026-06-17 04:28

libcurl CVE-2022-27775 高危 7.76.1-r0 7.79.1-r1 curl: bad local IPv6 connection reuse

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-27775

镜像层: sha256:12ef90053f4861056c79c2c5cb04f861668707c768ba0458ca62feb4f3d342d3

发布日期: 2022-06-02 14:15 修改: 2026-06-17 04:37

busybox CVE-2021-42381 高危 1.31.1-r20 1.31.1-r21 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the hash_init()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42381

镜像层: sha256:32f366d666a541852cad754ee1cdb53a736110b550f0c2d5a46bc5ba519896b6

发布日期: 2021-11-15 21:15 修改: 2026-06-17 04:09

libssl1.1 CVE-2021-3712 高危 1.1.1k-r0 1.1.1l-r0 openssl: Read buffer overruns processing ASN.1 strings

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-3712

镜像层: sha256:32f366d666a541852cad754ee1cdb53a736110b550f0c2d5a46bc5ba519896b6

发布日期: 2021-08-24 15:15 修改: 2026-06-17 04:05

libssl1.1 CVE-2022-0778 高危 1.1.1k-r0 1.1.1n-r0 openssl: Infinite loop in BN_mod_sqrt() reachable when parsing certificates

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0778

镜像层: sha256:32f366d666a541852cad754ee1cdb53a736110b550f0c2d5a46bc5ba519896b6

发布日期: 2022-03-15 17:15 修改: 2026-06-17 04:21

ssl_client CVE-2021-42378 高危 1.31.1-r20 1.31.1-r21 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the getvar_i()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42378

镜像层: sha256:32f366d666a541852cad754ee1cdb53a736110b550f0c2d5a46bc5ba519896b6

发布日期: 2021-11-15 21:15 修改: 2026-06-17 04:09

ssl_client CVE-2021-42379 高危 1.31.1-r20 1.31.1-r21 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the next_input_file()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42379

镜像层: sha256:32f366d666a541852cad754ee1cdb53a736110b550f0c2d5a46bc5ba519896b6

发布日期: 2021-11-15 21:15 修改: 2026-06-17 04:09

ssl_client CVE-2021-42380 高危 1.31.1-r20 1.31.1-r21 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the clrvar()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42380

镜像层: sha256:32f366d666a541852cad754ee1cdb53a736110b550f0c2d5a46bc5ba519896b6

发布日期: 2021-11-15 21:15 修改: 2026-06-17 04:09

ssl_client CVE-2021-42381 高危 1.31.1-r20 1.31.1-r21 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the hash_init()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42381

镜像层: sha256:32f366d666a541852cad754ee1cdb53a736110b550f0c2d5a46bc5ba519896b6

发布日期: 2021-11-15 21:15 修改: 2026-06-17 04:09

ssl_client CVE-2021-42382 高危 1.31.1-r20 1.31.1-r21 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the getvar_s()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42382

镜像层: sha256:32f366d666a541852cad754ee1cdb53a736110b550f0c2d5a46bc5ba519896b6

发布日期: 2021-11-15 21:15 修改: 2026-06-17 04:09

ssl_client CVE-2021-42383 高危 1.31.1-r20 1.31.1-r21 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the evaluate()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42383

镜像层: sha256:32f366d666a541852cad754ee1cdb53a736110b550f0c2d5a46bc5ba519896b6

发布日期: 2021-11-15 21:15 修改: 2026-06-17 04:09

ssl_client CVE-2021-42384 高危 1.31.1-r20 1.31.1-r21 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the handle_special()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42384

镜像层: sha256:32f366d666a541852cad754ee1cdb53a736110b550f0c2d5a46bc5ba519896b6

发布日期: 2021-11-15 21:15 修改: 2026-06-17 04:09

ssl_client CVE-2021-42385 高危 1.31.1-r20 1.31.1-r21 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the evaluate()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42385

镜像层: sha256:32f366d666a541852cad754ee1cdb53a736110b550f0c2d5a46bc5ba519896b6

发布日期: 2021-11-15 21:15 修改: 2026-06-17 04:09

ssl_client CVE-2021-42386 高危 1.31.1-r20 1.31.1-r21 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the nvalloc()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42386

镜像层: sha256:32f366d666a541852cad754ee1cdb53a736110b550f0c2d5a46bc5ba519896b6

发布日期: 2021-11-15 21:15 修改: 2026-06-17 04:09

ssl_client CVE-2022-28391 高危 1.31.1-r20 1.31.1-r22 busybox: remote attackers may execute arbitrary code if netstat is used

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-28391

镜像层: sha256:32f366d666a541852cad754ee1cdb53a736110b550f0c2d5a46bc5ba519896b6

发布日期: 2022-04-03 21:15 修改: 2026-06-17 04:38

busybox CVE-2021-42382 高危 1.31.1-r20 1.31.1-r21 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the getvar_s()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42382

镜像层: sha256:32f366d666a541852cad754ee1cdb53a736110b550f0c2d5a46bc5ba519896b6

发布日期: 2021-11-15 21:15 修改: 2026-06-17 04:09

zlib CVE-2018-25032 高危 1.2.11-r3 1.2.12-r0 zlib: A flaw found in zlib when compressing (not decompressing) certain inputs

