基础信息
项目名称:restsharp/RestSharp
项目徽章:
仓库地址:https://github.com/pterodactyl/panel
检测报告地址:https://www.murphysec.com/console/report/1744189164682260480/1744189179010002944
此报告由Murphysec提供
漏洞列表
漏洞名称 | 漏洞类型 | MPS编号 | CVE编号 | 漏洞等级 |
---|---|---|---|---|
Vite 安全漏洞 | 使用不正确的解析名称或索引 | MPS-o473-85mg | CVE-2023-34092 | 高危 |
PostCSS 安全漏洞 | 注入 | MPS-y3tx-jzms | CVE-2023-44270 | 中危 |
缺陷组件
组件名称 | 版本 | 最小修复版本 | 依赖关系 | 修复建议 |
---|---|---|---|---|
vite | 2.9.15 | 2.9.16 | 间接依赖 | 建议修复 |
postcss | 8.4.16 | 8.4.31 | 间接依赖 | 可选修复 |
许可证风险
许可证类型 | 相关组件 | 许可证风险 |
---|---|---|
MIT | 194 | 低 |
ISC | 8 | 低 |
BSD-3-Clause | 4 | 低 |
CC0-1.0 | 1 | 低 |
CC-BY-4.0 | 1 | 低 |
Unlicense | 1 | 低 |
Apache-2.0 | 1 | 低 |
BSD-2-Clause | 2 | 低 |
Python-2.0 | 1 | 低 |
SBOM清单
组件名称 | 组件版本 | 是否直接依赖 | 仓库 |
---|---|---|---|
magic-string | 0.25.7 | 间接依赖 | npm |
esbuild-linux-ppc64le | 0.14.54 | 直接依赖 | npm |
slash | 3.0.0 | 间接依赖 | npm |
npm-run-path | 4.0.1 | 间接依赖 | npm |
@types/markdown-it | 12.2.3 | 间接依赖 | npm |
readable-stream | 3.6.0 | 间接依赖 | npm |
debug | 4.3.3 | 间接依赖 | npm |
esbuild-linux-arm64 | 0.13.15 | 直接依赖 | npm |
color-convert | 2.0.1 | 间接依赖 | npm |
merge2 | 1.4.1 | 间接依赖 | npm |
@vuepress/core | 2.0.0-beta.33 | 间接依赖 | npm |
@vue/server-renderer | 3.2.27 | 间接依赖 | npm |
vue | 3.2.27 | 间接依赖 | npm |
csstype | 2.6.19 | 间接依赖 | npm |
picocolors | 1.0.0 | 间接依赖 | npm |
anymatch | 3.1.2 | 间接依赖 | npm |
@vuepress/markdown | 2.0.0-beta.33 | 间接依赖 | npm |
esbuild-android-arm64 | 0.13.15 | 直接依赖 | npm |
ansi-styles | 4.3.0 | 间接依赖 | npm |
esbuild-freebsd-arm64 | 0.14.54 | 直接依赖 | npm |
markdown-it | 12.3.2 | 间接依赖 | npm |
connect-history-api-fallback | 1.6.0 | 间接依赖 | npm |
esbuild-linux-arm | 0.14.54 | 直接依赖 | npm |
path-key | 3.1.1 | 间接依赖 | npm |
source-map | 0.6.1 | 间接依赖 | npm |
medium-zoom | 1.0.6 | 间接依赖 | npm |
shebang-command | 2.0.0 | 间接依赖 | npm |
@babel/parser | 7.16.4 | 间接依赖 | npm |
mdn-data | 2.0.23 | 间接依赖 | npm |
ignore | 5.1.9 | 间接依赖 | npm |
is-core-module | 2.10.0 | 间接依赖 | npm |
@types/mdurl | 1.0.2 | 间接依赖 | npm |
fill-range | 7.0.1 | 间接依赖 | npm |
@types/node | 16.11.12 | 间接依赖 | npm |
esbuild | 0.14.54 | 间接依赖 | npm |
gray-matter | 4.0.3 | 间接依赖 | npm |
esbuild-windows-64 | 0.13.15 | 直接依赖 | npm |
is-unicode-supported | 0.1.0 | 间接依赖 | npm |
@vueuse/shared | 7.5.3 | 间接依赖 | npm |
