nix flake so sveske and spoody busts

This commit is contained in:
BOTAlex 2025-10-02 05:51:10 +02:00
parent e6c498b0c2
commit b7524b10da
504 changed files with 2166 additions and 0 deletions

View file

@ -0,0 +1 @@
{"source":"3pKI33950hBe/vwYhNsMzIjbQWzvzu+WkpgqIQcO6E6JOo1HUfIjR1/mJ4ltFxfZKS5bgFtKCxgsfYM4Rw8VmA==","name":"svelte-katex","dependency":"katex","title":"Depends on vulnerable versions of katex","url":null,"severity":"moderate","versions":["0.1.0","0.1.1","0.1.2","0.2.0"],"vulnerableVersions":["0.1.0","0.1.1","0.1.2"],"cwe":["CWE-79","CWE-116"],"cvss":{"score":6.3,"vectorString":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L"},"range":"<=0.1.2","id":"eZ9ScMm3cSkJTZsGu62DfWUskx06hC4FoQvw0m99OzYHF7Mm5J2n/pPJqqcDBYMFoLM5AFYiTPArvduZC20MCw=="}

View file

@ -0,0 +1 @@
{"source":"BIa+WQeyfjFbqqhouMkkiWanlmeQ7hLwzpqC8i3MBFvop7fxVhllzYpT+cjwFpPmRA0dOYWZxzF2JOac8W8ZxA==","name":"@sveltejs/vite-plugin-svelte-inspector","dependency":"vite","title":"Depends on vulnerable versions of vite","url":null,"severity":"low","versions":["1.0.1","1.0.2","1.0.3","1.0.4","2.0.0-next.0","2.0.0-next.1","2.0.0","2.1.0","3.0.0-next.0","3.0.0-next.1","3.0.0-next.2","3.0.0-next.3","3.0.0-next.4","3.0.0","3.0.1","4.0.0-next.0","4.0.0","4.0.1","5.0.0-next.0","5.0.0-next.1","5.0.0","5.0.1"],"vulnerableVersions":["1.0.1","1.0.2","1.0.3","1.0.4"],"cwe":["CWE-22","CWE-200","CWE-284"],"cvss":{"score":0,"vectorString":null},"range":"<=1.0.4","id":"ApQO8WtFtE+1+/ZAfXH2UKAjOa4nWCjwz7O6tlrQmcZEdxguBlw/0wGmm7iF8+EwNomXfGVL7P1/6HjD54crTQ=="}

View file

@ -0,0 +1 @@
{"source":1096809,"name":"katex","dependency":"katex","title":"KaTeX's `\\includegraphics` does not escape filename","url":"https://github.com/advisories/GHSA-f98w-7cxr-ff2h","severity":"moderate","versions":["0.1.0","0.1.1","0.2.0","0.3.0","0.4.0","0.4.3","0.5.0","0.5.1","0.6.0","0.7.0-pre","0.7.0","0.7.1","0.8.0","0.8.1","0.8.2","0.8.3","0.9.0-alpha","0.9.0-alpha1","0.9.0-alpha2","0.9.0-beta","0.9.0-beta1","0.9.0","0.10.0-alpha","0.10.0-beta","0.10.0-rc","0.10.0-rc.1","0.10.0","0.10.1","0.10.2","0.11.0","0.11.1","0.12.0","0.13.0","0.13.1","0.13.2","0.13.3","0.13.4","0.13.5","0.13.6","0.13.7","0.13.8","0.13.9","0.13.10","0.13.11","0.13.12","0.13.13","0.13.14","0.13.16","0.13.17","0.13.18","0.13.19","0.13.20","0.13.21","0.13.22","0.13.23","0.13.24","0.14.0","0.14.1","0.15.0","0.15.1","0.15.2","0.15.3","0.15.4","0.15.5","0.15.6","0.16.0","0.16.1","0.16.2","0.16.3","0.16.4","0.16.5","0.16.6","0.16.7","0.16.8","0.16.9","0.16.10","0.16.11","0.16.12","0.16.13","0.16.14","0.16.15","0.16.16","0.16.17","0.16.18","0.16.19","0.16.20","0.16.21","0.16.22"],"vulnerableVersions":["0.11.0","0.11.1","0.12.0","0.13.0","0.13.1","0.13.2","0.13.3","0.13.4","0.13.5","0.13.6","0.13.7","0.13.8","0.13.9","0.13.10","0.13.11","0.13.12","0.13.13","0.13.14","0.13.16","0.13.17","0.13.18","0.13.19","0.13.20","0.13.21","0.13.22","0.13.23","0.13.24","0.14.0","0.14.1","0.15.0","0.15.1","0.15.2","0.15.3","0.15.4","0.15.5","0.15.6","0.16.0","0.16.1","0.16.2","0.16.3","0.16.4","0.16.5","0.16.6","0.16.7","0.16.8","0.16.9"],"cwe":["CWE-116"],"cvss":{"score":6.3,"vectorString":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L"},"range":">=0.11.0 <0.16.10","id":"10B9/Z2AOCPnRW5JNa+cPXBCEBEzZrwnB/uvDTat1ANaqR8kTHR3/a/R8KwbQFu6ohi2fxpe0eEs3k0K3A2qYA=="}

