diff --git a/advisories/github-reviewed/2024/02/GHSA-w6qf-42m7-vh68/GHSA-w6qf-42m7-vh68.json b/advisories/github-reviewed/2024/02/GHSA-w6qf-42m7-vh68/GHSA-w6qf-42m7-vh68.json index 10a970478dd..437a13a6e70 100644 --- a/advisories/github-reviewed/2024/02/GHSA-w6qf-42m7-vh68/GHSA-w6qf-42m7-vh68.json +++ b/advisories/github-reviewed/2024/02/GHSA-w6qf-42m7-vh68/GHSA-w6qf-42m7-vh68.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-w6qf-42m7-vh68", - "modified": "2025-03-20T19:36:32Z", + "modified": "2025-04-28T15:32:19Z", "published": "2024-02-20T00:30:36Z", "aliases": [ "CVE-2024-1635" @@ -87,6 +87,10 @@ "type": "WEB", "url": "https://access.redhat.com/security/cve/CVE-2024-1635" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2025:4226" + }, { "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:4884" diff --git a/advisories/github-reviewed/2024/09/GHSA-m9gf-397r-hwpg/GHSA-m9gf-397r-hwpg.json b/advisories/github-reviewed/2024/09/GHSA-m9gf-397r-hwpg/GHSA-m9gf-397r-hwpg.json index 80a89c93d72..892164b4b32 100644 --- a/advisories/github-reviewed/2024/09/GHSA-m9gf-397r-hwpg/GHSA-m9gf-397r-hwpg.json +++ b/advisories/github-reviewed/2024/09/GHSA-m9gf-397r-hwpg/GHSA-m9gf-397r-hwpg.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-m9gf-397r-hwpg", - "modified": "2024-11-22T12:39:08Z", + "modified": "2025-04-28T15:32:18Z", "published": "2024-09-09T15:30:41Z", "aliases": [ "CVE-2024-8372" diff --git a/advisories/unreviewed/2022/11/GHSA-pg25-36p5-jfv5/GHSA-pg25-36p5-jfv5.json b/advisories/unreviewed/2022/11/GHSA-pg25-36p5-jfv5/GHSA-pg25-36p5-jfv5.json index 6668b7e2c6f..bae95b42f51 100644 --- a/advisories/unreviewed/2022/11/GHSA-pg25-36p5-jfv5/GHSA-pg25-36p5-jfv5.json +++ b/advisories/unreviewed/2022/11/GHSA-pg25-36p5-jfv5/GHSA-pg25-36p5-jfv5.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-pg25-36p5-jfv5", - "modified": "2022-11-30T18:30:19Z", + "modified": "2025-04-28T15:31:31Z", "published": "2022-11-23T18:30:27Z", "aliases": [ "CVE-2022-23740" @@ -19,6 +19,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-23740" }, + { + "type": "WEB", + "url": "https://docs.github.com/en/enterprise-server%403.7/admin/release-notes#3.7.1" + }, { "type": "WEB", "url": "https://docs.github.com/en/enterprise-server@3.7/admin/release-notes#3.7.1" diff --git a/advisories/unreviewed/2024/02/GHSA-jfh3-wq2r-73gg/GHSA-jfh3-wq2r-73gg.json b/advisories/unreviewed/2024/02/GHSA-jfh3-wq2r-73gg/GHSA-jfh3-wq2r-73gg.json index fa2a5e958ea..12294345c74 100644 --- a/advisories/unreviewed/2024/02/GHSA-jfh3-wq2r-73gg/GHSA-jfh3-wq2r-73gg.json +++ b/advisories/unreviewed/2024/02/GHSA-jfh3-wq2r-73gg/GHSA-jfh3-wq2r-73gg.json @@ -1,12 +1,12 @@ { "schema_version": "1.4.0", "id": "GHSA-jfh3-wq2r-73gg", - "modified": "2024-02-28T21:30:19Z", + "modified": "2025-04-28T15:31:32Z", "published": "2024-02-28T21:30:19Z", "aliases": [ "CVE-2023-51533" ], - "details": "Cross-Site Request Forgery (CSRF) vulnerability in Ecwid Ecommerce Ecwid Ecommerce Shopping Cart.This issue affects Ecwid Ecommerce Shopping Cart: from n/a through 6.12.4.\n\n", + "details": "Cross-Site Request Forgery (CSRF) vulnerability in Ecwid Ecommerce Ecwid Ecommerce Shopping Cart.This issue affects Ecwid Ecommerce Shopping Cart: from n/a through 6.12.4.", "severity": [ { "type": "CVSS_V3", diff --git a/advisories/unreviewed/2025/04/GHSA-35m2-m3ch-fgh4/GHSA-35m2-m3ch-fgh4.json b/advisories/unreviewed/2025/04/GHSA-35m2-m3ch-fgh4/GHSA-35m2-m3ch-fgh4.json index e6bf1c8798e..ecad308e44b 100644 --- a/advisories/unreviewed/2025/04/GHSA-35m2-m3ch-fgh4/GHSA-35m2-m3ch-fgh4.json +++ b/advisories/unreviewed/2025/04/GHSA-35m2-m3ch-fgh4/GHSA-35m2-m3ch-fgh4.