diff --git a/advisories/github-reviewed/2024/01/GHSA-53ph-2r2x-vqw8/GHSA-53ph-2r2x-vqw8.json b/advisories/github-reviewed/2024/01/GHSA-53ph-2r2x-vqw8/GHSA-53ph-2r2x-vqw8.json index 5588025b61e..84d4c3a8b7a 100644 --- a/advisories/github-reviewed/2024/01/GHSA-53ph-2r2x-vqw8/GHSA-53ph-2r2x-vqw8.json +++ b/advisories/github-reviewed/2024/01/GHSA-53ph-2r2x-vqw8/GHSA-53ph-2r2x-vqw8.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-53ph-2r2x-vqw8", - "modified": "2024-03-12T16:29:13Z", + "modified": "2024-05-14T17:57:17Z", "published": "2024-01-24T18:31:02Z", "aliases": [ "CVE-2024-23898" @@ -86,6 +86,10 @@ "type": "WEB", "url": "https://www.jenkins.io/security/advisory/2024-01-24/#SECURITY-3315" }, + { + "type": "WEB", + "url": "https://www.sonarsource.com/blog/excessive-expansion-uncovering-critical-security-vulnerabilities-in-jenkins" + }, { "type": "WEB", "url": "http://www.openwall.com/lists/oss-security/2024/01/24/6" diff --git a/advisories/github-reviewed/2024/01/GHSA-6f9g-cxwr-q5jr/GHSA-6f9g-cxwr-q5jr.json b/advisories/github-reviewed/2024/01/GHSA-6f9g-cxwr-q5jr/GHSA-6f9g-cxwr-q5jr.json index b527961da9e..1cd15c4feaa 100644 --- a/advisories/github-reviewed/2024/01/GHSA-6f9g-cxwr-q5jr/GHSA-6f9g-cxwr-q5jr.json +++ b/advisories/github-reviewed/2024/01/GHSA-6f9g-cxwr-q5jr/GHSA-6f9g-cxwr-q5jr.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-6f9g-cxwr-q5jr", - "modified": "2024-03-12T16:31:02Z", + "modified": "2024-05-14T17:57:01Z", "published": "2024-01-24T18:31:02Z", "aliases": [ "CVE-2024-23897" @@ -100,6 +100,10 @@ "type": "WEB", "url": "https://www.jenkins.io/security/advisory/2024-01-24/#SECURITY-3314" }, + { + "type": "WEB", + "url": "https://www.sonarsource.com/blog/excessive-expansion-uncovering-critical-security-vulnerabilities-in-jenkins" + }, { "type": "WEB", "url": "http://packetstormsecurity.com/files/176839/Jenkins-2.441-LTS-2.426.3-CVE-2024-23897-Scanner.html" diff --git a/advisories/github-reviewed/2024/02/GHSA-4w4v-5hc9-xrr2/GHSA-4w4v-5hc9-xrr2.json b/advisories/github-reviewed/2024/02/GHSA-4w4v-5hc9-xrr2/GHSA-4w4v-5hc9-xrr2.json index 58fba77e660..c1c3fbec82c 100644 --- a/advisories/github-reviewed/2024/02/GHSA-4w4v-5hc9-xrr2/GHSA-4w4v-5hc9-xrr2.json +++ b/advisories/github-reviewed/2024/02/GHSA-4w4v-5hc9-xrr2/GHSA-4w4v-5hc9-xrr2.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-4w4v-5hc9-xrr2", - "modified": "2024-03-06T16:03:39Z", + "modified": "2024-05-14T17:57:39Z", "published": "2024-02-10T06:30:19Z", "aliases": [ "CVE-2024-21490" @@ -97,6 +97,10 @@ { "type": "WEB", "url": "https://stackblitz.com/edit/angularjs-vulnerability-ng-srcset-redos" + }, + { + "type": "WEB", + "url": "https://support.herodevs.com/hc/en-us/articles/25715686953485-CVE-2024-21490-AngularJS-Regular-Expression-Denial-of-Service-ReDoS" } ], "database_specific": {