搜索结果
关于「onedev」的漏洞数据
AVD编号 | 漏洞名称 | 漏洞类型 | 披露时间 | 漏洞状态 |
---|---|---|---|---|
AVD-2024-45309 | OneDev 存在漏洞,未经身份验证的用户可读取任意文件(CVE-2024-45309) | 2024-10-21 | ||
AVD-2023-24828 | 使用具有密码学弱点缺陷的PRNG | 2023-02-08 | ||
AVD-2022-38301 | onedev_project onedev 对路径名的限制不恰当(路径遍历) | 2022-09-15 | ||
AVD-2022-39208 | onedev_project onedev 对外部实体的文件或目录可访问 | 2022-09-14 | ||
AVD-2022-39207 | onedev_project onedev 在web页面生成时对输入的转义处理不恰当(跨站脚本) | 2022-09-14 | ||
AVD-2022-39206 | onedev_project onedev 资源在另一范围的外部可控制索引 | 2022-09-14 | ||
AVD-2022-39205 | OneDev 认证绕过致远程代码执行漏洞(CVE-2022-39205) | 2022-09-14 | ||
AVD-2021-32651 | onedev_project onedev ldap查询中使用的特殊元素转义处理不恰当(ldap注入) | 2021-06-02 | ||
AVD-2021-21251 | onedev_project onedev 对路径名的限制不恰当(路径遍历) | 2021-01-16 | ||
AVD-2021-21242 | onedev_project onedev 可信数据的反序列化 | 2021-01-16 | ||
AVD-2021-21250 | onedev_project onedev 文件和路径信息暴露 | 2021-01-16 | ||
AVD-2021-21249 | Theonedev Onedev注入漏洞 | 2021-01-16 | ||
AVD-2021-21248 | onedev_project onedev 输出中的特殊元素转义处理不恰当(注入) | 2021-01-16 | ||
AVD-2021-21247 | onedev_project onedev 可信数据的反序列化 | 2021-01-16 | ||
AVD-2021-21246 | onedev_project onedev 授权机制缺失 | 2021-01-16 | ||
AVD-2021-21245 | onedev_project onedev 危险类型文件的不加限制上传 | 2021-01-16 | ||
AVD-2021-21244 | onedev_project onedev 输出中的特殊元素转义处理不恰当(注入) | 2021-01-16 | ||
AVD-2021-21243 | onedev_project onedev 可信数据的反序列化 | 2021-01-16 |