diff --git a/advisories/unreviewed/2024/09/GHSA-hrmf-4pvg-rf3x/GHSA-hrmf-4pvg-rf3x.json b/advisories/unreviewed/2024/09/GHSA-hrmf-4pvg-rf3x/GHSA-hrmf-4pvg-rf3x.json index a8489946f94..47a34717fa6 100644 --- a/advisories/unreviewed/2024/09/GHSA-hrmf-4pvg-rf3x/GHSA-hrmf-4pvg-rf3x.json +++ b/advisories/unreviewed/2024/09/GHSA-hrmf-4pvg-rf3x/GHSA-hrmf-4pvg-rf3x.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-hrmf-4pvg-rf3x", - "modified": "2024-09-05T18:30:55Z", + "modified": "2025-02-05T03:32:11Z", "published": "2024-09-04T09:30:45Z", "aliases": [ "CVE-2024-45195" @@ -34,6 +34,10 @@ { "type": "WEB", "url": "https://ofbiz.apache.org/security.html" + }, + { + "type": "WEB", + "url": "http://www.openwall.com/lists/oss-security/2024/09/03/6" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/01/GHSA-3wf9-55j2-66rj/GHSA-3wf9-55j2-66rj.json b/advisories/unreviewed/2025/01/GHSA-3wf9-55j2-66rj/GHSA-3wf9-55j2-66rj.json index 57cc32de882..0af989107a8 100644 --- a/advisories/unreviewed/2025/01/GHSA-3wf9-55j2-66rj/GHSA-3wf9-55j2-66rj.json +++ b/advisories/unreviewed/2025/01/GHSA-3wf9-55j2-66rj/GHSA-3wf9-55j2-66rj.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-3wf9-55j2-66rj", - "modified": "2025-01-24T12:31:07Z", + "modified": "2025-02-05T03:32:13Z", "published": "2025-01-24T12:31:07Z", "aliases": [ "CVE-2024-13542" diff --git a/advisories/unreviewed/2025/01/GHSA-5w95-4984-vhv6/GHSA-5w95-4984-vhv6.json b/advisories/unreviewed/2025/01/GHSA-5w95-4984-vhv6/GHSA-5w95-4984-vhv6.json index ad6ccbb0298..a356b94bc82 100644 --- a/advisories/unreviewed/2025/01/GHSA-5w95-4984-vhv6/GHSA-5w95-4984-vhv6.json +++ b/advisories/unreviewed/2025/01/GHSA-5w95-4984-vhv6/GHSA-5w95-4984-vhv6.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-5w95-4984-vhv6", - "modified": "2025-01-24T12:31:07Z", + "modified": "2025-02-05T03:32:13Z", "published": "2025-01-24T12:31:07Z", "aliases": [ "CVE-2024-13409" diff --git a/advisories/unreviewed/2025/01/GHSA-ghfr-qqg9-x3vc/GHSA-ghfr-qqg9-x3vc.json b/advisories/unreviewed/2025/01/GHSA-ghfr-qqg9-x3vc/GHSA-ghfr-qqg9-x3vc.json index e684e7e2e23..a77839cfb0e 100644 --- a/advisories/unreviewed/2025/01/GHSA-ghfr-qqg9-x3vc/GHSA-ghfr-qqg9-x3vc.json +++ b/advisories/unreviewed/2025/01/GHSA-ghfr-qqg9-x3vc/GHSA-ghfr-qqg9-x3vc.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-ghfr-qqg9-x3vc", - "modified": "2025-01-24T12:31:07Z", + "modified": "2025-02-05T03:32:13Z", "published": "2025-01-24T12:31:07Z", "aliases": [ "CVE-2024-13408" diff --git a/advisories/unreviewed/2025/01/GHSA-gw5g-v437-726r/GHSA-gw5g-v437-726r.json b/advisories/unreviewed/2025/01/GHSA-gw5g-v437-726r/GHSA-gw5g-v437-726r.json index 0769926b94f..a318c44bb62 100644 --- a/advisories/unreviewed/2025/01/GHSA-gw5g-v437-726r/GHSA-gw5g-v437-726r.json +++ b/advisories/unreviewed/2025/01/GHSA-gw5g-v437-726r/GHSA-gw5g-v437-726r.