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-35m2-m3ch-fgh4", - "modified": "2025-04-20T03:50:41Z", + "modified": "2025-04-28T15:31:38Z", "published": "2025-04-20T03:50:41Z", "aliases": [ "CVE-2025-43920" @@ -26,6 +26,14 @@ { "type": "WEB", "url": "https://github.com/0NYX-MY7H/CVE-2025-43920" + }, + { + "type": "WEB", + "url": "https://github.com/cpanel/mailman2-python3" + }, + { + "type": "WEB", + "url": "https://www.openwall.com/lists/oss-security/2025/04/21/6" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/04/GHSA-45qh-j5f9-3rvr/GHSA-45qh-j5f9-3rvr.json b/advisories/unreviewed/2025/04/GHSA-45qh-j5f9-3rvr/GHSA-45qh-j5f9-3rvr.json new file mode 100644 index 00000000000..e96225b7898 --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-45qh-j5f9-3rvr/GHSA-45qh-j5f9-3rvr.json @@ -0,0 +1,56 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-45qh-j5f9-3rvr", + "modified": "2025-04-28T15:31:41Z", + "published": "2025-04-28T15:31:41Z", + "aliases": [ + "CVE-2025-4022" + ], + "details": "A vulnerability was found in web-arena-x webarena up to 0.2.0. It has been declared as critical. This vulnerability affects the function HTMLContentEvaluator of the file webarena/evaluation_harness/evaluators.py. The manipulation of the argument target[\"url\"] leads to code injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-4022" + }, + { + "type": "WEB", + "url": "https://github.com/web-arena-x/webarena/issues/194" + }, + { + "type": "WEB", + "url": "https://github.com/web-arena-x/webarena/issues/194#issuecomment-2796165922" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.306376" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.306376" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.558415" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-74" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-28T14:15:22Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-4fq3-3crq-c8mm/GHSA-4fq3-3crq-c8mm.json b/advisories/unreviewed/2025/04/GHSA-4fq3-3crq-c8mm/GHSA-4fq3-3crq-c8mm.json new file mode 100644 index 00000000000..bcd78dd84c2 --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-4fq3-3crq-c8mm/GHSA-4fq3-3crq-c8mm.json @@ -0,0 +1,56 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-4fq3-3crq-c8mm", + "modified": "2025-04-28T15:31:41Z", + "published": "2025-04-28T15:31:41Z", + "aliases": [ + "CVE-2025-4024" + ], + "details": "A vulnerability classified as critical has been found in itsourcecode Placement Management System 1.0. Affected is an unknown function of the file /add_drive.php. The manipulation of the argument drive_title leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. Other parameters might be affected as well.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-4024" + }, + { + "type": "WEB", + "url": "https://github.com/xingyu-wu4678/cve/issues/2" + }, + { + "type": "WEB", + "url": "https://itsourcecode.com" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.306378" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.306378" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.558616" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-74" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-28T15:15:47Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-56r4-vj3r-h3vv/GHSA-56r4-vj3r-h3vv.json b/advisories/unreviewed/2025/04/GHSA-56r4-vj3r-h3vv/GHSA-56r4-vj3r-h3vv.json index 533bac456df..42b62539bc7 100644 --- a/advisories/unreviewed/2025/04/GHSA-56r4-vj3r-h3vv/GHSA-56r4-vj3r-h3vv.json +++ b/advisories/unreviewed/2025/04/GHSA-56r4-vj3r-h3vv/GHSA-56r4-vj3r-h3vv.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-56r4-vj3r-h3vv", - "modified": "2025-04-20T03:50:41Z", + "modified": "2025-04-28T15:31:38Z", "published": "2025-04-20T03:50:41Z", "aliases": [ "CVE-2025-43919" @@ -26,6 +26,14 @@ { "type": "WEB", "url": "https://github.com/0NYX-MY7H/CVE-2025-43919" + }, + { + "type": "WEB", + "url": "https://github.com/cpanel/mailman2-python3" + }, + { + "type": "WEB", + "url": "https://www.openwall.com/lists/oss-security/2025/04/21/6" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/04/GHSA-65hw-c9g5-r8mm/GHSA-65hw-c9g5-r8mm.json b/advisories/unreviewed/2025/04/GHSA-65hw-c9g5-r8mm/GHSA-65hw-c9g5-r8mm.json new file mode 100644 index 00000000000..336bb09148d --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-65hw-c9g5-r8mm/GHSA-65hw-c9g5-r8mm.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-65hw-c9g5-r8mm", + "modified": "2025-04-28T15:31:41Z", + "published": "2025-04-28T15:31:41Z", + "aliases": [ + "CVE-2025-46661" + ], + "details": "IPW Systems Metazo through 8.1.3 allows unauthenticated Remote Code Execution because smartyValidator.php enables the attacker to provide template expressions, aka Server-Side Template-Injection. All instances have been patched by the Supplier.