diff --git a/advisories/unreviewed/2023/01/GHSA-4g2v-j3c9-cqx4/GHSA-4g2v-j3c9-cqx4.json b/advisories/unreviewed/2023/01/GHSA-4g2v-j3c9-cqx4/GHSA-4g2v-j3c9-cqx4.json index 8d1ff339e3f..5cc4e5c6e32 100644 --- a/advisories/unreviewed/2023/01/GHSA-4g2v-j3c9-cqx4/GHSA-4g2v-j3c9-cqx4.json +++ b/advisories/unreviewed/2023/01/GHSA-4g2v-j3c9-cqx4/GHSA-4g2v-j3c9-cqx4.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-4g2v-j3c9-cqx4", - "modified": "2023-02-06T21:30:34Z", + "modified": "2025-03-28T18:32:45Z", "published": "2023-01-27T21:31:10Z", "aliases": [ "CVE-2022-48108" @@ -30,7 +30,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-77" + "CWE-77", + "CWE-78" ], "severity": "CRITICAL", "github_reviewed": false, diff --git a/advisories/unreviewed/2023/01/GHSA-5jfh-7xpv-w2pp/GHSA-5jfh-7xpv-w2pp.json b/advisories/unreviewed/2023/01/GHSA-5jfh-7xpv-w2pp/GHSA-5jfh-7xpv-w2pp.json index 3446ab4f2f0..101b1cb43e6 100644 --- a/advisories/unreviewed/2023/01/GHSA-5jfh-7xpv-w2pp/GHSA-5jfh-7xpv-w2pp.json +++ b/advisories/unreviewed/2023/01/GHSA-5jfh-7xpv-w2pp/GHSA-5jfh-7xpv-w2pp.json @@ -26,6 +26,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-287", "CWE-863" ], "severity": "CRITICAL", diff --git a/advisories/unreviewed/2023/01/GHSA-8xmh-56jj-w83c/GHSA-8xmh-56jj-w83c.json b/advisories/unreviewed/2023/01/GHSA-8xmh-56jj-w83c/GHSA-8xmh-56jj-w83c.json index 69c6f319457..b3416539de2 100644 --- a/advisories/unreviewed/2023/01/GHSA-8xmh-56jj-w83c/GHSA-8xmh-56jj-w83c.json +++ b/advisories/unreviewed/2023/01/GHSA-8xmh-56jj-w83c/GHSA-8xmh-56jj-w83c.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-269" + ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/01/GHSA-99p4-7rf3-p26q/GHSA-99p4-7rf3-p26q.json b/advisories/unreviewed/2023/01/GHSA-99p4-7rf3-p26q/GHSA-99p4-7rf3-p26q.json index 2b7af408e35..b72006aa89a 100644 --- a/advisories/unreviewed/2023/01/GHSA-99p4-7rf3-p26q/GHSA-99p4-7rf3-p26q.json +++ b/advisories/unreviewed/2023/01/GHSA-99p4-7rf3-p26q/GHSA-99p4-7rf3-p26q.json @@ -26,7 +26,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-668" + "CWE-668", + "CWE-798" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2023/01/GHSA-cmpf-fmf9-35pm/GHSA-cmpf-fmf9-35pm.json b/advisories/unreviewed/2023/01/GHSA-cmpf-fmf9-35pm/GHSA-cmpf-fmf9-35pm.json index 9d7e813d6c6..0f02d53f16d 100644 --- a/advisories/unreviewed/2023/01/GHSA-cmpf-fmf9-35pm/GHSA-cmpf-fmf9-35pm.json +++ b/advisories/unreviewed/2023/01/GHSA-cmpf-fmf9-35pm/GHSA-cmpf-fmf9-35pm.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-269" + ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/01/GHSA-fv3g-rc7m-jwc4/GHSA-fv3g-rc7m-jwc4.json b/advisories/unreviewed/2023/01/GHSA-fv3g-rc7m-jwc4/GHSA-fv3g-rc7m-jwc4.json index 13926c32055..e0ff1ecb2c2 100644 --- a/advisories/unreviewed/2023/01/GHSA-fv3g-rc7m-jwc4/GHSA-fv3g-rc7m-jwc4.json +++ b/advisories/unreviewed/2023/01/GHSA-fv3g-rc7m-jwc4/GHSA-fv3g-rc7m-jwc4.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-269" + ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/01/GHSA-jpxj-mx4q-x62c/GHSA-jpxj-mx4q-x62c.json b/advisories/unreviewed/2023/01/GHSA-jpxj-mx4q-x62c/GHSA-jpxj-mx4q-x62c.json index a031c377658..582c974d367 100644 --- a/advisories/unreviewed/2023/01/GHSA-jpxj-mx4q-x62c/GHSA-jpxj-mx4q-x62c.json +++ b/advisories/unreviewed/2023/01/GHSA-jpxj-mx4q-x62c/GHSA-jpxj-mx4q-x62c.json @@ -26,6 +26,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-120", "CWE-787" ], "severity": "CRITICAL", diff --git a/advisories/unreviewed/2023/01/GHSA-mm7r-fvvc-9q35/GHSA-mm7r-fvvc-9q35.json b/advisories/unreviewed/2023/01/GHSA-mm7r-fvvc-9q35/GHSA-mm7r-fvvc-9q35.json index 39ed578a0e0..6236eb47924 100644 --- a/advisories/unreviewed/2023/01/GHSA-mm7r-fvvc-9q35/GHSA-mm7r-fvvc-9q35.json +++ b/advisories/unreviewed/2023/01/GHSA-mm7r-fvvc-9q35/GHSA-mm7r-fvvc-9q35.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-94" + ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/01/GHSA-mv36-8276-2729/GHSA-mv36-8276-2729.json b/advisories/unreviewed/2023/01/GHSA-mv36-8276-2729/GHSA-mv36-8276-2729.json index c7a511fa986..6f4e0a59fd0 100644 --- a/advisories/unreviewed/2023/01/GHSA-mv36-8276-2729/GHSA-mv36-8276-2729.json +++ b/advisories/unreviewed/2023/01/GHSA-mv36-8276-2729/GHSA-mv36-8276-2729.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-362" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/01/GHSA-prp9-w269-43r4/GHSA-prp9-w269-43r4.json b/advisories/unreviewed/2023/01/GHSA-prp9-w269-43r4/GHSA-prp9-w269-43r4.json index be59cf3c218..4ab8387fd5f 100644 --- a/advisories/unreviewed/2023/01/GHSA-prp9-w269-43r4/GHSA-prp9-w269-43r4.json +++ b/advisories/unreviewed/2023/01/GHSA-prp9-w269-43r4/GHSA-prp9-w269-43r4.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-862" + ], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/01/GHSA-qx33-qxjc-p36p/GHSA-qx33-qxjc-p36p.json b/advisories/unreviewed/2023/01/GHSA-qx33-qxjc-p36p/GHSA-qx33-qxjc-p36p.json index e03833d122b..5a85b6f8799 100644 --- a/advisories/unreviewed/2023/01/GHSA-qx33-qxjc-p36p/GHSA-qx33-qxjc-p36p.json +++ b/advisories/unreviewed/2023/01/GHSA-qx33-qxjc-p36p/GHSA-qx33-qxjc-p36p.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-qx33-qxjc-p36p", - "modified": "2023-02-07T21:30:24Z", + "modified": "2025-03-28T18:32:44Z", "published": "2023-01-27T18:30:31Z", "aliases": [ "CVE-2022-4285" @@ -31,6 +31,10 @@ "type": "WEB", "url": "https://sourceware.org/bugzilla/show_bug.cgi?id=29699" }, + { + "type": "WEB", + "url": "https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git%3Bh=5c831a3c7f3ca98d6aba1200353311e1a1f84c70" + }, { "type": "WEB", "url": "https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=5c831a3c7f3ca98d6aba1200353311e1a1f84c70" diff --git a/advisories/unreviewed/2023/01/GHSA-vqcf-fq86-9m4x/GHSA-vqcf-fq86-9m4x.json b/advisories/unreviewed/2023/01/GHSA-vqcf-fq86-9m4x/GHSA-vqcf-fq86-9m4x.json index f9abd042c5b..ac43c2d9e35 100644 --- a/advisories/unreviewed/2023/01/GHSA-vqcf-fq86-9m4x/GHSA-vqcf-fq86-9m4x.json +++ b/advisories/unreviewed/2023/01/GHSA-vqcf-fq86-9m4x/GHSA-vqcf-fq86-9m4x.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-269" + ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/01/GHSA-wq58-84g7-3hwg/GHSA-wq58-84g7-3hwg.json b/advisories/unreviewed/2023/01/GHSA-wq58-84g7-3hwg/GHSA-wq58-84g7-3hwg.json index 2b7ec977560..754b927f246 100644 --- a/advisories/unreviewed/2023/01/GHSA-wq58-84g7-3hwg/GHSA-wq58-84g7-3hwg.json +++ b/advisories/unreviewed/2023/01/GHSA-wq58-84g7-3hwg/GHSA-wq58-84g7-3hwg.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-wq58-84g7-3hwg", - "modified": "2023-02-07T18:30:18Z", + "modified": "2025-03-28T18:32:46Z", "published": "2023-01-30T09:30:40Z", "aliases": [ "CVE-2023-22333" diff --git a/advisories/unreviewed/2024/02/GHSA-hmqj-rccj-3q53/GHSA-hmqj-rccj-3q53.json b/advisories/unreviewed/2024/02/GHSA-hmqj-rccj-3q53/GHSA-hmqj-rccj-3q53.json index 4ad193dbecc..ade9e2234fc 100644 --- a/advisories/unreviewed/2024/02/GHSA-hmqj-rccj-3q53/GHSA-hmqj-rccj-3q53.json +++ b/advisories/unreviewed/2024/02/GHSA-hmqj-rccj-3q53/GHSA-hmqj-rccj-3q53.json @@ -45,7 +45,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-290" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/03/GHSA-82w3-g3q9-mxc3/GHSA-82w3-g3q9-mxc3.json b/advisories/unreviewed/2024/03/GHSA-82w3-g3q9-mxc3/GHSA-82w3-g3q9-mxc3.json index 7f3f5197b0f..9290fbf5f93 100644 --- a/advisories/unreviewed/2024/03/GHSA-82w3-g3q9-mxc3/GHSA-82w3-g3q9-mxc3.json +++ b/advisories/unreviewed/2024/03/GHSA-82w3-g3q9-mxc3/GHSA-82w3-g3q9-mxc3.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-82w3-g3q9-mxc3", - "modified": "2024-08-03T21:30:33Z", + "modified": "2025-03-28T18:32:49Z", "published": "2024-03-05T15:32:41Z", "aliases": [ "CVE-2024-27623" @@ -22,6 +22,10 @@ { "type": "WEB", "url": "https://github.com/capture0x/CMSMadeSimple2" + }, + { + "type": "WEB", + "url": "https://www.vicarius.io/vsociety/posts/pwning-cmsms-via-user-defined-tags-for-fun-and-learning-cve-2024-27622-27623" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/03/GHSA-fg3w-vv3r-vrgh/GHSA-fg3w-vv3r-vrgh.json b/advisories/unreviewed/2024/03/GHSA-fg3w-vv3r-vrgh/GHSA-fg3w-vv3r-vrgh.json index 35539097459..c421c141aa5 100644 --- a/advisories/unreviewed/2024/03/GHSA-fg3w-vv3r-vrgh/GHSA-fg3w-vv3r-vrgh.json +++ b/advisories/unreviewed/2024/03/GHSA-fg3w-vv3r-vrgh/GHSA-fg3w-vv3r-vrgh.