搜索结果
关于「parse-server」的漏洞数据
| AVD编号 | 漏洞名称 | 漏洞类型 | 披露时间 | 漏洞状态 |
|---|---|---|---|---|
| AVD-2026-30854 | Parse Server GraphQL 内联片段内省绕过漏洞(CVE-2026-30854) | 2026-03-08 | ||
| AVD-2026-30848 | Parse Server < 8.6.8 路径穿越漏洞(CVE-2026-30848) | 2026-03-08 | ||
| AVD-2026-30850 | Parse Server 权限绕过导致元数据泄露(CVE-2026-30850) | 2026-03-08 | ||
| AVD-2026-30835 | Parse Server 畸形正则查询导致数据库信息泄露(CVE-2026-30835) | 2026-03-07 | ||
| AVD-2026-30229 | Parse Server 越权冒充漏洞(CVE-2026-30229) | 2026-03-07 | ||
| AVD-2026-30228 | Parse Server 权限绕过导致非法文件操作(CVE-2026-30228) | 2026-03-07 | ||
| AVD-2026-29182 | Parse Server 权限绕过导致非法写操作(CVE-2026-29182) | 2026-03-07 | ||
| AVD-2026-27804 | Parse Server 数据伪造问题漏洞(CVE-2026-27804) | 2026-02-26 | ||
| AVD-2025-68150 | Parse Server 在 Instagram OAuth 适配器中存在服务器端请求伪造 (SSRF) (CVE-2025-68150) | 2025-12-17 | ||
| AVD-2025-68115 | 解析服务器容易通过未转义的 Mustache 模板变量受到跨站点脚本 (XSS) 攻击 (CVE-2025-68115) | 2025-12-16 | ||
| AVD-2025-67727 | Parse Server 安全漏洞(CVE-2025-67727) | 2025-12-12 | ||
| AVD-2024-29027 | 通过无效的 Cloud Function 或 Cloud Job 名称解析服务器崩溃和 RCE (CVE-2024-29027) | 2024-03-20 | ||
| AVD-2024-27298 | 解析服务器literalizeRegexPart SQL 注入 (CVE-2024-27298) | 2024-03-02 | ||
| AVD-2023-46119 | 上传没有扩展名的文件时,解析服务器可能会崩溃 (CVE-2023-46119) | 2023-10-16 | ||
| AVD-2023-41058 | Parse Server beforeFind 触发器安全绕过漏洞(CVE-2023-41058) | 2023-09-05 | ||
| AVD-2023-36475 | Parse Server MongoDB BSON 远程命令执行漏洞(CVE-2023-36475) | 2023-06-29 | ||
| AVD-2023-32689 | Parse Server 远程代码执行漏洞(CVE-2023-32689) | 2023-05-31 | ||
| AVD-2023-22474 | Parse Server 安全特性绕过漏洞(CVE-2023-22474) | 2023-02-04 | ||
| AVD-2022-41878 | parseplatform parse-server improperly controlled modification of object prototype attributes ('prototype pollution') | 2022-11-11 | ||
| AVD-2022-41879 | parseplatform parse-server improperly controlled modification of object prototype attributes ('prototype pollution') | 2022-11-11 | ||
| AVD-2022-39396 | Parse Server 安全漏洞(CVE-2022-39396) | 2022-11-10 | ||
| AVD-2022-39313 | parseplatform parse-server 输入验证不恰当 | 2022-10-24 | ||
| AVD-2022-39231 | parseplatform parse-server 认证机制不恰当 | 2022-09-23 | ||
| AVD-2022-39225 | parseplatform parse-server 在范围间的资源转移不正确 | 2022-09-23 | ||
| AVD-2022-36079 | parseplatform parse-server 信息暴露 | 2022-09-08 | ||
| AVD-2022-31112 | parseplatform parse-server 信息暴露 | 2022-07-01 | ||
| AVD-2022-31089 | parseplatform parse-server 未加检查的返回值 | 2022-06-28 | ||
| AVD-2022-31083 | parseplatform parse-server 认证机制不恰当 | 2022-06-18 | ||
| AVD-2022-24901 | parseplatform parse-server 证书验证不恰当 | 2022-05-04 | ||
| AVD-2022-24760 | parseplatform parse-server improperly controlled modification of object prototype attributes ('prototype pollution') | 2022-03-12 |