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-46661" + }, + { + "type": "WEB", + "url": "https://code-white.com/public-vulnerability-list" + }, + { + "type": "WEB", + "url": "https://www.ipwsystems.com" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-1336" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-28T13:15:24Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-82rf-96v8-v76f/GHSA-82rf-96v8-v76f.json b/advisories/unreviewed/2025/04/GHSA-82rf-96v8-v76f/GHSA-82rf-96v8-v76f.json new file mode 100644 index 00000000000..4746fa0a171 --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-82rf-96v8-v76f/GHSA-82rf-96v8-v76f.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-82rf-96v8-v76f", + "modified": "2025-04-28T15:31:41Z", + "published": "2025-04-28T15:31:41Z", + "aliases": [ + "CVE-2025-23377" + ], + "details": "Dell PowerProtect Data Manager Reporting, version(s) 19.17, 19.18 contain(s) an Improper Encoding or Escaping of Output vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability to inject arbitrary web script or html in reporting outputs.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:H/I:N/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23377" + }, + { + "type": "WEB", + "url": "https://www.dell.com/support/kbdoc/en-us/000311083/dsa-2025-062-security-update-for-dell-powerprotect-data-manager-multiple-security-vulnerabilities" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-116" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-28T15:15:45Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-983m-rvx3-7pf3/GHSA-983m-rvx3-7pf3.json b/advisories/unreviewed/2025/04/GHSA-983m-rvx3-7pf3/GHSA-983m-rvx3-7pf3.json new file mode 100644 index 00000000000..6aed2c39692 --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-983m-rvx3-7pf3/GHSA-983m-rvx3-7pf3.json @@ -0,0 +1,56 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-983m-rvx3-7pf3", + "modified": "2025-04-28T15:31:41Z", + "published": "2025-04-28T15:31:41Z", + "aliases": [ + "CVE-2025-4021" + ], + "details": "A vulnerability was found in code-projects Patient Record Management System 1.0. It has been classified as critical. This affects an unknown part of the file /edit_spatient.php. The manipulation of the argument ID leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-4021" + }, + { + "type": "WEB", + "url": "https://code-projects.org" + }, + { + "type": "WEB", + "url": "https://github.com/plj-sudo/cve/blob/main/README.md" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.306375" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.306375" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.558402" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-74" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-28T13:15:24Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-9wfx-p9gg-hp4f/GHSA-9wfx-p9gg-hp4f.json b/advisories/unreviewed/2025/04/GHSA-9wfx-p9gg-hp4f/GHSA-9wfx-p9gg-hp4f.json new file mode 100644 index 00000000000..50566bf76be --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-9wfx-p9gg-hp4f/GHSA-9wfx-p9gg-hp4f.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-9wfx-p9gg-hp4f", + "modified": "2025-04-28T15:31:41Z", + "published": "2025-04-28T15:31:41Z", + "aliases": [ + "CVE-2015-2079" + ], + "details": "Usermin 0.980 through 1.x before 1.660 allows uconfig_save.cgi sig_file_free remote code execution because it uses the two argument (not three argument) form of Perl open.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-2079" + }, + { + "type": "WEB", + "url": "https://code-white.com/blog/2015-05-cve-2015-2079-rce-usermin" + }, + { + "type": "WEB", + "url": "https://code-white.com/public-vulnerability-list" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-96" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-28T15:15:44Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-ch5j-3wwr-pjvh/GHSA-ch5j-3wwr-pjvh.json b/advisories/unreviewed/2025/04/GHSA-ch5j-3wwr-pjvh/GHSA-ch5j-3wwr-pjvh.json index 637e2057691..f9310b5d32d 100644 --- a/advisories/unreviewed/2025/04/GHSA-ch5j-3wwr-pjvh/GHSA-ch5j-3wwr-pjvh.json +++ b/advisories/unreviewed/2025/04/GHSA-ch5j-3wwr-pjvh/GHSA-ch5j-3wwr-pjvh.