@vue/compiler-ssr | 3.2.27 | 间接依赖 | npm |
dir-glob | 3.0.1 | 间接依赖 | npm |
@types/linkify-it | 3.0.2 | 间接依赖 | npm |
mdurl | 1.0.1 | 间接依赖 | npm |
vue-demi | 0.12.1 | 间接依赖 | npm |
@vuepress/plugin-active-header-links | 2.0.0-beta.33 | 间接依赖 | npm |
@vuepress/plugin-prismjs | 2.0.0-beta.33 | 间接依赖 | npm |
glob-parent | 5.1.2 | 间接依赖 | npm |
array-union | 2.1.0 | 间接依赖 | npm |
caniuse-lite | 1.0.30001300 | 间接依赖 | npm |
is-interactive | 1.0.0 | 间接依赖 | npm |
esbuild | 0.13.15 | 间接依赖 | npm |
esbuild-linux-mips64le | 0.14.54 | 直接依赖 | npm |
has-flag | 4.0.0 | 间接依赖 | npm |
@types/ms | 0.7.31 | 间接依赖 | npm |
universalify | 2.0.0 | 间接依赖 | npm |
is-extglob | 2.1.1 | 间接依赖 | npm |
defaults | 1.0.3 | 间接依赖 | npm |
esbuild-darwin-64 | 0.13.15 | 直接依赖 | npm |
esbuild-linux-ppc64le | 0.13.15 | 直接依赖 | npm |
which | 2.0.2 | 间接依赖 | npm |
sass | 1.49.0 | 间接依赖 | npm |
path-type | 4.0.0 | 间接依赖 | npm |
csso | 5.0.2 | 间接依赖 | npm |
vuepress-vite | 2.0.0-beta.33 | 直接依赖 | npm |
@types/fs-extra | 9.0.13 | 间接依赖 | npm |
esbuild-freebsd-64 | 0.13.15 | 直接依赖 | npm |
markdown-it-anchor | 8.4.1 | 间接依赖 | npm |
@vuepress/plugin-medium-zoom | 2.0.0-beta.33 | 间接依赖 | npm |
esbuild-openbsd-64 | 0.13.15 | 直接依赖 | npm |
klona | 2.0.5 | 间接依赖 | npm |
esbuild-freebsd-arm64 | 0.13.15 | 直接依赖 | npm |
@nodelib/fs.stat | 2.0.5 | 间接依赖 | npm |
ts-debounce | 4.0.0 | 间接依赖 | npm |
markdown-it-container | 3.0.0 | 间接依赖 | npm |
upath | 2.0.1 | 间接依赖 | npm |
@vuepress/cli | 2.0.0-beta.33 | 间接依赖 | npm |
argparse | 1.0.10 | 间接依赖 | npm |
has | 1.0.3 | 间接依赖 | npm |
browserslist | 4.19.1 | 间接依赖 | npm |
cli-cursor | 3.1.0 | 间接依赖 | npm |
prismjs | 1.29.0 | 间接依赖 | npm |
strip-final-newline | 2.0.0 | 间接依赖 | npm |
nanoid | 3.3.4 | 间接依赖 | npm |
@vuepress/plugin-external-link-icon | 2.0.0-beta.33 | 间接依赖 | npm |
@vuepress/utils | 2.0.0-beta.33 | 间接依赖 | npm |
@esbuild/linux-loong64 | 0.14.54 | 直接依赖 | npm |
supports-color | 7.2.0 | 间接依赖 | npm |
nprogress | 0.2.0 | 间接依赖 | npm |
@vuepress/theme-default | 2.0.0-beta.33 | 间接依赖 | npm |
sprintf-js | 1.0.3 | 间接依赖 | npm |
jsonfile | 6.1.0 | 间接依赖 | npm |
fs-extra | 10.0.0 | 间接依赖 | npm |
uc.micro | 1.0.6 | 间接依赖 | npm |
js-yaml | 3.14.1 | 间接依赖 | npm |
merge-stream | 2.0.0 | 间接依赖 | npm |
supports-preserve-symlinks-flag | 1.0.0 | 间接依赖 | npm |
esbuild-windows-arm64 | 0.13.15 | 直接依赖 | npm |