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-fg3w-vv3r-vrgh", - "modified": "2024-08-06T00:31:19Z", + "modified": "2025-03-28T18:32:49Z", "published": "2024-03-05T15:32:41Z", "aliases": [ "CVE-2024-27622" @@ -26,6 +26,10 @@ { "type": "WEB", "url": "https://packetstormsecurity.com/files/177241/CMS-Made-Simple-2.2.19-Remote-Code-Execution.html" + }, + { + "type": "WEB", + "url": "https://www.vicarius.io/vsociety/posts/pwning-cmsms-via-user-defined-tags-for-fun-and-learning-cve-2024-27622-27623" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/03/GHSA-fmx7-jj25-3pjq/GHSA-fmx7-jj25-3pjq.json b/advisories/unreviewed/2024/03/GHSA-fmx7-jj25-3pjq/GHSA-fmx7-jj25-3pjq.json index 3b5b224c0c6..cecd1d2184b 100644 --- a/advisories/unreviewed/2024/03/GHSA-fmx7-jj25-3pjq/GHSA-fmx7-jj25-3pjq.json +++ b/advisories/unreviewed/2024/03/GHSA-fmx7-jj25-3pjq/GHSA-fmx7-jj25-3pjq.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-fmx7-jj25-3pjq", - "modified": "2024-03-20T21:31:14Z", + "modified": "2025-03-28T18:32:54Z", "published": "2024-03-20T21:31:14Z", "aliases": [ "CVE-2024-29473" ], "details": "OneBlog v2.3.4 was discovered to contain a stored cross-site scripting (XSS) vulnerability via the Role Management module.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-20T21:15:32Z" diff --git a/advisories/unreviewed/2024/03/GHSA-m3gq-f9rc-qmwx/GHSA-m3gq-f9rc-qmwx.json b/advisories/unreviewed/2024/03/GHSA-m3gq-f9rc-qmwx/GHSA-m3gq-f9rc-qmwx.json index 916b92962f4..175de673ffd 100644 --- a/advisories/unreviewed/2024/03/GHSA-m3gq-f9rc-qmwx/GHSA-m3gq-f9rc-qmwx.json +++ b/advisories/unreviewed/2024/03/GHSA-m3gq-f9rc-qmwx/GHSA-m3gq-f9rc-qmwx.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-613" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-3x3c-vqj6-m557/GHSA-3x3c-vqj6-m557.json b/advisories/unreviewed/2024/04/GHSA-3x3c-vqj6-m557/GHSA-3x3c-vqj6-m557.json index 9945fa21cd3..40e3b6cbf8f 100644 --- a/advisories/unreviewed/2024/04/GHSA-3x3c-vqj6-m557/GHSA-3x3c-vqj6-m557.json +++ b/advisories/unreviewed/2024/04/GHSA-3x3c-vqj6-m557/GHSA-3x3c-vqj6-m557.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-79" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-5h5w-q6q9-mgq7/GHSA-5h5w-q6q9-mgq7.json b/advisories/unreviewed/2024/04/GHSA-5h5w-q6q9-mgq7/GHSA-5h5w-q6q9-mgq7.json index 1760a211b3b..2765e0a9e87 100644 --- a/advisories/unreviewed/2024/04/GHSA-5h5w-q6q9-mgq7/GHSA-5h5w-q6q9-mgq7.json +++ b/advisories/unreviewed/2024/04/GHSA-5h5w-q6q9-mgq7/GHSA-5h5w-q6q9-mgq7.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-5h5w-q6q9-mgq7", - "modified": "2024-04-30T18:30:33Z", + "modified": "2025-03-28T18:32:55Z", "published": "2024-04-30T18:30:33Z", "aliases": [ "CVE-2019-19751" ], "details": "easyMINE before 2019-12-05 ships with SSH host keys baked into the installation image, which allows man-in-the-middle attacks and makes identification of all public IPv4 nodes trivial with Shodan.io.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L" + } + ], "affected": [], "references": [ { @@ -27,7 +32,7 @@ "cwe_ids": [ "CWE-300" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-30T18:15:19Z" diff --git a/advisories/unreviewed/2024/05/GHSA-qj33-w9rx-fhcw/GHSA-qj33-w9rx-fhcw.json b/advisories/unreviewed/2024/05/GHSA-qj33-w9rx-fhcw/GHSA-qj33-w9rx-fhcw.json index ccc2fc4de17..59bc58db43b 100644 --- a/advisories/unreviewed/2024/05/GHSA-qj33-w9rx-fhcw/GHSA-qj33-w9rx-fhcw.json +++ b/advisories/unreviewed/2024/05/GHSA-qj33-w9rx-fhcw/GHSA-qj33-w9rx-fhcw.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-qj33-w9rx-fhcw", - "modified": "2025-03-27T15:30:58Z", + "modified": "2025-03-28T18:32:55Z", "published": "2024-05-03T15:30:54Z", "aliases": [ "CVE-2024-1067" diff --git a/advisories/unreviewed/2024/05/GHSA-wx86-7jg2-9256/GHSA-wx86-7jg2-9256.json b/advisories/unreviewed/2024/05/GHSA-wx86-7jg2-9256/GHSA-wx86-7jg2-9256.json index 20a8acbb9c6..e9a6e04ad57 100644 --- a/advisories/unreviewed/2024/05/GHSA-wx86-7jg2-9256/GHSA-wx86-7jg2-9256.json +++ b/advisories/unreviewed/2024/05/GHSA-wx86-7jg2-9256/GHSA-wx86-7jg2-9256.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-wx86-7jg2-9256", - "modified": "2024-05-06T06:30:45Z", + "modified": "2025-03-28T18:32:55Z", "published": "2024-05-06T06:30:45Z", "aliases": [ "CVE-2024-0904" ], "details": "The Fancy Product Designer WordPress plugin before 6.1.81 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:N" + } + ], "affected": [], "references": [ { @@ -21,7 +26,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-06T06:15:06Z" diff --git a/advisories/unreviewed/2024/06/GHSA-rp3r-3vq4-29fg/GHSA-rp3r-3vq4-29fg.json b/advisories/unreviewed/2024/06/GHSA-rp3r-3vq4-29fg/GHSA-rp3r-3vq4-29fg.json index 816fe062a1d..b6f8500dc9a 100644 --- a/advisories/unreviewed/2024/06/GHSA-rp3r-3vq4-29fg/GHSA-rp3r-3vq4-29fg.json +++ b/advisories/unreviewed/2024/06/GHSA-rp3r-3vq4-29fg/GHSA-rp3r-3vq4-29fg.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-rp3r-3vq4-29fg", - "modified": "2024-06-25T15:31:08Z", + "modified": "2025-03-28T18:32:55Z", "published": "2024-06-25T15:31:08Z", "aliases": [ "CVE-2024-4846" ], "details": "Authentication bypass in the 2FA feature in Devolutions Server 2024.1.14.0 and earlier allows an authenticated attacker to authenticate to another user without being asked for the 2FA via another browser tab.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-290" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-06-25T13:15:50Z" diff --git a/advisories/unreviewed/2024/12/GHSA-rc7x-chcc-7f7q/GHSA-rc7x-chcc-7f7q.json b/advisories/unreviewed/2024/12/GHSA-rc7x-chcc-7f7q/GHSA-rc7x-chcc-7f7q.json index bc5697611e3..6ae2d866662 100644 --- a/advisories/unreviewed/2024/12/GHSA-rc7x-chcc-7f7q/GHSA-rc7x-chcc-7f7q.json +++ b/advisories/unreviewed/2024/12/GHSA-rc7x-chcc-7f7q/GHSA-rc7x-chcc-7f7q.json @@ -42,7 +42,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-74" + "CWE-74", + "CWE-89" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/02/GHSA-63xm-g6f5-3cw5/GHSA-63xm-g6f5-3cw5.json b/advisories/unreviewed/2025/02/GHSA-63xm-g6f5-3cw5/GHSA-63xm-g6f5-3cw5.json index 4ca9884deea..da694941c13 100644 --- a/advisories/unreviewed/2025/02/GHSA-63xm-g6f5-3cw5/GHSA-63xm-g6f5-3cw5.json +++ b/advisories/unreviewed/2025/02/GHSA-63xm-g6f5-3cw5/GHSA-63xm-g6f5-3cw5.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-63xm-g6f5-3cw5", - "modified": "2025-02-26T00:32:20Z", + "modified": "2025-03-28T18:33:05Z", "published": "2025-02-26T00:32:20Z", "aliases": [ "CVE-2025-25516" ], "details": "Seacms <=13.3 is vulnerable to SQL Injection in admin_paylog.php.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-89" + ], + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-25T22:15:24Z" diff --git a/advisories/unreviewed/2025/02/GHSA-c46r-j7hv-8f85/GHSA-c46r-j7hv-8f85.json b/advisories/unreviewed/2025/02/GHSA-c46r-j7hv-8f85/GHSA-c46r-j7hv-8f85.json index 8e8eb354c8e..584a83f77ab 100644 --- a/advisories/unreviewed/2025/02/GHSA-c46r-j7hv-8f85/GHSA-c46r-j7hv-8f85.json +++ b/advisories/unreviewed/2025/02/GHSA-c46r-j7hv-8f85/GHSA-c46r-j7hv-8f85.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-c46r-j7hv-8f85", - "modified": "2025-02-26T00:32:21Z", + "modified": "2025-03-28T18:33:05Z", "published": "2025-02-26T00:32:21Z", "aliases": [ "CVE-2025-25521" ], "details": "Seacms <=13.3 is vulnerable to SQL Injection in admin_type_news.php.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-89" + ], + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-25T22:15:24Z" diff --git a/advisories/unreviewed/2025/02/GHSA-c7c6-hp9w-4gmf/GHSA-c7c6-hp9w-4gmf.json b/advisories/unreviewed/2025/02/GHSA-c7c6-hp9w-4gmf/GHSA-c7c6-hp9w-4gmf.json index a78c5c2b668..2c63f22e9f8 100644 --- a/advisories/unreviewed/2025/02/GHSA-c7c6-hp9w-4gmf/GHSA-c7c6-hp9w-4gmf.json +++ b/advisories/unreviewed/2025/02/GHSA-c7c6-hp9w-4gmf/GHSA-c7c6-hp9w-4gmf.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-c7c6-hp9w-4gmf", - "modified": "2025-02-26T00:32:20Z", + "modified": "2025-03-28T18:33:05Z", "published": "2025-02-26T00:32:20Z", "aliases": [ "CVE-2025-25520" ], "details": "Seacms <13.3 is vulnerable to SQL Injection in admin_pay.php.