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-ch5j-3wwr-pjvh", - "modified": "2025-04-20T03:50:41Z", + "modified": "2025-04-28T15:31:39Z", "published": "2025-04-20T03:50:41Z", "aliases": [ "CVE-2025-43921" @@ -26,6 +26,14 @@ { "type": "WEB", "url": "https://github.com/0NYX-MY7H/CVE-2025-43921" + }, + { + "type": "WEB", + "url": "https://github.com/cpanel/mailman2-python3" + }, + { + "type": "WEB", + "url": "https://www.openwall.com/lists/oss-security/2025/04/21/6" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/04/GHSA-f9m5-54gv-845w/GHSA-f9m5-54gv-845w.json b/advisories/unreviewed/2025/04/GHSA-f9m5-54gv-845w/GHSA-f9m5-54gv-845w.json new file mode 100644 index 00000000000..f3bfa2f9146 --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-f9m5-54gv-845w/GHSA-f9m5-54gv-845w.json @@ -0,0 +1,56 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-f9m5-54gv-845w", + "modified": "2025-04-28T15:31:41Z", + "published": "2025-04-28T15:31:41Z", + "aliases": [ + "CVE-2025-4025" + ], + "details": "A vulnerability classified as critical was found in itsourcecode Placement Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /registration.php. The manipulation of the argument Name leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. Other parameters might be affected as well.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-4025" + }, + { + "type": "WEB", + "url": "https://github.com/xingyu-wu4678/cve/issues/3" + }, + { + "type": "WEB", + "url": "https://itsourcecode.com" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.306379" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.306379" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.558621" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-74" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-28T15:15:47Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-gw58-q7h6-r9qm/GHSA-gw58-q7h6-r9qm.json b/advisories/unreviewed/2025/04/GHSA-gw58-q7h6-r9qm/GHSA-gw58-q7h6-r9qm.json new file mode 100644 index 00000000000..b5c8b6ea88d --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-gw58-q7h6-r9qm/GHSA-gw58-q7h6-r9qm.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-gw58-q7h6-r9qm", + "modified": "2025-04-28T15:31:41Z", + "published": "2025-04-28T15:31:41Z", + "aliases": [ + "CVE-2025-23375" + ], + "details": "Dell PowerProtect Data Manager Reporting, version(s) 19.17, contain(s) an Incorrect Use of Privileged APIs vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of privileges.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23375" + }, + { + "type": "WEB", + "url": "https://www.dell.com/support/kbdoc/en-us/000311083/dsa-2025-062-security-update-for-dell-powerprotect-data-manager-multiple-security-vulnerabilities" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-648" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-28T15:15:45Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-j2xv-j3qm-qc85/GHSA-j2xv-j3qm-qc85.json b/advisories/unreviewed/2025/04/GHSA-j2xv-j3qm-qc85/GHSA-j2xv-j3qm-qc85.json new file mode 100644 index 00000000000..4507aa97f10 --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-j2xv-j3qm-qc85/GHSA-j2xv-j3qm-qc85.json @@ -0,0 +1,56 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-j2xv-j3qm-qc85", + "modified": "2025-04-28T15:31:41Z", + "published": "2025-04-28T15:31:41Z", + "aliases": [ + "CVE-2025-4023" + ], + "details": "A vulnerability was found in itsourcecode Placement Management System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /add_company.php. The manipulation of the argument Name leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. Other parameters might be affected as well.