issues Search Results · language:Dune language:JavaScript language:Java language:JavaScript language:C# language:JavaScript
Filter by
39.4M results
The current SwiftUI shell is working, but AppDelegate still owns too many responsibilities: launching the runtime,
tracking readiness, handling auto-restart, and coordinating browser open behavior.
Next ...
问题描述
DraftServiceImpl.getById(Long id) 方法未校验当前登录用户是否拥有该草稿,任何登录用户只需知道草稿 ID 即可查看任意用户的草稿内容。这是一个典型的 IDOR(Insecure Direct Object
Reference) 漏洞。
根因定位
文件: backend/src/main/java/com/techhub/service/impl/DraftServiceImpl.java ...
Alert IDs:
- 69db3dc3-6fb5-4d77-ac12-187f4230280e
- 931aa0e0-054e-4f54-a670-705e63fd12b7
- abd83a55-8f1d-49d2-a54b-2130c54f81e2
Vulnerabilities in braces
Release: 1.0665
Total Vulnerabilities: ...
Alert IDs:
- 631ec61a-143c-4758-baff-1402acbb88cb
- bcd690a7-5639-4be1-a33f-73093c363d36
Vulnerabilities in morgan
Release: 1.0665
Total Vulnerabilities: 2
1. CVE-2019-5413
Severity: CRITICAL ...
Alert IDs:
- 04e48b48-baf9-4ed9-9213-adfc85117144
- 0b79a6e2-7db1-4ceb-b1a2-65b0c3e332f3
- 0dd61c8b-5211-4ee6-8e5e-6bdd6feafa00
- 14e11923-0936-4b06-92ac-14f9c7ed3e87
- 19e8aed1-8d78-444f-9afe-590a18a0ea67 ...
Alert IDs:
- 903433eb-5c5f-4a74-90dd-49e28caefa27
Vulnerabilities in color-convert
Release: 1.0665
Total Vulnerabilities: 1
1. CVE-2025-59162
Severity: HIGH (Score: 0.0)
Description:
Impact
...
Alert IDs:
- 73c23f7f-7542-4d0c-8d96-e49fd5c63262
Vulnerabilities in micromatch
Release: 1.0665
Total Vulnerabilities: 1
1. CVE-2024-4067
Severity: MEDIUM (Score: 5.3)
Description: The NPM package ...
Alert IDs:
- 2e17b7f2-a272-4f9d-9013-ee792bb248e5
- 4929d2b8-53fd-4459-bfaf-4c9b2d309faf
- 54da2820-84c1-4da6-8f27-9701d9717a4c
- 55a48771-ccb8-4b5c-9278-ea863fe3311f
- 5fae5645-2d98-419f-9b46-02dda865b530 ...

Learn how you can use GitHub Issues to plan and track your work.
Save views for sprints, backlogs, teams, or releases. Rank, sort, and filter issues to suit the occasion. The possibilities are endless.Learn more about GitHub IssuesProTip! Restrict your search to the title by using the in:title qualifier.