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-89" + ], + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-25T22:15:24Z" diff --git a/advisories/unreviewed/2025/02/GHSA-cqmj-c782-7jjj/GHSA-cqmj-c782-7jjj.json b/advisories/unreviewed/2025/02/GHSA-cqmj-c782-7jjj/GHSA-cqmj-c782-7jjj.json new file mode 100644 index 00000000000..00abf91ecd1 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-cqmj-c782-7jjj/GHSA-cqmj-c782-7jjj.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-cqmj-c782-7jjj", + "modified": "2025-03-28T18:33:04Z", + "published": "2025-02-11T06:30:27Z", + "aliases": [ + "CVE-2024-12599" + ], + "details": "The HT Mega – Absolute Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Countdown widget in all versions up to, and including, 2.8.1 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12599" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset/3234495/ht-mega-for-elementor" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/20a67cde-612a-4c57-83d6-a5d8f3716a2d?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-11T05:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-f754-m3x7-vr78/GHSA-f754-m3x7-vr78.json b/advisories/unreviewed/2025/02/GHSA-f754-m3x7-vr78/GHSA-f754-m3x7-vr78.json index f9aeb2c83d8..85b321315cc 100644 --- a/advisories/unreviewed/2025/02/GHSA-f754-m3x7-vr78/GHSA-f754-m3x7-vr78.json +++ b/advisories/unreviewed/2025/02/GHSA-f754-m3x7-vr78/GHSA-f754-m3x7-vr78.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-f754-m3x7-vr78", - "modified": "2025-02-26T00:32:20Z", + "modified": "2025-03-28T18:33:05Z", "published": "2025-02-26T00:32:20Z", "aliases": [ "CVE-2025-25515" ], "details": "Seacms <=13.3 is vulnerable to SQL Injection in admin_collect.php that allows an authenticated attacker to exploit the database.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-89" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-25T22:15:23Z" diff --git a/advisories/unreviewed/2025/02/GHSA-g635-4v3q-xmrq/GHSA-g635-4v3q-xmrq.json b/advisories/unreviewed/2025/02/GHSA-g635-4v3q-xmrq/GHSA-g635-4v3q-xmrq.json index ca290c3ea62..23a3d150a0e 100644 --- a/advisories/unreviewed/2025/02/GHSA-g635-4v3q-xmrq/GHSA-g635-4v3q-xmrq.json +++ b/advisories/unreviewed/2025/02/GHSA-g635-4v3q-xmrq/GHSA-g635-4v3q-xmrq.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-g635-4v3q-xmrq", - "modified": "2025-02-26T00:32:20Z", + "modified": "2025-03-28T18:33:05Z", "published": "2025-02-26T00:32:20Z", "aliases": [ "CVE-2025-25517" ], "details": "Seacms <=13.3 is vulnerable to SQL Injection in admin_reslib.php.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-89" + ], + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-25T22:15:24Z" diff --git a/advisories/unreviewed/2025/02/GHSA-mjmw-3m65-4c84/GHSA-mjmw-3m65-4c84.json b/advisories/unreviewed/2025/02/GHSA-mjmw-3m65-4c84/GHSA-mjmw-3m65-4c84.json index f3deed1df1d..b8241897777 100644 --- a/advisories/unreviewed/2025/02/GHSA-mjmw-3m65-4c84/GHSA-mjmw-3m65-4c84.json +++ b/advisories/unreviewed/2025/02/GHSA-mjmw-3m65-4c84/GHSA-mjmw-3m65-4c84.json @@ -26,7 +26,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-287" + "CWE-287", + "CWE-640" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/02/GHSA-vhgx-6vv2-prcm/GHSA-vhgx-6vv2-prcm.json b/advisories/unreviewed/2025/02/GHSA-vhgx-6vv2-prcm/GHSA-vhgx-6vv2-prcm.json index c3cf6f7154e..c733fb0335e 100644 --- a/advisories/unreviewed/2025/02/GHSA-vhgx-6vv2-prcm/GHSA-vhgx-6vv2-prcm.json +++ b/advisories/unreviewed/2025/02/GHSA-vhgx-6vv2-prcm/GHSA-vhgx-6vv2-prcm.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-vhgx-6vv2-prcm", - "modified": "2025-02-26T00:32:20Z", + "modified": "2025-03-28T18:33:05Z", "published": "2025-02-26T00:32:20Z", "aliases": [ "CVE-2025-25519" ], "details": "Seacms <=13.3 is vulnerable to SQL Injection in admin_zyk.php.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-89" + ], + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-25T22:15:24Z" diff --git a/advisories/unreviewed/2025/03/GHSA-2c99-hrrc-j3vh/GHSA-2c99-hrrc-j3vh.json b/advisories/unreviewed/2025/03/GHSA-2c99-hrrc-j3vh/GHSA-2c99-hrrc-j3vh.json new file mode 100644 index 00000000000..753bf5b4e54 --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-2c99-hrrc-j3vh/GHSA-2c99-hrrc-j3vh.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2c99-hrrc-j3vh", + "modified": "2025-03-28T18:33:37Z", + "published": "2025-03-28T18:33:37Z", + "aliases": [ + "CVE-2025-31162" + ], + "details": "Floating point exception in fig2dev in version 3.2.9a allows an attacker to availability via local input manipulation via get_slope function.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-31162" + }, + { + "type": "WEB", + "url": "https://sourceforge.net/p/mcj/tickets/185" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-369" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-28T18:15:18Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-2x8g-m7hp-f3x8/GHSA-2x8g-m7hp-f3x8.json b/advisories/unreviewed/2025/03/GHSA-2x8g-m7hp-f3x8/GHSA-2x8g-m7hp-f3x8.json index c5dd33e7c85..deb7f8139fe 100644 --- a/advisories/unreviewed/2025/03/GHSA-2x8g-m7hp-f3x8/GHSA-2x8g-m7hp-f3x8.json +++ b/advisories/unreviewed/2025/03/GHSA-2x8g-m7hp-f3x8/GHSA-2x8g-m7hp-f3x8.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-2x8g-m7hp-f3x8", - "modified": "2025-03-27T18:31:25Z", + "modified": "2025-03-28T18:33:12Z", "published": "2025-03-27T18:31:25Z", "aliases": [ "CVE-2022-49761" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nbtrfs: always report error in run_one_delayed_ref()\n\nCurrently we have a btrfs_debug() for run_one_delayed_ref() failure, but\nif end users hit such problem, there will be no chance that\nbtrfs_debug() is enabled. This can lead to very little useful info for\ndebugging.\n\nThis patch will:\n\n- Add extra info for error reporting\n Including:\n * logical bytenr\n * num_bytes\n * type\n * action\n * ref_mod\n\n- Replace the btrfs_debug() with btrfs_err()\n\n- Move the error reporting into run_one_delayed_ref()\n This is to avoid use-after-free, the @node can be freed in the caller.\n\nThis error should only be triggered at most once.\n\nAs if run_one_delayed_ref() failed, we trigger the error message, then\ncausing the call chain to error out:\n\nbtrfs_run_delayed_refs()\n`- btrfs_run_delayed_refs()\n `- btrfs_run_delayed_refs_for_head()\n `- run_one_delayed_ref()\n\nAnd we will abort the current transaction in btrfs_run_delayed_refs().\nIf we have to run delayed refs for the abort transaction,\nrun_one_delayed_ref() will just cleanup the refs and do nothing, thus no\nnew error messages would be output.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -32,8 +37,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-416" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-03-27T17:15:41Z" diff --git a/advisories/unreviewed/2025/03/GHSA-43cr-v8vv-86x6/GHSA-43cr-v8vv-86x6.json b/advisories/unreviewed/2025/03/GHSA-43cr-v8vv-86x6/GHSA-43cr-v8vv-86x6.json index 6bda16922f9..ea64195cd0f 100644 --- a/advisories/unreviewed/2025/03/GHSA-43cr-v8vv-86x6/GHSA-43cr-v8vv-86x6.json +++ b/advisories/unreviewed/2025/03/GHSA-43cr-v8vv-86x6/GHSA-43cr-v8vv-86x6.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-43cr-v8vv-86x6", - "modified": "2025-03-27T15:31:14Z", + "modified": "2025-03-28T18:33:11Z", "published": "2025-03-27T15:31:14Z", "aliases": [ "CVE-2025-29496" ], "details": "libming v0.4.8 was discovered to contain a segmentation fault via the decompileDUPLICATECLIP function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted SWF file.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-119" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-03-27T15:16:00Z" diff --git a/advisories/unreviewed/2025/03/GHSA-4fj4-9m67-3mj3/GHSA-4fj4-9m67-3mj3.json b/advisories/unreviewed/2025/03/GHSA-4fj4-9m67-3mj3/GHSA-4fj4-9m67-3mj3.json new file mode 100644 index 00000000000..3ccaea82422 --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-4fj4-9m67-3mj3/GHSA-4fj4-9m67-3mj3.