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-4023" + }, + { + "type": "WEB", + "url": "https://github.com/xingyu-wu4678/cve/issues/1" + }, + { + "type": "WEB", + "url": "https://itsourcecode.com" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.306377" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.306377" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.558546" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-74" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-28T14:15:23Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-mrq6-622v-vmqp/GHSA-mrq6-622v-vmqp.json b/advisories/unreviewed/2025/04/GHSA-mrq6-622v-vmqp/GHSA-mrq6-622v-vmqp.json new file mode 100644 index 00000000000..de0dc5fb7bd --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-mrq6-622v-vmqp/GHSA-mrq6-622v-vmqp.json @@ -0,0 +1,33 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-mrq6-622v-vmqp", + "modified": "2025-04-28T15:31:41Z", + "published": "2025-04-28T15:31:41Z", + "aliases": [ + "CVE-2025-25776" + ], + "details": "Cross-Site Scripting (XSS) vulnerability exists in the User Registration and User Profile features of Codeastro Bus Ticket Booking System v1.0 allows an attacker to execute arbitrary code into the Full Name and Address fields during user registration or profile editing.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-25776" + }, + { + "type": "WEB", + "url": "https://codeastro.com/bus-ticket-booking-system-in-php-codeigniter-with-source-code" + }, + { + "type": "WEB", + "url": "https://github.com/arunmodi/Vulnerability-Research/tree/main/CVE-2025-25776" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-28T15:15:45Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-rh6v-853j-mqjh/GHSA-rh6v-853j-mqjh.json b/advisories/unreviewed/2025/04/GHSA-rh6v-853j-mqjh/GHSA-rh6v-853j-mqjh.json index 37da85d3375..831618b37b1 100644 --- a/advisories/unreviewed/2025/04/GHSA-rh6v-853j-mqjh/GHSA-rh6v-853j-mqjh.json +++ b/advisories/unreviewed/2025/04/GHSA-rh6v-853j-mqjh/GHSA-rh6v-853j-mqjh.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-rh6v-853j-mqjh", - "modified": "2025-04-18T15:31:38Z", + "modified": "2025-04-28T15:31:37Z", "published": "2025-04-18T15:31:38Z", "aliases": [ "CVE-2025-39735" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\njfs: fix slab-out-of-bounds read in ea_get()\n\nDuring the \"size_check\" label in ea_get(), the code checks if the extended\nattribute list (xattr) size matches ea_size. If not, it logs\n\"ea_get: invalid extended attribute\" and calls print_hex_dump().\n\nHere, EALIST_SIZE(ea_buf->xattr) returns 4110417968, which exceeds\nINT_MAX (2,147,483,647). Then ea_size is clamped:\n\n\tint size = clamp_t(int, ea_size, 0, EALIST_SIZE(ea_buf->xattr));\n\nAlthough clamp_t aims to bound ea_size between 0 and 4110417968, the upper\nlimit is treated as an int, causing an overflow above 2^31 - 1. This leads\n\"size\" to wrap around and become negative (-184549328).\n\nThe \"size\" is then passed to print_hex_dump() (called \"len\" in\nprint_hex_dump()), it is passed as type size_t (an unsigned\ntype), this is then stored inside a variable called\n\"int remaining\", which is then assigned to \"int linelen\" which\nis then passed to hex_dump_to_buffer(). In print_hex_dump()\nthe for loop, iterates through 0 to len-1, where len is\n18446744073525002176, calling hex_dump_to_buffer()\non each iteration:\n\n\tfor (i = 0; i < len; i += rowsize) {\n\t\tlinelen = min(remaining, rowsize);\n\t\tremaining -= rowsize;\n\n\t\thex_dump_to_buffer(ptr + i, linelen, rowsize, groupsize,\n\t\t\t\t linebuf, sizeof(linebuf), ascii);\n\n\t\t...\n\t}\n\nThe expected stopping condition (i < len) is effectively broken\nsince len is corrupted and very large. This eventually leads to\nthe \"ptr+i\" being passed to hex_dump_to_buffer() to get closer\nto the end of the actual bounds of \"ptr\", eventually an out of\nbounds access is done in hex_dump_to_buffer() in the following\nfor loop:\n\n\tfor (j = 0; j < len; j++) {\n\t\t\tif (linebuflen < lx + 2)\n\t\t\t\tgoto overflow2;\n\t\t\tch = ptr[j];\n\t\t...\n\t}\n\nTo fix this we should validate \"EALIST_SIZE(ea_buf->xattr)\"\nbefore it is utilised.