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-25032

镜像层: sha256:32f366d666a541852cad754ee1cdb53a736110b550f0c2d5a46bc5ba519896b6

发布日期: 2022-03-25 09:15 修改: 2026-07-14 12:16

curl CVE-2021-22925 中危 7.76.1-r0 7.78.0-r0 curl: Incorrect fix for CVE-2021-22898 TELNET stack contents disclosure

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22925

镜像层: sha256:12ef90053f4861056c79c2c5cb04f861668707c768ba0458ca62feb4f3d342d3

发布日期: 2021-08-05 21:15 修改: 2026-06-17 03:38

curl CVE-2021-22947 中危 7.76.1-r0 7.79.0-r0 curl: Server responses received before STARTTLS processed after TLS handshake

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22947

镜像层: sha256:12ef90053f4861056c79c2c5cb04f861668707c768ba0458ca62feb4f3d342d3

发布日期: 2021-09-29 20:15 修改: 2026-06-17 03:38

curl CVE-2022-27774 中危 7.76.1-r0 7.79.1-r1 curl: credential leak on redirect

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-27774

镜像层: sha256:12ef90053f4861056c79c2c5cb04f861668707c768ba0458ca62feb4f3d342d3

发布日期: 2022-06-02 14:15 修改: 2026-06-17 04:37

curl CVE-2022-27776 中危 7.76.1-r0 7.79.1-r1 curl: auth/cookie leak on redirect

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-27776

镜像层: sha256:12ef90053f4861056c79c2c5cb04f861668707c768ba0458ca62feb4f3d342d3

发布日期: 2022-06-02 14:15 修改: 2026-06-17 04:37

busybox CVE-2021-42374 中危 1.31.1-r20 1.31.1-r21 busybox: out-of-bounds read in unlzma applet leads to information leak and denial of service when crafted LZMA-compressed input is decompressed

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42374

镜像层: sha256:32f366d666a541852cad754ee1cdb53a736110b550f0c2d5a46bc5ba519896b6

发布日期: 2021-11-15 21:15 修改: 2026-06-17 04:09

libcurl CVE-2021-22922 中危 7.76.1-r0 7.78.0-r0 curl: Content not matching hash in Metalink is not being discarded

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22922

镜像层: sha256:12ef90053f4861056c79c2c5cb04f861668707c768ba0458ca62feb4f3d342d3

发布日期: 2021-08-05 21:15 修改: 2026-06-17 03:38

libcurl CVE-2021-22923 中危 7.76.1-r0 7.78.0-r0 curl: Metalink download sends credentials

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22923

镜像层: sha256:12ef90053f4861056c79c2c5cb04f861668707c768ba0458ca62feb4f3d342d3

发布日期: 2021-08-05 21:15 修改: 2026-06-17 03:38

libcurl CVE-2021-22925 中危 7.76.1-r0 7.78.0-r0 curl: Incorrect fix for CVE-2021-22898 TELNET stack contents disclosure

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22925

镜像层: sha256:12ef90053f4861056c79c2c5cb04f861668707c768ba0458ca62feb4f3d342d3

发布日期: 2021-08-05 21:15 修改: 2026-06-17 03:38

libcurl CVE-2021-22947 中危 7.76.1-r0 7.79.0-r0 curl: Server responses received before STARTTLS processed after TLS handshake

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22947

镜像层: sha256:12ef90053f4861056c79c2c5cb04f861668707c768ba0458ca62feb4f3d342d3

发布日期: 2021-09-29 20:15 修改: 2026-06-17 03:38

libcurl CVE-2022-27774 中危 7.76.1-r0 7.79.1-r1 curl: credential leak on redirect

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-27774

镜像层: sha256:12ef90053f4861056c79c2c5cb04f861668707c768ba0458ca62feb4f3d342d3

发布日期: 2022-06-02 14:15 修改: 2026-06-17 04:37

libcurl CVE-2022-27776 中危 7.76.1-r0 7.79.1-r1 curl: auth/cookie leak on redirect

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-27776

镜像层: sha256:12ef90053f4861056c79c2c5cb04f861668707c768ba0458ca62feb4f3d342d3

发布日期: 2022-06-02 14:15 修改: 2026-06-17 04:37

ssl_client CVE-2021-42374 中危 1.31.1-r20 1.31.1-r21 busybox: out-of-bounds read in unlzma applet leads to information leak and denial of service when crafted LZMA-compressed input is decompressed

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42374

镜像层: sha256:32f366d666a541852cad754ee1cdb53a736110b550f0c2d5a46bc5ba519896b6

发布日期: 2021-11-15 21:15 修改: 2026-06-17 04:09

curl CVE-2021-22922 中危 7.76.1-r0 7.78.0-r0 curl: Content not matching hash in Metalink is not being discarded