View file

@ -0,0 +1 @@
{"source":"BIa+WQeyfjFbqqhouMkkiWanlmeQ7hLwzpqC8i3MBFvop7fxVhllzYpT+cjwFpPmRA0dOYWZxzF2JOac8W8ZxA==","name":"@sveltejs/vite-plugin-svelte","dependency":"vite","title":"Depends on vulnerable versions of vite","url":null,"severity":"low","versions":["1.0.0-next.0","1.0.0-next.1","1.0.0-next.2","1.0.0-next.3","1.0.0-next.5","1.0.0-next.6","1.0.0-next.7","1.0.0-next.8","1.0.0-next.9","1.0.0-next.10","1.0.0-next.11","1.0.0-next.12","1.0.0-next.13","1.0.0-next.14","1.0.0-next.15","1.0.0-next.16","1.0.0-next.17","1.0.0-next.18","1.0.0-next.19","1.0.0-next.20","1.0.0-next.21","1.0.0-next.22","1.0.0-next.23","1.0.0-next.24","1.0.0-next.25","1.0.0-next.26","1.0.0-next.27","1.0.0-next.28","1.0.0-next.29","1.0.0-next.30","1.0.0-next.31","1.0.0-next.32","1.0.0-next.33","1.0.0-next.34","1.0.0-next.35","1.0.0-next.36","1.0.0-next.37","1.0.0-next.38","1.0.0-next.39","1.0.0-next.40","1.0.0-next.41","1.0.0-next.42","1.0.0-next.43","1.0.0-next.44","1.0.0-next.45","1.0.0-next.46","1.0.0-next.47","1.0.0-next.48","1.0.0-next.49","1.0.0","1.0.1","1.0.2","1.0.3","1.0.4","1.0.5","1.0.6","1.0.7","1.0.8","1.0.9","1.1.0","1.1.1","1.2.0","1.3.0","1.3.1","1.4.0","2.0.0-beta.0","2.0.0-beta.1","2.0.0-beta.2","2.0.0-beta.3","2.0.0","2.0.1","2.0.2","2.0.3","2.0.4","2.1.0","2.1.1","2.2.0","2.3.0","2.4.0","2.4.1","2.4.2","2.4.3","2.4.4","2.4.5","2.4.6","2.5.0","2.5.1","2.5.2","2.5.3","3.0.0-next.0","3.0.0-next.1","3.0.0-next.2","3.0.0-next.3","3.0.0","3.0.1","3.0.2","3.1.0","3.1.1","3.1.2","4.0.0-next.0","4.0.0-next.1","4.0.0-next.2","4.0.0-next.3","4.0.0-next.4","4.0.0-next.5","4.0.0-next