From 14ee4769c284a27177b4768490b495cfc54d016f Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Fri, 20 Oct 2023 22:49:43 +0000 Subject: [PATCH] Publish Advisories GHSA-p4g9-c9qr-wmg5 GHSA-w2x5-hpmg-j98h GHSA-wjg8-pxqj-c3c7 --- .../03/GHSA-p4g9-c9qr-wmg5/GHSA-p4g9-c9qr-wmg5.json | 10 +++++++++- .../07/GHSA-w2x5-hpmg-j98h/GHSA-w2x5-hpmg-j98h.json | 4 ++-- .../07/GHSA-wjg8-pxqj-c3c7/GHSA-wjg8-pxqj-c3c7.json | 4 ++-- 3 files changed, 13 insertions(+), 5 deletions(-) diff --git a/advisories/github-reviewed/2023/03/GHSA-p4g9-c9qr-wmg5/GHSA-p4g9-c9qr-wmg5.json b/advisories/github-reviewed/2023/03/GHSA-p4g9-c9qr-wmg5/GHSA-p4g9-c9qr-wmg5.json index 495b86f21e4..b8b5d5a5a79 100644 --- a/advisories/github-reviewed/2023/03/GHSA-p4g9-c9qr-wmg5/GHSA-p4g9-c9qr-wmg5.json +++ b/advisories/github-reviewed/2023/03/GHSA-p4g9-c9qr-wmg5/GHSA-p4g9-c9qr-wmg5.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-p4g9-c9qr-wmg5", - "modified": "2023-03-16T13:26:21Z", + "modified": "2023-10-20T22:48:27Z", "published": "2023-03-10T03:30:15Z", "aliases": [ "CVE-2017-20182" @@ -40,10 +40,18 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2017-20182" }, + { + "type": "WEB", + "url": "https://github.com/mvpoland/django-ajax-utilities/commit/329eb1dd1580ca1f9d4f95bc69939833226515c9" + }, { "type": "WEB", "url": "https://github.com/vikingco/django-ajax-utilities/commit/329eb1dd1580ca1f9d4f95bc69939833226515c9" }, + { + "type": "PACKAGE", + "url": "https://github.com/mvpoland/django-ajax-utilities" + }, { "type": "WEB", "url": "https://vuldb.com/?ctiid.222611" diff --git a/advisories/github-reviewed/2023/07/GHSA-w2x5-hpmg-j98h/GHSA-w2x5-hpmg-j98h.json b/advisories/github-reviewed/2023/07/GHSA-w2x5-hpmg-j98h/GHSA-w2x5-hpmg-j98h.json index 97ceb546c8e..b92dcf48b70 100644 --- a/advisories/github-reviewed/2023/07/GHSA-w2x5-hpmg-j98h/GHSA-w2x5-hpmg-j98h.json +++ b/advisories/github-reviewed/2023/07/GHSA-w2x5-hpmg-j98h/GHSA-w2x5-hpmg-j98h.json @@ -1,13 +1,13 @@ { "schema_version": "1.4.0", "id": "GHSA-w2x5-hpmg-j98h", - "modified": "2023-07-06T21:49:53Z", + "modified": "2023-10-20T22:49:17Z", "published": "2023-07-06T19:24:11Z", "aliases": [ "CVE-2020-36665" ], "summary": "Artesãos SEOTools Open Redirect vulnerability", - "details": "A vulnerability was found in Artesãos SEOTools up to and including version 0.17.1. This issue affects the function eachValue of the file TwitterCards.php. The manipulation of the argument value leads to open redirect. Upgrading to version 0.17.2 is able to address this issue. The name of the patch is ca27cd0edf917e0bc805227013859b8b5a1f01fb. It is recommended to upgrade the affected component. ", + "details": "A vulnerability was found in Artesãos SEOTools up to and including version 0.17.1. This issue affects the function eachValue of the file TwitterCards.php. The manipulation of the argument value leads to open redirect. Upgrading to version 0.17.2 is able to address this issue. The name of the patch is ca27cd0edf917e0bc805227013859b8b5a1f01fb. It is recommended to upgrade the affected component. The identifier VDB-222233 was assigned to this vulnerability.\n\n", "severity": [ { "type": "CVSS_V3", diff --git a/advisories/github-reviewed/2023/07/GHSA-wjg8-pxqj-c3c7/GHSA-wjg8-pxqj-c3c7.json b/advisories/github-reviewed/2023/07/GHSA-wjg8-pxqj-c3c7/GHSA-wjg8-pxqj-c3c7.json index cc5bdeefb4a..7e0b16412e0 100644 --- a/advisories/github-reviewed/2023/07/GHSA-wjg8-pxqj-c3c7/GHSA-wjg8-pxqj-c3c7.json +++ b/advisories/github-reviewed/2023/07/GHSA-wjg8-pxqj-c3c7/GHSA-wjg8-pxqj-c3c7.json @@ -1,13 +1,13 @@ { "schema_version": "1.4.0", "id": "GHSA-wjg8-pxqj-c3c7", - "modified": "2023-07-06T21:48:54Z", + "modified": "2023-10-20T22:48:58Z", "published": "2023-07-06T19:24:11Z", "aliases": [ "CVE-2020-36663" ], "summary": "Artesãos SEOTools Open Redirect vulnerability", - "details": "A vulnerability, which was classified as problematic, was found in Artesãos SEOTools up to and including version 0.17.1. This affects the function makeTag of the file OpenGraph.php. The manipulation of the argument value leads to open redirect. Upgrading to version 0.17.2 is able to address this issue. The name of the patch is ca27cd0edf917e0bc805227013859b8b5a1f01fb. It is recommended to upgrade the affected component.", + "details": "A vulnerability, which was classified as problematic, was found in Artesãos SEOTools up to and including version 0.17.1. This affects the function makeTag of the file OpenGraph.php. The manipulation of the argument value leads to open redirect. Upgrading to version 0.17.2 is able to address this issue. The name of the patch is ca27cd0edf917e0bc805227013859b8b5a1f01fb. It is recommended to upgrade the affected component. The associated identifier of this vulnerability is VDB-222231.", "severity": [ { "type": "CVSS_V3",