human-signals | 2.1.0 | 间接依赖 | npm |
escalade | 3.1.1 | 间接依赖 | npm |
esbuild-netbsd-64 | 0.14.54 | 直接依赖 | npm |
globby | 11.0.4 | 间接依赖 | npm |
normalize-path | 3.0.0 | 间接依赖 | npm |
extend-shallow | 2.0.1 | 间接依赖 | npm |
esbuild-linux-arm | 0.13.15 | 直接依赖 | npm |
esbuild-linux-riscv64 | 0.14.54 | 直接依赖 | npm |
@vuepress/plugin-git | 2.0.0-beta.33 | 间接依赖 | npm |
esbuild-darwin-arm64 | 0.13.15 | 直接依赖 | npm |
@vuepress/bundler-vite | 2.0.0-beta.33 | 间接依赖 | npm |
inherits | 2.0.4 | 间接依赖 | npm |
path-parse | 1.0.7 | 间接依赖 | npm |
graceful-fs | 4.2.8 | 直接依赖 | npm |
log-symbols | 4.1.0 | 间接依赖 | npm |
cross-spawn | 7.0.3 | 间接依赖 | npm |
esbuild-darwin-arm64 | 0.14.54 | 直接依赖 | npm |
entities | 2.1.0 | 间接依赖 | npm |
@types/debug | 4.1.7 | 间接依赖 | npm |
vite | 2.9.15 | 间接依赖 | npm |
neo-async | 2.6.2 | 间接依赖 | npm |
source-map-js | 1.0.2 | 间接依赖 | npm |
esbuild-android-arm64 | 0.14.54 | 直接依赖 | npm |
esbuild-windows-32 | 0.14.54 | 直接依赖 | npm |
picomatch | 2.3.0 | 间接依赖 | npm |
normalize-range | 0.1.2 | 间接依赖 | npm |
sass-loader | 12.4.0 | 间接依赖 | npm |
esbuild-linux-64 | 0.14.54 | 直接依赖 | npm |
is-stream | 2.0.1 | 间接依赖 | npm |
esbuild-netbsd-64 | 0.13.15 | 直接依赖 | npm |
@vue/devtools-api | 6.0.0-beta.20.1 | 间接依赖 | npm |
ora | 5.4.1 | 间接依赖 | npm |
@vuepress/plugin-palette | 2.0.0-beta.33 | 间接依赖 | npm |
esbuild-linux-mips64le | 0.13.15 | 直接依赖 | npm |
micromatch | 4.0.4 | 间接依赖 | npm |
@vue/compiler-core | 3.2.27 | 间接依赖 | npm |
onetime | 5.1.2 | 间接依赖 | npm |
esbuild-freebsd-64 | 0.14.54 | 直接依赖 | npm |
@vue/runtime-core | 3.2.27 | 间接依赖 | npm |
cli-spinners | 2.6.1 | 间接依赖 | npm |
postcss | 8.4.16 | 间接依赖 | npm |
fraction.js | 4.1.2 | 间接依赖 | npm |
esbuild-linux-64 | 0.13.15 | 直接依赖 | npm |
argparse | 2.0.1 | 间接依赖 | npm |
is-extendable | 0.1.1 | 间接依赖 | npm |
chalk | 4.1.2 | 间接依赖 | npm |
esbuild-windows-arm64 | 0.14.54 | 直接依赖 | npm |
readdirp | 3.6.0 | 间接依赖 | npm |
is-glob | 4.0.3 | 间接依赖 | npm |
markdown-it-emoji | 2.0.0 | 间接依赖 | npm |
execa | 5.1.1 | 间接依赖 | npm |
esbuild-linux-32 | 0.14.54 | 直接依赖 | npm |
@vuepress/plugin-back-to-top | 2.0.0-beta.33 | 间接依赖 | npm |
restore-cursor | 3.1.0 | 间接依赖 | npm |
electron-to-chromium | 1.4.49 | 间接依赖 | npm |
@vuepress/plugin-theme-data | 2.0.0-beta.33 | 间接依赖 | npm |
kind-of | 6.0.3 | 间接依赖 | npm |