.6","4.0.0-next.7","4.0.0-next.8","4.0.0","4.0.1","4.0.2","4.0.3","4.0.4","5.0.0-next.0","5.0.0","5.0.1","5.0.2","5.0.3","5.1.0","5.1.1","6.0.0-next.0","6.0.0-next.1","6.0.0-next.2","6.0.0-next.3","6.0.0","6.1.0","6.1.1","6.1.2","6.1.3","6.1.4","6.2.0","6.2.1"],"vulnerableVersions":["1.0.0-next.0","1.0.0-next.1","1.0.0-next.2","1.0.0-next.3","1.0.0-next.5","1.0.0-next.6","1.0.0-next.7","1.0.0-next.8","1.0.0-next.9","1.0.0-next.10","1.0.0-next.11","1.0.0-next.12","1.0.0-next.13","1.0.0-next.14","1.0.0-next.15","1.0.0-next.16","1.0.0-next.17","1.0.0-next.18","1.0.0-next.19","1.0.0-next.20","1.0.0-next.21","1.0.0-next.22","1.0.0-next.23","1.0.0-next.24","1.0.0-next.25","1.0.0-next.26","1.0.0-next.27","1.0.0-next.28","1.0.0-next.29","1.0.0-next.30","1.0.0-next.31","1.0.0-next.32","1.0.0-next.33","1.0.0-next.34","1.0.0-next.35","1.0.0-next.36","1.0.0-next.37","1.0.0-next.38","1.0.0-next.39","1.0.0-next.40","1.0.0-next.41","1.0.0-next.42","1.0.0-next.43","1.0.0-next.44","1.0.0-next.45","1.0.0-next.46","1.0.0-next.47","1.0.0-next.48","1.0.0-next.49","1.0.0","1.0.1","1.0.2","1.0.3","1.0.4","1.0.5","1.0.6","1.0.7","1.0.8","1.0.9","1.1.0","1.1.1","1.2.0","1.3.0","1.3.1","1.4.0","2.0.0-beta.0","2.0.0-beta.1","2.0.0-beta.2","2.0.0-beta.3","2.0.0","2.0.1","2.0.2","2.0.3","2.0.4","2.1.0","2.1.1","2.2.0","2.3.0","2.4.0","2.4.1","2.4.2","2.4.3","2.4.4","2.4.5","2.4.6","2.5.0","2.5.1","2.5.2","2.5.3"],"cwe":["CWE-22","CWE-200","CWE-284"],"cvss":{"score":0,"vectorString":null},"range":"<=2.5.3","id":"XUW0xgFtTKIgtdo1U/XJ/cVtw2DbXSe+D4GLPdAjANSpuaYWOsgxC8kcHpkmtTXxIckvf7GxKqOjO9DQSLCXLw=="}