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22922

镜像层: sha256:12ef90053f4861056c79c2c5cb04f861668707c768ba0458ca62feb4f3d342d3

发布日期: 2021-08-05 21:15 修改: 2026-06-17 03:38

curl CVE-2021-22923 中危 7.76.1-r0 7.78.0-r0 curl: Metalink download sends credentials

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22923

镜像层: sha256:12ef90053f4861056c79c2c5cb04f861668707c768ba0458ca62feb4f3d342d3

发布日期: 2021-08-05 21:15 修改: 2026-06-17 03:38

curl CVE-2021-22898 低危 7.76.1-r0 7.77.0-r0 curl: TELNET stack contents disclosure

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22898

镜像层: sha256:12ef90053f4861056c79c2c5cb04f861668707c768ba0458ca62feb4f3d342d3

发布日期: 2021-06-11 16:15 修改: 2026-06-17 03:37

curl CVE-2021-22924 低危 7.76.1-r0 7.78.0-r0 curl: Bad connection reuse due to flawed path name checks

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22924

镜像层: sha256:12ef90053f4861056c79c2c5cb04f861668707c768ba0458ca62feb4f3d342d3

发布日期: 2021-08-05 21:15 修改: 2026-06-17 03:38

libcurl CVE-2021-22898 低危 7.76.1-r0 7.77.0-r0 curl: TELNET stack contents disclosure

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22898

镜像层: sha256:12ef90053f4861056c79c2c5cb04f861668707c768ba0458ca62feb4f3d342d3

发布日期: 2021-06-11 16:15 修改: 2026-06-17 03:37

libcurl CVE-2021-22924 低危 7.76.1-r0 7.78.0-r0 curl: Bad connection reuse due to flawed path name checks

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22924

镜像层: sha256:12ef90053f4861056c79c2c5cb04f861668707c768ba0458ca62feb4f3d342d3

发布日期: 2021-08-05 21:15 修改: 2026-06-17 03:38

Node.js (node-pkg)
低危漏洞:0 中危漏洞:5 高危漏洞:3 严重漏洞:0
软件包 漏洞 安全状态 安装版本 修复版本 漏洞信息
async CVE-2021-43138 高危 3.2.0 3.2.2, 2.6.4 async: Prototype Pollution in async

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-43138

镜像层: sha256:dad761a3cb2f64d4d758e5f375d6a052674d134a49a18ebee5c4d519776630ac

发布日期: 2022-04-06 17:15 修改: 2026-06-17 04:10

follow-redirects CVE-2022-0155 高危 1.13.2 1.14.7 follow-redirects: Exposure of Private Personal Information to an Unauthorized Actor

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0155

镜像层: sha256:dad761a3cb2f64d4d758e5f375d6a052674d134a49a18ebee5c4d519776630ac

发布日期: 2022-01-10 20:15 修改: 2026-06-17 04:20

yarn CVE-2021-4435 高危 1.22.5 1.22.13 yarn: untrusted search path

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-4435

镜像层: sha256:d0d94b0050808d9f58546e20851e59d9345778e9d762dfad8d0187d59bbb413a

发布日期: 2024-02-04 20:15 修改: 2026-06-17 04:19

follow-redirects CVE-2022-0536 中危 1.13.2 1.14.8 follow-redirects: Exposure of Sensitive Information via Authorization Header leak

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0536

镜像层: sha256:dad761a3cb2f64d4d758e5f375d6a052674d134a49a18ebee5c4d519776630ac

发布日期: 2022-02-09 11:15 修改: 2026-06-17 04:20

follow-redirects CVE-2023-26159 中危 1.13.2 1.15.4 follow-redirects: Improper Input Validation due to the improper handling of URLs by the url.parse()

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-26159

镜像层: sha256:dad761a3cb2f64d4d758e5f375d6a052674d134a49a18ebee5c4d519776630ac

发布日期: 2024-01-02 05:15 修改: 2026-06-17 05:42

follow-redirects CVE-2024-28849 中危 1.13.2 1.15.6 follow-redirects: Possible credential leak

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-28849

镜像层: sha256:dad761a3cb2f64d4d758e5f375d6a052674d134a49a18ebee5c4d519776630ac

发布日期: 2024-03-14 17:15 修改: 2026-06-17 07:21

follow-redirects GHSA-r4q5-vmmm-2653 中危 1.13.2 1.16.0 follow-redirects leaks Custom Authentication Headers to Cross-Domain Redirect Targets

漏洞详情: https://github.com/advisories/GHSA-r4q5-vmmm-2653

镜像层: sha256:dad761a3cb2f64d4d758e5f375d6a052674d134a49a18ebee5c4d519776630ac

发布日期: 2026-04-14 01:11 修改: 2026-04-14 01:11

color-string CVE-2021-29060 中危 1.5.4 1.5.5 nodejs-color-string: Regular expression denial of service when the application is provided and checks a crafted invalid HWB string

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-29060

镜像层: sha256:dad761a3cb2f64d4d758e5f375d6a052674d134a49a18ebee5c4d519776630ac

发布日期: 2021-06-21 16:15 修改: 2026-06-17 03:47

检测到您正在使用广告拦截插件,本站为公益站点,依赖广告维持运转 🙏 查看如何关闭 ×