基础信息
项目名称:wrkzcoin/TipBot
项目徽章:
仓库地址:https://github.com/pterodactyl/panel
检测报告地址:https://www.murphysec.com/console/report/1721460563175366656/1721460563787735040
此报告由Murphysec提供
漏洞列表
| 漏洞名称 | 漏洞类型 | MPS编号 | CVE编号 | 漏洞等级 |
|---|---|---|---|---|
| httpx 存在输入验证不恰当漏洞 | 输入验证不恰当 | MPS-2022-14944 | 中危 |
缺陷组件
| 组件名称 | 版本 | 最小修复版本 | 依赖关系 | 修复建议 |
|---|---|---|---|---|
| httpx | 0.23.3 | 间接依赖 | 可选修复 |
许可证风险
| 许可证类型 | 相关组件 | 许可证风险 |
|---|---|---|
| MIT | 11 | 低 |
| ISC | 1 | 低 |
| 自定义许可证 | 5 | 低 |
| Apache-2.0 | 2 | 低 |
| BSD-3-Clause | 2 | 低 |
| Apache-2.0 OR MIT | 1 | 低 |
SBOM清单
| 组件名称 | 组件版本 | 是否直接依赖 | 仓库 |
|---|---|---|---|
| cachetools | 4.2.4 | 间接依赖 | pip |
| Dict | 间接依赖 | pip | |
| pydantic_core | 2.4.0 | 间接依赖 | pip |
| certifi | 2023.7.22 | 间接依赖 | pip |
| timedelta | 间接依赖 | pip | |
| tasks | 间接依赖 | pip | |
| when_mentioned | 间接依赖 | pip | |
| httpcore | 0.16.3 | 间接依赖 | pip |
| List | 间接依赖 | pip | |
| aiohttp | 间接依赖 | pip | |
| AsyncClient | 间接依赖 | pip | |
| EMOJI_ERROR | 间接依赖 | pip | |
| solana | 0.30.2 | 间接依赖 | pip |
| pydantic | 2.1.1 | 间接依赖 | pip |
| jsonalias | 0.1.1 | 间接依赖 | pip |
| fastapi | 0.100.1 | 间接依赖 | pip |
| toml | 0.10.2 | 间接依赖 | pip |
| idna | 3.4 | 间接依赖 | pip |
| solders | 0.18.1 | 间接依赖 | pip |
| RowButtonRowCloseAnyMessage | 间接依赖 | pip | |
| AutoShardedBot | 间接依赖 | pip | |
| log_to_channel | 间接依赖 | pip | |
| Option | 间接依赖 | pip | |
| httpx | 0.23.3 | 间接依赖 | pip |
| construct-typing | 0.5.6 | 间接依赖 | pip |
| OptionChoice | 间接依赖 | pip | |
| click | 8.1.6 | 间接依赖 | pip |
| EMOJI_RED_NO | 间接依赖 | pip | |
| commands | 间接依赖 | pip | |
| annotated-types | 0.5.0 | 间接依赖 | pip |
| sniffio | 1.3.0 | 间接依赖 | pip |
| pkg_resources | 0.0.0 | 间接依赖 | pip |
| starlette | 0.27.0 | 间接依赖 | pip |
| EMOJI_INFORMATION | 间接依赖 | pip | |
| rfc3986 | 1.5.0 | 间接依赖 | pip |
| anyio | 3.7.1 | 间接依赖 | pip |
| uvicorn | 0.23.2 | 间接依赖 | pip |
| logchanbot | 间接依赖 | pip | |
| websockets | 11.0.3 | 间接依赖 | pip |
| exceptiongroup | 1.1.2 | 间接依赖 | pip |
| PIL | 间接依赖 | pip | |
| typing_extensions | 4.7.1 | 间接依赖 | pip |
| Timeout | 间接依赖 | pip | |
| truncate | 间接依赖 | pip | |
| types-cachetools | 4.2.10 | 间接依赖 | pip |
| SERVER_BOT | 间接依赖 | pip | |
| construct | 2.10.68 | 间接依赖 | pip |
| h11 | 0.14.0 | 间接依赖 | pip |