View file

@ -0,0 +1 @@
{"source":1096808,"name":"katex","dependency":"katex","title":"KaTeX missing normalization of the protocol in URLs allows bypassing forbidden protocols","url":"https://github.com/advisories/GHSA-3wc5-fcw2-2329","severity":"moderate","versions":["0.1.0","0.1.1","0.2.0","0.3.0","0.4.0","0.4.3","0.5.0","0.5.1","0.6.0","0.7.0-pre","0.7.0","0.7.1","0.8.0","0.8.1","0.8.2","0.8.3","0.9.0-alpha","0.9.0-alpha1","0.9.0-alpha2","0.9.0-beta","0.9.0-beta1","0.9.0","0.10.0-alpha","0.10.0-beta","0.10.0-rc","0.10.0-rc.1","0.10.0","0.10.1","0.10.2","0.11.0","0.11.1","0.12.0","0.13.0","0.13.1","0.13.2","0.13.3","0.13.4","0.13.5","0.13.6","0.13.7","0.13.8","0.13.9","0.13.10","0.13.11","0.13.12","0.13.13","0.13.14","0.13.16","0.13.17","0.13.18","0.13.19","0.13.20","0.13.21","0.13.22","0.13.23","0.13.24","0.14.0","0.14.1","0.15.0","0.15.1","0.15.2","0.15.3","0.15.4","0.15.5","0.15.6","0.16.0","0.16.1","0.16.2","0.16.3","0.16.4","0.16.5","0.16.6","0.16.7","0.16.8","0.16.9","0.16.10","0.16.11","0.16.12","0.16.13","0.16.14","0.16.15","0.16.16","0.16.17","0.16.18","0.16.19","0.16.20","0.16.21","0.16.22"],"vulnerableVersions":["0.11.0","0.11.1","0.12.0","0.13.0","0.13.1","0.13.2","0.13.3","0.13.4","0.13.5","0.13.6","0.13.7","0.13.8","0.13.9","0.13.10","0.13.11","0.13.12","0.13.13","0.13.14","0.13.16","0.13.17","0.13.18","0.13.19","0.13.20","0.13.21","0.13.22","0.13.23","0.13.24","0.14.0","0.14.1","0.15.0","0.15.1","0.15.2","0.15.3","0.15.4","0.15.5","0.15.6","0.16.0","0.16.1","0.16.2","0.16.3","0.16.4","0.16.5","0.16.6","0.16.7","0.16.8","0.16.9"],"cwe":["CWE-184"],"cvss":{"score":5.5,"vectorString":"CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L"},"range":">=0.11.0 <0.16.10","id":"pOJRv/9+uxLheRGmQ2EscPku6CPFRkp3ESvbK+MTsSDbutC/3ShKHF6G56sJ4U+7V+jSgQzBM6uEduM0aNKw9g=="}

View file

@ -0,0 +1 @@
{"source":1096810,"name":"katex","dependency":"katex","title":"KaTeX's maxExpand bypassed by Unicode sub/superscripts","url":"https://github.com/advisories/GHSA-cvr6-37gx-v8wc","severity":"moderate","versions":["0.1.0","0.1.1","0.2.0","0.3.0","0.4.0","0.4.3","0.5.0","0.5.1","0.6.0","0.7.0-pre","0.7.0","0.7.1","0.8.0","0.8.1","0.8.2","0.8.3","0.9.0-alpha","0.9.0-alpha1","0.9.0-alpha2","0.9.0-beta","0.9.0-beta1","0.9.0","0.10.0-alpha","0.10.0-beta","0.10.0-rc","0.10.0-rc.1","0.10.0","0.10.1","0.10.2","0.11.0","0.11.1","0.12.0","0.13.0","0.13.1","0.13.2","0.13.3","0.13.4","0.13.5","0.13.6","0.13.7","0.13.8","0.13.9","0.13.10","0.13.11","0.13.12","0.13.13","0.13.14","0.13.16","0.13.17","0.13.18","0.13.19","0.13.20","0.13.21","0.13.22","0.13.23","0.13.24","0.14.0","0.14.1","0.15.0","0.15.1","0.15.2","0.15.3","0.15.4","0.15.5","0.15.6","0.16.0","0.16.1","0.16.2","0.16.3","0.16.4","0.16.5","0.16.6","0.16.7","0.16.8","0.16.9","0.16.10","0.16.11","0.16.12","0.16.13","0.16.14","0.16.15","0.16.16","0.16.17","0.16.18","0.16.19","0.16.20","0.16.21","0.16.22"],"vulnerableVersions":["0.15.4","0.15.5","0.15.6","0.16.0","0.16.1","0.16.2","0.16.3","0.16.4","0.16.5","0.16.6","0.16.7","0.16.8","0.16.9"],"cwe":["CWE-606","CWE-674"],"cvss":{"score":6.5,"vectorString":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"},"range":">=0.15.4 <0.16.10","id":"g8qPisBCu4DOOR73WwJOKgEjsbgVNBSpv4Ia7RD2A81ep5y2Rl9hnZMLQkSmwO9e4WKNLX7CpAQ3wQyBVqtBnA=="}

Some files were not shown because too many files have changed in this diff Show more