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -52,8 +57,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-125" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-04-18T07:15:44Z" diff --git a/advisories/unreviewed/2025/04/GHSA-w583-vcj4-hhr9/GHSA-w583-vcj4-hhr9.json b/advisories/unreviewed/2025/04/GHSA-w583-vcj4-hhr9/GHSA-w583-vcj4-hhr9.json new file mode 100644 index 00000000000..b185edb7280 --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-w583-vcj4-hhr9/GHSA-w583-vcj4-hhr9.json @@ -0,0 +1,56 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-w583-vcj4-hhr9", + "modified": "2025-04-28T15:31:41Z", + "published": "2025-04-28T15:31:41Z", + "aliases": [ + "CVE-2025-4020" + ], + "details": "A vulnerability was found in PHPGurukul Old Age Home Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /contact.php. The manipulation of the argument fname leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. Other parameters might be affected as well.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-4020" + }, + { + "type": "WEB", + "url": "https://github.com/Q3qc1n/myCVE/issues/1" + }, + { + "type": "WEB", + "url": "https://phpgurukul.com" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.306374" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.306374" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.558365" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-74" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-28T13:15:24Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-x238-v9f9-93g8/GHSA-x238-v9f9-93g8.json b/advisories/unreviewed/2025/04/GHSA-x238-v9f9-93g8/GHSA-x238-v9f9-93g8.json new file mode 100644 index 00000000000..dc11c85080c --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-x238-v9f9-93g8/GHSA-x238-v9f9-93g8.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-x238-v9f9-93g8", + "modified": "2025-04-28T15:31:41Z", + "published": "2025-04-28T15:31:41Z", + "aliases": [ + "CVE-2025-23376" + ], + "details": "Dell PowerProtect Data Manager Reporting, version(s) 19.16, 19.17, 19.18, contain(s) an Improper Neutralization of Special Elements Used in a Template Engine vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to information disclosure.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23376" + }, + { + "type": "WEB", + "url": "https://www.dell.com/support/kbdoc/en-us/000311083/dsa-2025-062-security-update-for-dell-powerprotect-data-manager-multiple-security-vulnerabilities" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-1336" + ], + "severity": "LOW", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-28T15:15:45Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-x86q-vgv7-r385/GHSA-x86q-vgv7-r385.json b/advisories/unreviewed/2025/04/GHSA-x86q-vgv7-r385/GHSA-x86q-vgv7-r385.json new file mode 100644 index 00000000000..e67c2b5edaf --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-x86q-vgv7-r385/GHSA-x86q-vgv7-r385.json @@ -0,0 +1,56 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-x86q-vgv7-r385", + "modified": "2025-04-28T15:31:41Z", + "published": "2025-04-28T15:31:41Z", + "aliases": [ + "CVE-2025-32472" + ], + "details": "The multiScan and picoScan are vulnerable to a denial-of-service (DoS) attack. A remote attacker can exploit this vulnerability by conducting a Slowloris-type attack, causing the web page to become unresponsive.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-32472" + }, + { + "type": "WEB", + "url": "https://cdn.sick.com/media/docs/1/11/411/Special_information_CYBERSECURITY_BY_SICK_en_IM0084411.PDF" + }, + { + "type": "WEB", + "url": "https://sick.com/psirt" + }, + { + "type": "WEB", + "url": "https://www.cisa.gov/resources-tools/resources/ics-recommended-practices" + }, + { + "type": "WEB", + "url": "https://www.first.org/cvss/calculator/3.1" + }, + { + "type": "WEB", + "url": "https://www.sick.com/.well-known/csaf/white/2025/sca-2025-0006.json" + }, + { + "type": "WEB", + "url": "https://www.sick.com/.well-known/csaf/white/2025/sca-2025-0006.pdf" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-400" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-28T13:15:23Z" + } +} \ No newline at end of file