@vueuse/core | 7.5.3 | 间接依赖 | npm |
@vuepress/plugin-nprogress | 2.0.0-beta.33 | 间接依赖 | npm |
@vuepress/plugin-container | 2.0.0-beta.33 | 间接依赖 | npm |
esbuild-openbsd-64 | 0.14.54 | 直接依赖 | npm |
signal-exit | 3.0.6 | 间接依赖 | npm |
chokidar | 3.5.2 | 间接依赖 | npm |
esbuild-linux-32 | 0.13.15 | 直接依赖 | npm |
binary-extensions | 2.2.0 | 间接依赖 | npm |
@vitejs/plugin-vue | 2.0.1 | 间接依赖 | npm |
@vue/compiler-dom | 3.2.27 | 间接依赖 | npm |
esbuild-sunos-64 | 0.14.54 | 直接依赖 | npm |
ansi-regex | 5.0.1 | 间接依赖 | npm |
section-matter | 1.0.0 | 间接依赖 | npm |
fsevents | 2.3.2 | 直接依赖 | npm |
braces | 3.0.2 | 间接依赖 | npm |
esbuild-linux-arm64 | 0.14.54 | 直接依赖 | npm |
hash-sum | 2.0.0 | 间接依赖 | npm |
source-map-js | 1.0.1 | 间接依赖 | npm |
@vue/reactivity | 3.2.27 | 间接依赖 | npm |
buffer | 5.7.1 | 间接依赖 | npm |
node-releases | 2.0.1 | 间接依赖 | npm |
esbuild-darwin-64 | 0.14.54 | 直接依赖 | npm |
vue-router | 4.0.12 | 间接依赖 | npm |
postcss-value-parser | 4.2.0 | 间接依赖 | npm |
esbuild-windows-32 | 0.13.15 | 直接依赖 | npm |
sourcemap-codec | 1.4.8 | 间接依赖 | npm |
css-tree | 2.0.4 | 间接依赖 | npm |
esbuild-linux-s390x | 0.14.54 | 直接依赖 | npm |
esbuild-windows-64 | 0.14.54 | 直接依赖 | npm |
@vuepress/shared | 2.0.0-beta.33 | 间接依赖 | npm |
esbuild-sunos-64 | 0.13.15 | 直接依赖 | npm |
@vuepress/client | 2.0.0-beta.33 | 间接依赖 | npm |
envinfo | 7.8.1 | 间接依赖 | npm |
bl | 4.1.0 | 间接依赖 | npm |
@nodelib/fs.walk | 1.2.8 | 间接依赖 | npm |
@vue/shared | 3.2.27 | 间接依赖 | npm |
is-binary-path | 2.1.0 | 间接依赖 | npm |
@vue/compiler-sfc | 3.2.27 | 间接依赖 | npm |
strip-bom-string | 1.0.0 | 间接依赖 | npm |
rollup | 2.77.3 | 间接依赖 | npm |
to-regex-range | 5.0.1 | 间接依赖 | npm |
fast-glob | 3.2.7 | 间接依赖 | npm |
@types/hash-sum | 1.0.0 | 间接依赖 | npm |
@vue/runtime-dom | 3.2.27 | 间接依赖 | npm |
toml | 3.0.0 | 间接依赖 | npm |
immutable | 4.0.0 | 间接依赖 | npm |
postcss-csso | 6.0.0 | 间接依赖 | npm |
mimic-fn | 2.1.0 | 间接依赖 | npm |
linkify-it | 3.0.3 | 间接依赖 | npm |
cac | 6.7.12 | 间接依赖 | npm |
estree-walker | 2.0.2 | 间接依赖 | npm |
ms | 2.1.2 | 间接依赖 | npm |
strip-ansi | 6.0.1 | 间接依赖 | npm |
wcwidth | 1.0.1 | 间接依赖 | npm |
autoprefixer | 10.4.2 | 间接依赖 | npm |
esbuild-android-64 | 0.14.54 | 直接依赖 | npm |
get-stream | 6.0.1 | 间接依赖 | npm |
@vue/reactivity-transform | 3.2.27 | 间接依赖 | npm |
resolve | 1.22.1 | 间接依赖 | npm |
esprima | 4.0.1 | 间接依赖 | npm |