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-4fj4-9m67-3mj3", + "modified": "2025-03-28T18:33:36Z", + "published": "2025-03-28T18:33:36Z", + "aliases": [ + "CVE-2025-2713" + ], + "details": "Google gVisor's runsc component exhibited a local privilege escalation vulnerability due to incorrect handling of file access permissions, which allowed unprivileged users to access restricted files. This occurred because the process initially ran with root-like permissions until the first fork.", + "severity": [ + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:H/VI:N/VA:N/SC:H/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-2713" + }, + { + "type": "WEB", + "url": "https://github.com/google/gvisor/commit/586c38d70081b13b2ed494cef48e99b93956843e" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-269" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-28T16:15:30Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-5rg6-fchv-4f55/GHSA-5rg6-fchv-4f55.json b/advisories/unreviewed/2025/03/GHSA-5rg6-fchv-4f55/GHSA-5rg6-fchv-4f55.json index 3025a5f6c9c..6b6930a6ee5 100644 --- a/advisories/unreviewed/2025/03/GHSA-5rg6-fchv-4f55/GHSA-5rg6-fchv-4f55.json +++ b/advisories/unreviewed/2025/03/GHSA-5rg6-fchv-4f55/GHSA-5rg6-fchv-4f55.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-5rg6-fchv-4f55", - "modified": "2025-03-27T18:31:23Z", + "modified": "2025-03-28T18:33:11Z", "published": "2025-03-27T18:31:23Z", "aliases": [ "CVE-2025-28135" ], "details": "TOTOLINK A810R V4.1.2cu.5182_B20201026 was found to contain a buffer overflow vulnerability in downloadFile.cgi.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-121" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-03-27T16:15:30Z" diff --git a/advisories/unreviewed/2025/03/GHSA-6mjh-29cc-g228/GHSA-6mjh-29cc-g228.json b/advisories/unreviewed/2025/03/GHSA-6mjh-29cc-g228/GHSA-6mjh-29cc-g228.json index d7165c898f2..4bc06beedf0 100644 --- a/advisories/unreviewed/2025/03/GHSA-6mjh-29cc-g228/GHSA-6mjh-29cc-g228.json +++ b/advisories/unreviewed/2025/03/GHSA-6mjh-29cc-g228/GHSA-6mjh-29cc-g228.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-6mjh-29cc-g228", - "modified": "2025-03-27T15:31:13Z", + "modified": "2025-03-28T18:33:11Z", "published": "2025-03-27T15:31:13Z", "aliases": [ "CVE-2025-29491" ], "details": "An allocation-size-too-big error in the parseSWF_DEFINEBINARYDATA function of libming v0.48 allows attackers to cause a Denial of Service (DoS) via supplying a crafted SWF file.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-789" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-03-27T15:16:00Z" diff --git a/advisories/unreviewed/2025/03/GHSA-6v9h-fq6x-7vxx/GHSA-6v9h-fq6x-7vxx.json b/advisories/unreviewed/2025/03/GHSA-6v9h-fq6x-7vxx/GHSA-6v9h-fq6x-7vxx.json index 0ba7a3801bc..09a8216aa86 100644 --- a/advisories/unreviewed/2025/03/GHSA-6v9h-fq6x-7vxx/GHSA-6v9h-fq6x-7vxx.json +++ b/advisories/unreviewed/2025/03/GHSA-6v9h-fq6x-7vxx/GHSA-6v9h-fq6x-7vxx.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-6v9h-fq6x-7vxx", - "modified": "2025-03-27T15:31:14Z", + "modified": "2025-03-28T18:33:11Z", "published": "2025-03-27T15:31:14Z", "aliases": [ "CVE-2025-29494" ], "details": "libming v0.4.8 was discovered to contain a segmentation fault via the decompileGETMEMBER function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted SWF file.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-119" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-03-27T15:16:00Z" diff --git a/advisories/unreviewed/2025/03/GHSA-8gwj-x84v-j8cc/GHSA-8gwj-x84v-j8cc.json b/advisories/unreviewed/2025/03/GHSA-8gwj-x84v-j8cc/GHSA-8gwj-x84v-j8cc.json index cc36bff20a6..605c60aa9e4 100644 --- a/advisories/unreviewed/2025/03/GHSA-8gwj-x84v-j8cc/GHSA-8gwj-x84v-j8cc.json +++ b/advisories/unreviewed/2025/03/GHSA-8gwj-x84v-j8cc/GHSA-8gwj-x84v-j8cc.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-8gwj-x84v-j8cc", - "modified": "2025-03-27T21:31:21Z", + "modified": "2025-03-28T18:33:21Z", "published": "2025-03-27T21:31:21Z", "aliases": [ "CVE-2025-29306" ], "details": "An issue in FoxCMS v.1.2.5 allows a remote attacker to execute arbitrary code via the case display page in the index.html component.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-94" + ], + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-03-27T19:15:49Z" diff --git a/advisories/unreviewed/2025/03/GHSA-8hf9-x5gr-j3rr/GHSA-8hf9-x5gr-j3rr.json b/advisories/unreviewed/2025/03/GHSA-8hf9-x5gr-j3rr/GHSA-8hf9-x5gr-j3rr.json index 3e14c597475..5c771e3ba08 100644 --- a/advisories/unreviewed/2025/03/GHSA-8hf9-x5gr-j3rr/GHSA-8hf9-x5gr-j3rr.json +++ b/advisories/unreviewed/2025/03/GHSA-8hf9-x5gr-j3rr/GHSA-8hf9-x5gr-j3rr.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-8hf9-x5gr-j3rr", - "modified": "2025-03-27T18:31:23Z", + "modified": "2025-03-28T18:33:11Z", "published": "2025-03-27T18:31:23Z", "aliases": [ "CVE-2025-25686" ], "details": "semcms <=5.0 is vulnerable to SQL Injection in SEMCMS_Fuction.php.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-89" + ], + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-03-27T16:15:29Z" diff --git a/advisories/unreviewed/2025/03/GHSA-9w4w-6v5v-wh95/GHSA-9w4w-6v5v-wh95.json b/advisories/unreviewed/2025/03/GHSA-9w4w-6v5v-wh95/GHSA-9w4w-6v5v-wh95.json index 1ba9637e009..44915f7f613 100644 --- a/advisories/unreviewed/2025/03/GHSA-9w4w-6v5v-wh95/GHSA-9w4w-6v5v-wh95.json +++ b/advisories/unreviewed/2025/03/GHSA-9w4w-6v5v-wh95/GHSA-9w4w-6v5v-wh95.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-9w4w-6v5v-wh95", - "modified": "2025-03-27T18:31:27Z", + "modified": "2025-03-28T18:33:18Z", "published": "2025-03-27T18:31:27Z", "aliases": [ "CVE-2023-53003" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nEDAC/qcom: Do not pass llcc_driv_data as edac_device_ctl_info's pvt_info\n\nThe memory for llcc_driv_data is allocated by the LLCC driver. But when\nit is passed as the private driver info to the EDAC core, it will get freed\nduring the qcom_edac driver release. So when the qcom_edac driver gets probed\nagain, it will try to use the freed data leading to the use-after-free bug.\n\nHence, do not pass llcc_driv_data as pvt_info but rather reference it\nusing the platform_data pointer in the qcom_edac driver.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -36,8 +41,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-416" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-03-27T17:15:49Z" diff --git a/advisories/unreviewed/2025/03/GHSA-c6c6-6xm6-jhp9/GHSA-c6c6-6xm6-jhp9.json b/advisories/unreviewed/2025/03/GHSA-c6c6-6xm6-jhp9/GHSA-c6c6-6xm6-jhp9.json index 316791f70f9..4577130aa15 100644 --- a/advisories/unreviewed/2025/03/GHSA-c6c6-6xm6-jhp9/GHSA-c6c6-6xm6-jhp9.json +++ b/advisories/unreviewed/2025/03/GHSA-c6c6-6xm6-jhp9/GHSA-c6c6-6xm6-jhp9.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-c6c6-6xm6-jhp9", - "modified": "2025-03-27T18:31:25Z", + "modified": "2025-03-28T18:33:11Z", "published": "2025-03-27T18:31:24Z", "aliases": [ "CVE-2022-49753" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndmaengine: Fix double increment of client_count in dma_chan_get()\n\nThe first time dma_chan_get() is called for a channel the channel\nclient_count is incorrectly incremented twice for public channels,\nfirst in balance_ref_count(), and again prior to returning. This\nresults in an incorrect client count which will lead to the\nchannel resources not being freed when they should be. A simple\n test of repeated module load and unload of async_tx on a Dell\n Power Edge R7425 also shows this resulting in a kref underflow\n warning.\n\n[ 124.329662] async_tx: api initialized (async)\n[ 129.000627] async_tx: api initialized (async)\n[ 130.047839] ------------[ cut here ]------------\n[ 130.052472] refcount_t: underflow; use-after-free.