基础信息
项目名称:AlloyTeam/Nuclear
项目徽章:
仓库地址:https://github.com/pterodactyl/panel
检测报告地址:https://www.murphysec.com/console/report/1715723001978814464/1715723002054311936
此报告由Murphysec提供
漏洞列表
| 漏洞名称 | 漏洞类型 | MPS编号 | CVE编号 | 漏洞等级 |
|---|---|---|---|---|
| node-semver 安全漏洞 | ReDoS | MPS-2022-5166 | CVE-2022-25883 | 高危 |
缺陷组件
| 组件名称 | 版本 | 最小修复版本 | 依赖关系 | 修复建议 |
|---|---|---|---|---|
| semver | 5.7.2 | 7.5.2 | 间接依赖 | 可选修复 |
许可证风险
| 许可证类型 | 相关组件 | 许可证风险 |
|---|---|---|
| MIT | 48 | 低 |
| Apache-2.0 | 2 | 低 |
| BSD-3-Clause | 2 | 低 |
| ISC | 4 | 低 |
| 0BSD | 1 | 低 |
SBOM清单
| 组件名称 | 组件版本 | 是否直接依赖 | 仓库 |
|---|---|---|---|
| supports-preserve-symlinks-flag | 1.0.0 | 间接依赖 | npm |
| postcss | 8.4.31 | 间接依赖 | npm |
| pify | 4.0.1 | 间接依赖 | npm |
| vite | 2.9.16 | 直接依赖 | npm |
| typescript | 4.9.5 | 直接依赖 | npm |
| esbuild-linux-mips64le | 0.14.54 | 间接依赖 | npm |
| esbuild-freebsd-64 | 0.14.54 | 间接依赖 | npm |
| is-what | 3.14.1 | 间接依赖 | npm |
| construct-style-sheets-polyfill | 3.0.1 | 间接依赖 | npm |
| esbuild-linux-s390x | 0.14.54 | 间接依赖 | npm |
| safer-buffer | 2.1.2 | 间接依赖 | npm |
| esbuild-openbsd-64 | 0.14.54 | 间接依赖 | npm |
| esbuild-linux-32 | 0.14.54 | 间接依赖 | npm |
| resolve | 1.22.8 | 间接依赖 | npm |
| rollup | 2.77.3 | 间接依赖 | npm |
| esbuild-linux-ppc64le | 0.14.54 | 间接依赖 | npm |
| esbuild-linux-arm64 | 0.14.54 | 间接依赖 | npm |
| source-map-js | 1.0.2 | 间接依赖 | npm |
| nanoid | 3.3.6 | 间接依赖 | npm |
| debug | 3.2.7 | 间接依赖 | npm |
| weakmap-polyfill | 2.0.4 | 间接依赖 | npm |
| esbuild-windows-64 | 0.14.54 | 间接依赖 | npm |
| sax | 1.3.0 | 间接依赖 | npm |
| needle | 3.2.0 | 间接依赖 | npm |
| is-core-module | 2.13.0 | 间接依赖 | npm |
| esbuild-freebsd-arm64 | 0.14.54 | 间接依赖 | npm |
| esbuild-android-arm64 | 0.14.54 | 间接依赖 | npm |
| esbuild-android-64 | 0.14.54 | 间接依赖 | npm |
| mime | 1.6.0 | 间接依赖 | npm |
| esbuild-windows-32 | 0.14.54 | 间接依赖 | npm |
| has | 1.0.4 | 间接依赖 | npm |
| @esbuild/linux-loong64 | 0.14.54 | 间接依赖 | npm |
| make-dir | 2.1.0 | 间接依赖 | npm |
| ms | 2.1.3 | 间接依赖 | npm |
| prr | 1.0.1 | 间接依赖 | npm |
| esbuild-linux-64 | 0.14.54 | 间接依赖 | npm |
| iconv-lite | 0.6.3 | 间接依赖 | npm |
| parse-node-version | 1.0.1 | 间接依赖 | npm |
| picocolors | 1.0.0 | 间接依赖 | npm |
| fsevents | 2.3.3 | 间接依赖 | npm |
| copy-anything | 2.0.6 | 间接依赖 | npm |
| errno | 0.1.8 | 间接依赖 | npm |
| esbuild-netbsd-64 | 0.14.54 | 间接依赖 | npm |
| esbuild-linux-riscv64 | 0.14.54 | 间接依赖 | npm |
| image-size | 0.5.5 | 间接依赖 | npm |
| less | 4.2.0 | 直接依赖 | npm |
| graceful-fs | 4.2.11 | 间接依赖 | npm |
| esbuild-windows-arm64 | 0.14.54 | 间接依赖 | npm |
| source-map | 0.6.1 | 间接依赖 | npm |
| esbuild-darwin-64 | 0.14.54 | 间接依赖 | npm |
| tslib | 2.6.2 | 间接依赖 | npm |
| esbuild-darwin-arm64 | 0.14.54 | 间接依赖 | npm |
| semver | 5.7.2 | 间接依赖 | npm |
| omi | 7.1.0 | 直接依赖 | npm |
| esbuild | 0.14.54 | 间接依赖 | npm |
| path-parse | 1.0.7 | 间接依赖 | npm |
| esbuild-sunos-64 | 0.14.54 | 间接依赖 | npm |
| esbuild-linux-arm | 0.14.54 | 间接依赖 | npm |