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-gw5g-v437-726r", - "modified": "2025-01-24T12:31:07Z", + "modified": "2025-02-05T03:32:12Z", "published": "2025-01-24T12:31:07Z", "aliases": [ "CVE-2024-13354" diff --git a/advisories/unreviewed/2025/02/GHSA-237v-gpwr-jc57/GHSA-237v-gpwr-jc57.json b/advisories/unreviewed/2025/02/GHSA-237v-gpwr-jc57/GHSA-237v-gpwr-jc57.json index 8d75eec10f2..284414ea7e9 100644 --- a/advisories/unreviewed/2025/02/GHSA-237v-gpwr-jc57/GHSA-237v-gpwr-jc57.json +++ b/advisories/unreviewed/2025/02/GHSA-237v-gpwr-jc57/GHSA-237v-gpwr-jc57.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-237v-gpwr-jc57", - "modified": "2025-02-05T00:31:13Z", + "modified": "2025-02-05T03:32:13Z", "published": "2025-02-05T00:31:13Z", "aliases": [ "CVE-2024-13722" @@ -25,6 +25,14 @@ { "type": "WEB", "url": "https://www.nagvis.org/downloads/changelog/1.9.42" + }, + { + "type": "WEB", + "url": "http://seclists.org/fulldisclosure/2025/Feb/3" + }, + { + "type": "WEB", + "url": "http://www.openwall.com/lists/oss-security/2025/02/04/3" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/02/GHSA-6j39-893g-q8cf/GHSA-6j39-893g-q8cf.json b/advisories/unreviewed/2025/02/GHSA-6j39-893g-q8cf/GHSA-6j39-893g-q8cf.json new file mode 100644 index 00000000000..fa1c28a7461 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-6j39-893g-q8cf/GHSA-6j39-893g-q8cf.json @@ -0,0 +1,34 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-6j39-893g-q8cf", + "modified": "2025-02-05T03:32:13Z", + "published": "2025-02-05T03:32:13Z", + "aliases": [ + "CVE-2025-23114" + ], + "details": "A vulnerability in Veeam Updater component allows Man-in-the-Middle attackers to execute arbitrary code on the affected server. This issue occurs due to a failure to properly validate TLS certificate.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23114" + }, + { + "type": "WEB", + "url": "https://www.veeam.com/kb4712" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-05T02:15:28Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-vg5c-jm85-v84v/GHSA-vg5c-jm85-v84v.json b/advisories/unreviewed/2025/02/GHSA-vg5c-jm85-v84v/GHSA-vg5c-jm85-v84v.json index 3f1b1a988de..7238fc31426 100644 --- a/advisories/unreviewed/2025/02/GHSA-vg5c-jm85-v84v/GHSA-vg5c-jm85-v84v.json +++ b/advisories/unreviewed/2025/02/GHSA-vg5c-jm85-v84v/GHSA-vg5c-jm85-v84v.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-vg5c-jm85-v84v", - "modified": "2025-02-05T00:31:13Z", + "modified": "2025-02-05T03:32:13Z", "published": "2025-02-05T00:31:13Z", "aliases": [ "CVE-2024-13723" @@ -25,6 +25,14 @@ { "type": "WEB", "url": "https://www.nagvis.org/downloads/changelog/1.9.42" + }, + { + "type": "WEB", + "url": "http://seclists.org/fulldisclosure/2025/Feb/4" + }, + { + "type": "WEB", + "url": "http://www.openwall.com/lists/oss-security/2025/02/04/4" } ], "database_specific": {