\n[ 130.057279] WARNING: CPU: 3 PID: 19364 at lib/refcount.c:28\nrefcount_warn_saturate+0xba/0x110\n[ 130.065811] Modules linked in: async_tx(-) rfkill intel_rapl_msr\nintel_rapl_common amd64_edac edac_mce_amd ipmi_ssif kvm_amd dcdbas kvm\nmgag200 drm_shmem_helper acpi_ipmi irqbypass drm_kms_helper ipmi_si\nsyscopyarea sysfillrect rapl pcspkr ipmi_devintf sysimgblt fb_sys_fops\nk10temp i2c_piix4 ipmi_msghandler acpi_power_meter acpi_cpufreq vfat\nfat drm fuse xfs libcrc32c sd_mod t10_pi sg ahci crct10dif_pclmul\nlibahci crc32_pclmul crc32c_intel ghash_clmulni_intel igb megaraid_sas\ni40e libata i2c_algo_bit ccp sp5100_tco dca dm_mirror dm_region_hash\ndm_log dm_mod [last unloaded: async_tx]\n[ 130.117361] CPU: 3 PID: 19364 Comm: modprobe Kdump: loaded Not\ntainted 5.14.0-185.el9.x86_64 #1\n[ 130.126091] Hardware name: Dell Inc. PowerEdge R7425/02MJ3T, BIOS\n1.18.0 01/17/2022\n[ 130.133806] RIP: 0010:refcount_warn_saturate+0xba/0x110\n[ 130.139041] Code: 01 01 e8 6d bd 55 00 0f 0b e9 72 9d 8a 00 80 3d\n26 18 9c 01 00 75 85 48 c7 c7 f8 a3 03 9d c6 05 16 18 9c 01 01 e8 4a\nbd 55 00 <0f> 0b e9 4f 9d 8a 00 80 3d 01 18 9c 01 00 0f 85 5e ff ff ff\n48 c7\n[ 130.157807] RSP: 0018:ffffbf98898afe68 EFLAGS: 00010286\n[ 130.163036] RAX: 0000000000000000 RBX: ffff9da06028e598 RCX: 0000000000000000\n[ 130.170172] RDX: ffff9daf9de26480 RSI: ffff9daf9de198a0 RDI: ffff9daf9de198a0\n[ 130.177316] RBP: ffff9da7cddf3970 R08: 0000000000000000 R09: 00000000ffff7fff\n[ 130.184459] R10: ffffbf98898afd00 R11: ffffffff9d9e8c28 R12: ffff9da7cddf1970\n[ 130.191596] R13: 0000000000000000 R14: 0000000000000000 R15: 0000000000000000\n[ 130.198739] FS: 00007f646435c740(0000) GS:ffff9daf9de00000(0000)\nknlGS:0000000000000000\n[ 130.206832] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033\n[ 130.212586] CR2: 00007f6463b214f0 CR3: 00000008ab98c000 CR4: 00000000003506e0\n[ 130.219729] Call Trace:\n[ 130.222192] \n[ 130.224305] dma_chan_put+0x10d/0x110\n[ 130.227988] dmaengine_put+0x7a/0xa0\n[ 130.231575] __do_sys_delete_module.constprop.0+0x178/0x280\n[ 130.237157] ? syscall_trace_enter.constprop.0+0x145/0x1d0\n[ 130.242652] do_syscall_64+0x5c/0x90\n[ 130.246240] ? exc_page_fault+0x62/0x150\n[ 130.250178] entry_SYSCALL_64_after_hwframe+0x63/0xcd\n[ 130.255243] RIP: 0033:0x7f6463a3f5ab\n[ 130.258830] Code: 73 01 c3 48 8b 0d 75 a8 1b 00 f7 d8 64 89 01 48\n83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 b0 00 00\n00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 45 a8 1b 00 f7 d8 64 89\n01 48\n[ 130.277591] RSP: 002b:00007fff22f972c8 EFLAGS: 00000206 ORIG_RAX:\n00000000000000b0\n[ 130.285164] RAX: ffffffffffffffda RBX: 000055b6786edd40 RCX: 00007f6463a3f5ab\n[ 130.292303] RDX: 0000000000000000 RSI: 0000000000000800 RDI: 000055b6786edda8\n[ 130.299443] RBP: 000055b6786edd40 R08: 0000000000000000 R09: 0000000000000000\n[ 130.306584] R10: 00007f6463b9eac0 R11: 0000000000000206 R12: 000055b6786edda8\n[ 130.313731] R13: 0000000000000000 R14: 000055b6786edda8 R15: 00007fff22f995f8\n[ 130.320875] \n[ 130.323081] ---[ end trace eff7156d56b5cf25 ]---\n\ncat /sys/class/dma/dma0chan*/in_use would get the wrong result.\n2\n2\n2\n\nTest-by: Jie Hai ", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -44,8 +49,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-416" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-03-27T17:15:40Z" diff --git a/advisories/unreviewed/2025/03/GHSA-cw8p-4qwh-rvpm/GHSA-cw8p-4qwh-rvpm.json b/advisories/unreviewed/2025/03/GHSA-cw8p-4qwh-rvpm/GHSA-cw8p-4qwh-rvpm.json new file mode 100644 index 00000000000..ca802f26495 --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-cw8p-4qwh-rvpm/GHSA-cw8p-4qwh-rvpm.json @@ -0,0 +1,56 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-cw8p-4qwh-rvpm", + "modified": "2025-03-28T18:33:37Z", + "published": "2025-03-28T18:33:36Z", + "aliases": [ + "CVE-2025-2917" + ], + "details": "A vulnerability, which was classified as problematic, was found in ChestnutCMS up to 1.5.3. Affected is the function readFile of the file /dev-api/cms/file/read. The manipulation of the argument filePath leads to path traversal. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-2917" + }, + { + "type": "WEB", + "url": "https://r0ot.notion.site/ChestnutCMS-1-5-3-Arbitrary-file-read-vulnerability-1ae27d744f7f8074a169ca849e8a1d31" + }, + { + "type": "WEB", + "url": "https://r0ot.notion.site/ChestnutCMS-1-5-3-Arbitrary-file-read-vulnerability-1ae27d744f7f8074a169ca849e8a1d31?pvs=4" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.301890" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.301890" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.520933" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-22" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-28T18:15:17Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-fj6j-g6mj-6hf2/GHSA-fj6j-g6mj-6hf2.json b/advisories/unreviewed/2025/03/GHSA-fj6j-g6mj-6hf2/GHSA-fj6j-g6mj-6hf2.json index 6e19c2dc3fb..8f9622c634a 100644 --- a/advisories/unreviewed/2025/03/GHSA-fj6j-g6mj-6hf2/GHSA-fj6j-g6mj-6hf2.json +++ b/advisories/unreviewed/2025/03/GHSA-fj6j-g6mj-6hf2/GHSA-fj6j-g6mj-6hf2.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-fj6j-g6mj-6hf2", - "modified": "2025-03-27T18:31:25Z", + "modified": "2025-03-28T18:33:12Z", "published": "2025-03-27T18:31:25Z", "aliases": [ "CVE-2023-52931" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/i915: Avoid potential vm use-after-free\n\nAdding the vm to the vm_xa table makes it visible to userspace, which\ncould try to race with us to close the vm. So we need to take our extra\nreference before putting it in the table.\n\n(cherry picked from commit 99343c46d4e2b34c285d3d5f68ff04274c2f9fb4)", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-416" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-03-27T17:15:42Z" diff --git a/advisories/unreviewed/2025/03/GHSA-fm2g-8747-78cm/GHSA-fm2g-8747-78cm.json b/advisories/unreviewed/2025/03/GHSA-fm2g-8747-78cm/GHSA-fm2g-8747-78cm.json index 6c32f9743f7..e8383744065 100644 --- a/advisories/unreviewed/2025/03/GHSA-fm2g-8747-78cm/GHSA-fm2g-8747-78cm.json +++ b/advisories/unreviewed/2025/03/GHSA-fm2g-8747-78cm/GHSA-fm2g-8747-78cm.json @@ -26,7 +26,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-200" + "CWE-200", + "CWE-522" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/03/GHSA-fwg9-jmfc-cr2m/GHSA-fwg9-jmfc-cr2m.json b/advisories/unreviewed/2025/03/GHSA-fwg9-jmfc-cr2m/GHSA-fwg9-jmfc-cr2m.json new file mode 100644 index 00000000000..8135dc0e03b --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-fwg9-jmfc-cr2m/GHSA-fwg9-jmfc-cr2m.json @@ -0,0 +1,52 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-fwg9-jmfc-cr2m", + "modified": "2025-03-28T18:33:37Z", + "published": "2025-03-28T18:33:36Z", + "aliases": [ + "CVE-2025-2916" + ], + "details": "A vulnerability, which was classified as critical, has been found in Aishida Call Center System up to 20250314. This issue affects some unknown processing of the file /doscall/weixin/open/amr2mp3. The manipulation of the argument File leads to command injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-2916" + }, + { + "type": "WEB", + "url": "https://github.com/ZOKEYE/CVE/blob/main/CVE_1.md" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.301889" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.301889" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.520604" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-74" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-28T17:15:30Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-g533-46g7-g2f9/GHSA-g533-46g7-g2f9.json b/advisories/unreviewed/2025/03/GHSA-g533-46g7-g2f9/GHSA-g533-46g7-g2f9.json index e7f98a174d8..70435ca09e2 100644 --- a/advisories/unreviewed/2025/03/GHSA-g533-46g7-g2f9/GHSA-g533-46g7-g2f9.json +++ b/advisories/unreviewed/2025/03/GHSA-g533-46g7-g2f9/GHSA-g533-46g7-g2f9.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-g533-46g7-g2f9", - "modified": "2025-03-26T18:30:50Z", + "modified": "2025-03-28T18:33:08Z", "published": "2025-03-26T18:30:50Z", "aliases": [ "CVE-2025-2825" @@ -19,6 +19,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-2825" }, + { + "type": "WEB", + "url": "https://projectdiscovery.io/blog/crushftp-authentication-bypass" + }, { "type": "WEB", "url": "https://www.crushftp.com/crush11wiki/Wiki.jsp?page=Update" diff --git a/advisories/unreviewed/2025/03/GHSA-g779-v36v-3w99/GHSA-g779-v36v-3w99.json b/advisories/unreviewed/2025/03/GHSA-g779-v36v-3w99/GHSA-g779-v36v-3w99.json index 6efb3d42b61..bdb57f8e9ca 100644 --- a/advisories/unreviewed/2025/03/GHSA-g779-v36v-3w99/GHSA-g779-v36v-3w99.json +++ b/advisories/unreviewed/2025/03/GHSA-g779-v36v-3w99/GHSA-g779-v36v-3w99.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-g779-v36v-3w99", - "modified": "2025-03-27T15:31:08Z", + "modified": "2025-03-28T18:33:09Z", "published": "2025-03-27T15:31:08Z", "aliases": [ "CVE-2025-21867" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nbpf, test_run: Fix use-after-free issue in eth_skb_pkt_type()\n\nKMSAN reported a use-after-free issue in eth_skb_pkt_type()[1]. The\ncause of the issue was that eth_skb_pkt_type() accessed skb's data\nthat didn't contain an Ethernet header. This occurs when\nbpf_prog_test_run_xdp() passes an invalid value as the user_data\nargument to bpf_test_init().\n\nFix this by returning an error when user_data is less than ETH_HLEN in\nbpf_test_init(). Additionally, remove the check for \"if (user_size >\nsize)\" as it is unnecessary.\n\n[1]\nBUG: KMSAN: use-after-free in eth_skb_pkt_type include/linux/etherdevice.h:627 [inline]\nBUG: KMSAN: use-after-free in eth_type_trans+0x4ee/0x980 net/ethernet/eth.c:165\n eth_skb_pkt_type include/linux/etherdevice.h:627 [inline]\n eth_type_trans+0x4ee/0x980 net/ethernet/eth.c:165\n __xdp_build_skb_from_frame+0x5a8/0xa50 net/core/xdp.c:635\n xdp_recv_frames net/bpf/test_run.c:272 [inline]\n xdp_test_run_batch net/bpf/test_run.c:361 [inline]\n bpf_test_run_xdp_live+0x2954/0x3330 net/bpf/test_run.c:390\n bpf_prog_test_run_xdp+0x148e/0x1b10 net/bpf/test_run.c:1318\n bpf_prog_test_run+0x5b7/0xa30 kernel/bpf/syscall.c:4371\n __sys_bpf+0x6a6/0xe20 kernel/bpf/syscall.c:5777\n __do_sys_bpf kernel/bpf/syscall.c:5866 [inline]\n __se_sys_bpf kernel/bpf/syscall.c:5864 [inline]\n __x64_sys_bpf+0xa4/0xf0 kernel/bpf/syscall.c:5864\n x64_sys_call+0x2ea0/0x3d90 arch/x86/include/generated/asm/syscalls_64.h:322\n do_syscall_x64 arch/x86/entry/common.c:52 [inline]\n do_syscall_64+0xd9/0x1d0 arch/x86/entry/common.c:83\n entry_SYSCALL_64_after_hwframe+0x77/0x7f\n\nUninit was created at:\n free_pages_prepare mm/page_alloc.c:1056 [inline]\n free_unref_page+0x156/0x1320 mm/page_alloc.c:2657\n __free_pages+0xa3/0x1b0 mm/page_alloc.c:4838\n bpf_ringbuf_free kernel/bpf/ringbuf.c:226 [inline]\n ringbuf_map_free+0xff/0x1e0 kernel/bpf/ringbuf.c:235\n bpf_map_free kernel/bpf/syscall.c:838 [inline]\n bpf_map_free_deferred+0x17c/0x310 kernel/bpf/syscall.c:862\n process_one_work kernel/workqueue.c:3229 [inline]\n process_scheduled_works+0xa2b/0x1b60 kernel/workqueue.c:3310\n worker_thread+0xedf/0x1550 kernel/workqueue.c:3391\n kthread+0x535/0x6b0 kernel/kthread.c:389\n ret_from_fork+0x6e/0x90 arch/x86/kernel/process.c:147\n ret_from_fork_asm+0x1a/0x30 arch/x86/entry/entry_64.S:244\n\nCPU: 1 UID: 0 PID: 17276 Comm: syz.1.16450 Not tainted 6.12.0-05490-g9bb88c659673 #8\nHardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS 1.16.3-3.fc41 04/01/2014", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -36,8 +41,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-416" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-03-27T14:15:47Z" diff --git a/advisories/unreviewed/2025/03/GHSA-gg43-xfqw-xwg6/GHSA-gg43-xfqw-xwg6.json b/advisories/unreviewed/2025/03/GHSA-gg43-xfqw-xwg6/GHSA-gg43-xfqw-xwg6.json new file mode 100644 index 00000000000..78f57df4088 --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-gg43-xfqw-xwg6/GHSA-gg43-xfqw-xwg6.json @@ -0,0 +1,52 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-gg43-xfqw-xwg6", + "modified": "2025-03-28T18:33:37Z", + "published": "2025-03-28T18:33:36Z", + "aliases": [ + "CVE-2025-2915" + ], + "details": "A vulnerability classified as problematic was found in HDF5 up to 1.14.6. This vulnerability affects the function H5F__accum_free of the file src/H5Faccum.c. The manipulation of the argument overlap_size leads to heap-based buffer overflow. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-2915" + }, + { + "type": "WEB", + "url": "https://github.com/HDFGroup/hdf5/issues/5380" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.301888" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.301888" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.520899" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-119" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-28T17:15:30Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-gmm6-5vw5-42h2/GHSA-gmm6-5vw5-42h2.json b/advisories/unreviewed/2025/03/GHSA-gmm6-5vw5-42h2/GHSA-gmm6-5vw5-42h2.json index 0f174d9af95..c970e8a48b7 100644 --- a/advisories/unreviewed/2025/03/GHSA-gmm6-5vw5-42h2/GHSA-gmm6-5vw5-42h2.json +++ b/advisories/unreviewed/2025/03/GHSA-gmm6-5vw5-42h2/GHSA-gmm6-5vw5-42h2.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-gmm6-5vw5-42h2", - "modified": "2025-03-27T18:31:23Z", + "modified": "2025-03-28T18:33:11Z", "published": "2025-03-27T18:31:23Z", "aliases": [ "CVE-2025-28138" ], "details": "TOTOLINK A800R V4.1.2cu.5137_B20200730 contains a remote command execution vulnerability in the setNoticeCfg function through the NoticeUrl parameter.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-78" + ], + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-03-27T16:15:30Z" diff --git a/advisories/unreviewed/2025/03/GHSA-gphp-6r8r-qhcw/GHSA-gphp-6r8r-qhcw.json b/advisories/unreviewed/2025/03/GHSA-gphp-6r8r-qhcw/GHSA-gphp-6r8r-qhcw.json new file mode 100644 index 00000000000..fe33ddf3e31 --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-gphp-6r8r-qhcw/GHSA-gphp-6r8r-qhcw.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-gphp-6r8r-qhcw", + "modified": "2025-03-28T18:33:37Z", + "published": "2025-03-28T18:33:37Z", + "aliases": [ + "CVE-2025-31163" + ], + "details": "Segmentation fault in fig2dev in version 3.2.9a allows an attacker to availability via local input manipulation via put_patternarc function.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-31163" + }, + { + "type": "WEB", + "url": "https://sourceforge.net/p/mcj/tickets/186" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-476" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-28T18:15:18Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-h8g5-2596-xjh9/GHSA-h8g5-2596-xjh9.json b/advisories/unreviewed/2025/03/GHSA-h8g5-2596-xjh9/GHSA-h8g5-2596-xjh9.json index b45006ed637..335fe55519e 100644 --- a/advisories/unreviewed/2025/03/GHSA-h8g5-2596-xjh9/GHSA-h8g5-2596-xjh9.json +++ b/advisories/unreviewed/2025/03/GHSA-h8g5-2596-xjh9/GHSA-h8g5-2596-xjh9.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-h8g5-2596-xjh9", - "modified": "2025-03-27T21:31:20Z", + "modified": "2025-03-28T18:33:09Z", "published": "2025-03-27T15:31:10Z", "aliases": [ "CVE-2025-2857" ], "details": "Following the sandbox escape in CVE-2025-2783, various Firefox developers identified a similar pattern in our IPC code. Attackers were able to confuse the parent process into leaking handles to unprivileged child processes leading to a sandbox escape. \nThe original vulnerability was being exploited in the wild. \n*This only affects Firefox on Windows. Other operating systems are unaffected.* This vulnerability affects Firefox < 136.0.4, Firefox ESR < 128.8.1, and Firefox ESR < 115.21.1.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -33,7 +38,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-03-27T14:15:55Z" diff --git a/advisories/unreviewed/2025/03/GHSA-jfqh-c88v-ccr7/GHSA-jfqh-c88v-ccr7.json b/advisories/unreviewed/2025/03/GHSA-jfqh-c88v-ccr7/GHSA-jfqh-c88v-ccr7.json index a0a3c138444..8417742ed37 100644 --- a/advisories/unreviewed/2025/03/GHSA-jfqh-c88v-ccr7/GHSA-jfqh-c88v-ccr7.json +++ b/advisories/unreviewed/2025/03/GHSA-jfqh-c88v-ccr7/GHSA-jfqh-c88v-ccr7.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-jfqh-c88v-ccr7", - "modified": "2025-03-28T00:31:29Z", + "modified": "2025-03-28T18:33:24Z", "published": "2025-03-28T00:31:29Z", "aliases": [ "CVE-2025-28253" ], "details": "Cross-Site Scripting (XSS) vulnerability in MainWP MainWP Dashboard v5.3.4 exists in class/class-mainwp-post-handler.php, where unsanitized user input from $_POST['sites'], $_POST['clients'], and $_POST['search'] is passed into the MainWP_User::render_table function. Despite using sanitize_text_field and wp_unslash, the values are not adequately protected against HTML or script injection. This flaw could allow an attacker to inject malicious scripts.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-03-27T23:15:34Z" diff --git a/advisories/unreviewed/2025/03/GHSA-mp8x-xfvp-m4vh/GHSA-mp8x-xfvp-m4vh.json b/advisories/unreviewed/2025/03/GHSA-mp8x-xfvp-m4vh/GHSA-mp8x-xfvp-m4vh.json new file mode 100644 index 00000000000..34f7c67c037 --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-mp8x-xfvp-m4vh/GHSA-mp8x-xfvp-m4vh.json @@ -0,0 +1,52 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-mp8x-xfvp-m4vh", + "modified": "2025-03-28T18:33:37Z", + "published": "2025-03-28T18:33:37Z", + "aliases": [ + "CVE-2025-2920" + ], + "details": "A vulnerability was found in Netis WF-2404 1.1.124EN. It has been rated as problematic. This issue affects some unknown processing of the file /еtc/passwd. The manipulation leads to use of weak hash. It is possible to launch the attack on the physical device. The complexity of an attack is rather high. The exploitation is known to be difficult. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:P/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:P/AC:H/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-2920" + }, + { + "type": "WEB", + "url": "https://scoozi.substack.com/p/hacking-a-netis-wf-2404-router-cont" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.301895" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.301895" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.521037" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-327" + ], + "severity": "LOW", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-28T18:15:17Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-mpcj-9v9v-j2hw/GHSA-mpcj-9v9v-j2hw.json b/advisories/unreviewed/2025/03/GHSA-mpcj-9v9v-j2hw/GHSA-mpcj-9v9v-j2hw.json new file mode 100644 index 00000000000..3e26dfdba46 --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-mpcj-9v9v-j2hw/GHSA-mpcj-9v9v-j2hw.json @@ -0,0 +1,52 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-mpcj-9v9v-j2hw", + "modified": "2025-03-28T18:33:37Z", + "published": "2025-03-28T18:33:36Z", + "aliases": [ + "CVE-2025-2914" + ], + "details": "A vulnerability classified as problematic has been found in HDF5 up to 1.14.6. This affects the function H5FS__sinfo_Srialize_Sct_cb of the file src/H5FScache.c. The manipulation of the argument sect leads to heap-based buffer overflow. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-2914" + }, + { + "type": "WEB", + "url": "https://github.com/HDFGroup/hdf5/issues/5379" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.301887" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.301887" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.520880" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-119" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-28T17:15:30Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-mrrj-w56r-7c5r/GHSA-mrrj-w56r-7c5r.json b/advisories/unreviewed/2025/03/GHSA-mrrj-w56r-7c5r/GHSA-mrrj-w56r-7c5r.json new file mode 100644 index 00000000000..bb1b8837076 --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-mrrj-w56r-7c5r/GHSA-mrrj-w56r-7c5r.json @@ -0,0 +1,52 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-mrrj-w56r-7c5r", + "modified": "2025-03-28T18:33:37Z", + "published": "2025-03-28T18:33:36Z", + "aliases": [ + "CVE-2025-2912" + ], + "details": "A vulnerability was found in HDF5 up to 1.14.6. It has been declared as problematic. Affected by this vulnerability is the function H5O_msg_flush of the file src/H5Omessage.c. The manipulation of the argument oh leads to heap-based buffer overflow. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-2912" + }, + { + "type": "WEB", + "url": "https://github.com/HDFGroup/hdf5/issues/5370" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.301885" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.301885" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.519966" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-119" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-28T16:15:30Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-p2jr-9qm5-gxfq/GHSA-p2jr-9qm5-gxfq.json b/advisories/unreviewed/2025/03/GHSA-p2jr-9qm5-gxfq/GHSA-p2jr-9qm5-gxfq.json index fe57366878d..455cc723b95 100644 --- a/advisories/unreviewed/2025/03/GHSA-p2jr-9qm5-gxfq/GHSA-p2jr-9qm5-gxfq.json +++ b/advisories/unreviewed/2025/03/GHSA-p2jr-9qm5-gxfq/GHSA-p2jr-9qm5-gxfq.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-p2jr-9qm5-gxfq", - "modified": "2025-03-27T15:31:14Z", + "modified": "2025-03-28T18:33:11Z", "published": "2025-03-27T15:31:14Z", "aliases": [ "CVE-2025-29493" ], "details": "libming v0.4.8 was discovered to contain a segmentation fault via the decompileGETPROPERTY function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted SWF file.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-119" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-03-27T15:16:00Z" diff --git a/advisories/unreviewed/2025/03/GHSA-p47h-x29h-rvvm/GHSA-p47h-x29h-rvvm.json b/advisories/unreviewed/2025/03/GHSA-p47h-x29h-rvvm/GHSA-p47h-x29h-rvvm.json new file mode 100644 index 00000000000..865572d0a59 --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-p47h-x29h-rvvm/GHSA-p47h-x29h-rvvm.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-p47h-x29h-rvvm", + "modified": "2025-03-28T18:33:38Z", + "published": "2025-03-28T18:33:38Z", + "aliases": [ + "CVE-2025-31164" + ], + "details": "heap-buffer overflow in fig2dev in version 3.2.9a allows an attacker to availability via local input manipulation via  create_line_with_spline.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-31164" + }, + { + "type": "WEB", + "url": "https://sourceforge.net/p/mcj/tickets/184" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-122" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-28T18:15:18Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-phqr-mm9h-9x4v/GHSA-phqr-mm9h-9x4v.json b/advisories/unreviewed/2025/03/GHSA-phqr-mm9h-9x4v/GHSA-phqr-mm9h-9x4v.json index 505e29bde0e..c9e14b970db 100644 --- a/advisories/unreviewed/2025/03/GHSA-phqr-mm9h-9x4v/GHSA-phqr-mm9h-9x4v.json +++ b/advisories/unreviewed/2025/03/GHSA-phqr-mm9h-9x4v/GHSA-phqr-mm9h-9x4v.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-phqr-mm9h-9x4v", - "modified": "2025-03-27T15:31:13Z", + "modified": "2025-03-28T18:33:11Z", "published": "2025-03-27T15:31:13Z", "aliases": [ "CVE-2025-29484" ], "details": "An out-of-memory error in the parseABC_NS_SET_INFO function of libming v0.4.8 allows attackers to cause a Denial of Service (DoS) due to allocator exhaustion.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-400" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-03-27T15:15:59Z" diff --git a/advisories/unreviewed/2025/03/GHSA-pwxf-vp8f-f327/GHSA-pwxf-vp8f-f327.json b/advisories/unreviewed/2025/03/GHSA-pwxf-vp8f-f327/GHSA-pwxf-vp8f-f327.json index b0849cecf9e..33633c84264 100644 --- a/advisories/unreviewed/2025/03/GHSA-pwxf-vp8f-f327/GHSA-pwxf-vp8f-f327.json +++ b/advisories/unreviewed/2025/03/GHSA-pwxf-vp8f-f327/GHSA-pwxf-vp8f-f327.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-pwxf-vp8f-f327", - "modified": "2025-03-27T15:31:11Z", + "modified": "2025-03-28T18:33:10Z", "published": "2025-03-27T15:31:11Z", "aliases": [ "CVE-2025-21879" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nbtrfs: fix use-after-free on inode when scanning root during em shrinking\n\nAt btrfs_scan_root() we are accessing the inode's root (and fs_info) in a\ncall to btrfs_fs_closing() after we have scheduled the inode for a delayed\niput, and that can result in a use-after-free on the inode in case the\ncleaner kthread does the iput before we dereference the inode in the call\nto btrfs_fs_closing().\n\nFix this by using the fs_info stored already in a local variable instead\nof doing inode->root->fs_info.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-416" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-03-27T15:15:55Z" diff --git a/advisories/unreviewed/2025/03/GHSA-qc5x-h4r4-86f3/GHSA-qc5x-h4r4-86f3.json b/advisories/unreviewed/2025/03/GHSA-qc5x-h4r4-86f3/GHSA-qc5x-h4r4-86f3.json index 92692bb1970..958de08a480 100644 --- a/advisories/unreviewed/2025/03/GHSA-qc5x-h4r4-86f3/GHSA-qc5x-h4r4-86f3.json +++ b/advisories/unreviewed/2025/03/GHSA-qc5x-h4r4-86f3/GHSA-qc5x-h4r4-86f3.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-qc5x-h4r4-86f3", - "modified": "2025-03-27T18:31:24Z", + "modified": "2025-03-28T18:33:11Z", "published": "2025-03-27T18:31:24Z", "aliases": [ "CVE-2022-49755" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nusb: gadget: f_fs: Prevent race during ffs_ep0_queue_wait\n\nWhile performing fast composition switch, there is a possibility that the\nprocess of ffs_ep0_write/ffs_ep0_read get into a race condition\ndue to ep0req being freed up from functionfs_unbind.\n\nConsider the scenario that the ffs_ep0_write calls the ffs_ep0_queue_wait\nby taking a lock &ffs->ev.waitq.lock. However, the functionfs_unbind isn't\nbounded so it can go ahead and mark the ep0req to NULL, and since there\nis no NULL check in ffs_ep0_queue_wait we will end up in use-after-free.\n\nFix this by making a serialized execution between the two functions using\na mutex_lock(ffs->mutex).", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -44,8 +49,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-416" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-03-27T17:15:40Z" diff --git a/advisories/unreviewed/2025/03/GHSA-rrmq-292q-2ghp/GHSA-rrmq-292q-2ghp.json b/advisories/unreviewed/2025/03/GHSA-rrmq-292q-2ghp/GHSA-rrmq-292q-2ghp.json new file mode 100644 index 00000000000..5c04bd1952e --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-rrmq-292q-2ghp/GHSA-rrmq-292q-2ghp.json @@ -0,0 +1,52 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-rrmq-292q-2ghp", + "modified": "2025-03-28T18:33:37Z", + "published": "2025-03-28T18:33:37Z", + "aliases": [ + "CVE-2025-2921" + ], + "details": "A vulnerability classified as critical has been found in Netis WF-2404 1.1.124EN. Affected is an unknown function of the file /etc/passwd. The manipulation with the input Realtek leads to use of default password. It is possible to launch the attack on the physical device. The complexity of an attack is rather high. The exploitability is told to be difficult. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:P/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:P/AC:H/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-2921" + }, + { + "type": "WEB", + "url": "https://scoozi.substack.com/p/hacking-a-netis-wf-2404-router-cont" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.301896" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.301896" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.521038" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-1393" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-28T18:15:17Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-rxhh-c759-8w6x/GHSA-rxhh-c759-8w6x.json b/advisories/unreviewed/2025/03/GHSA-rxhh-c759-8w6x/GHSA-rxhh-c759-8w6x.json new file mode 100644 index 00000000000..07098b7caec --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-rxhh-c759-8w6x/GHSA-rxhh-c759-8w6x.json @@ -0,0 +1,52 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-rxhh-c759-8w6x", + "modified": "2025-03-28T18:33:37Z", + "published": "2025-03-28T18:33:37Z", + "aliases": [ + "CVE-2025-2919" + ], + "details": "A vulnerability was found in Netis WF-2404 1.1.124EN. It has been declared as critical. This vulnerability affects unknown code of the component UART. The manipulation leads to hardware allows activation of test or debug logic at runtime. It is possible to launch the attack on the physical device. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:P/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-2919" + }, + { + "type": "WEB", + "url": "https://scoozi.substack.com/p/hacking-a-netis-wf-2404-router-with" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.301894" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.301894" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.521036" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-489" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-28T18:15:17Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-v5x4-36wq-jqfc/GHSA-v5x4-36wq-jqfc.json b/advisories/unreviewed/2025/03/GHSA-v5x4-36wq-jqfc/GHSA-v5x4-36wq-jqfc.json new file mode 100644 index 00000000000..4a3daa2f750 --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-v5x4-36wq-jqfc/GHSA-v5x4-36wq-jqfc.json @@ -0,0 +1,52 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-v5x4-36wq-jqfc", + "modified": "2025-03-28T18:33:37Z", + "published": "2025-03-28T18:33:36Z", + "aliases": [ + "CVE-2025-2913" + ], + "details": "A vulnerability was found in HDF5 up to 1.14.6. It has been rated as problematic. Affected by this issue is the function H5FL__blk_gc_list of the file src/H5FL.c. The manipulation of the argument H5FL_blk_head_t leads to use after free. An attack has to be approached locally. The exploit has been disclosed to the public and may be used.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-2913" + }, + { + "type": "WEB", + "url": "https://github.com/HDFGroup/hdf5/issues/5376" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.301886" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.301886" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.520404" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-119" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-28T17:15:30Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-v64g-gxm8-whwj/GHSA-v64g-gxm8-whwj.json b/advisories/unreviewed/2025/03/GHSA-v64g-gxm8-whwj/GHSA-v64g-gxm8-whwj.json index 9bf5b45c851..87489a3a318 100644 --- a/advisories/unreviewed/2025/03/GHSA-v64g-gxm8-whwj/GHSA-v64g-gxm8-whwj.json +++ b/advisories/unreviewed/2025/03/GHSA-v64g-gxm8-whwj/GHSA-v64g-gxm8-whwj.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-v64g-gxm8-whwj", - "modified": "2025-03-27T21:31:21Z", + "modified": "2025-03-28T18:33:21Z", "published": "2025-03-27T21:31:21Z", "aliases": [ "CVE-2025-30093" ], "details": "HTCondor 23.0.x before 23.0.22, 23.10.x before 23.10.22, 24.0.x before 24.0.6, and 24.6.x before 24.6.1 allows authenticated attackers to bypass authorization restrictions.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-863" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-03-27T19:15:49Z" diff --git a/advisories/unreviewed/2025/03/GHSA-whcm-px77-62x7/GHSA-whcm-px77-62x7.json b/advisories/unreviewed/2025/03/GHSA-whcm-px77-62x7/GHSA-whcm-px77-62x7.json index 375744a55e4..d5e0458c343 100644 --- a/advisories/unreviewed/2025/03/GHSA-whcm-px77-62x7/GHSA-whcm-px77-62x7.json +++ b/advisories/unreviewed/2025/03/GHSA-whcm-px77-62x7/GHSA-whcm-px77-62x7.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-whcm-px77-62x7", - "modified": "2025-03-27T18:31:25Z", + "modified": "2025-03-28T18:33:13Z", "published": "2025-03-27T18:31:25Z", "aliases": [ "CVE-2023-52935" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nmm/khugepaged: fix ->anon_vma race\n\nIf an ->anon_vma is attached to the VMA, collapse_and_free_pmd() requires\nit to be locked.\n\nPage table traversal is allowed under any one of the mmap lock, the\nanon_vma lock (if the VMA is associated with an anon_vma), and the\nmapping lock (if the VMA is associated with a mapping); and so to be\nable to remove page tables, we must hold all three of them. \nretract_page_tables() bails out if an ->anon_vma is attached, but does\nthis check before holding the mmap lock (as the comment above the check\nexplains).\n\nIf we racily merged an existing ->anon_vma (shared with a child\nprocess) from a neighboring VMA, subsequent rmap traversals on pages\nbelonging to the child will be able to see the page tables that we are\nconcurrently removing while assuming that nothing else can access them.\n\nRepeat the ->anon_vma check once we hold the mmap lock to ensure that\nthere really is no concurrent page table access.\n\nHitting this bug causes a lockdep warning in collapse_and_free_pmd(),\nin the line \"lockdep_assert_held_write(&vma->anon_vma->root->rwsem)\". \nIt can also lead to use-after-free access.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-416" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-03-27T17:15:43Z" diff --git a/advisories/unreviewed/2025/03/GHSA-wq32-8rp4-w2mc/GHSA-wq32-8rp4-w2mc.json b/advisories/unreviewed/2025/03/GHSA-wq32-8rp4-w2mc/GHSA-wq32-8rp4-w2mc.json index 01c097e33c1..a0510b14a3e 100644 --- a/advisories/unreviewed/2025/03/GHSA-wq32-8rp4-w2mc/GHSA-wq32-8rp4-w2mc.json +++ b/advisories/unreviewed/2025/03/GHSA-wq32-8rp4-w2mc/GHSA-wq32-8rp4-w2mc.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-wq32-8rp4-w2mc", - "modified": "2025-03-27T18:31:23Z", + "modified": "2025-03-28T18:33:11Z", "published": "2025-03-27T18:31:23Z", "aliases": [ "CVE-2025-29072" ], "details": "An integer overflow in Nethermind Juno before v.12.05 within the Sierra bytecode decompression logic within the \"cairo-lang-starknet-classes\" library could allow remote attackers to trigger an infinite loop (and high CPU usage) by submitting a malicious Declare v2/v3 transaction. This results in a denial-of-service condition for affected Starknet full-node implementations.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-190" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-03-27T16:15:30Z"