diff --git a/advisories/unreviewed/2025/04/GHSA-22mj-r7hq-f9h2/GHSA-22mj-r7hq-f9h2.json b/advisories/unreviewed/2025/04/GHSA-22mj-r7hq-f9h2/GHSA-22mj-r7hq-f9h2.json new file mode 100644 index 00000000000..7059318ff7d --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-22mj-r7hq-f9h2/GHSA-22mj-r7hq-f9h2.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-22mj-r7hq-f9h2", + "modified": "2025-04-27T21:34:46Z", + "published": "2025-04-27T21:34:46Z", + "aliases": [ + "CVE-2025-2866" + ], + "details": "Improper Verification of Cryptographic Signature vulnerability in LibreOffice allows PDF Signature Spoofing by Improper Validation.\n\n\n\n\nIn the affected versions of LibreOffice a flaw in the verification code for adbe.pkcs7.sha1 signatures could cause invalid signatures to be accepted as valid\n\n\n\n\nThis issue affects LibreOffice: from 24.8 before < 24.8.6, from 25.2 before < 25.2.2.", + "severity": [ + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:P/VC:L/VI:N/VA:N/SC:L/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-2866" + }, + { + "type": "WEB", + "url": "https://www.libreoffice.org/about-us/security/advisories/cve-2025-2866" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-347" + ], + "severity": "LOW", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-27T19:15:15Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-2qc3-w5w6-7r8m/GHSA-2qc3-w5w6-7r8m.json b/advisories/unreviewed/2025/04/GHSA-2qc3-w5w6-7r8m/GHSA-2qc3-w5w6-7r8m.json new file mode 100644 index 00000000000..551abff7722 --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-2qc3-w5w6-7r8m/GHSA-2qc3-w5w6-7r8m.json @@ -0,0 +1,56 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2qc3-w5w6-7r8m", + "modified": "2025-04-27T21:34:47Z", + "published": "2025-04-27T21:34:47Z", + "aliases": [ + "CVE-2025-46688" + ], + "details": "quickjs-ng through 0.9.0 has an incorrect size calculation in JS_ReadBigInt for a BigInt, leading to a heap-based buffer overflow. QuickJS before 2025-04-26 is also affected.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:L/I:L/A:L" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-46688" + }, + { + "type": "WEB", + "url": "https://github.com/bellard/quickjs/issues/399" + }, + { + "type": "WEB", + "url": "https://github.com/quickjs-ng/quickjs/issues/1018" + }, + { + "type": "WEB", + "url": "https://github.com/quickjs-ng/quickjs/pull/1020" + }, + { + "type": "WEB", + "url": "https://github.com/bellard/quickjs/commit/1eb05e44fad89daafa8ee3eb74b8520b4a37ec9a" + }, + { + "type": "WEB", + "url": "https://github.com/quickjs-ng/quickjs/commit/28fa43d3ddff2c1ba91b6e3a788b2d7ba82d1465" + }, + { + "type": "WEB", + "url": "https://bellard.org/quickjs/Changelog" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-131" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-27T20:15:15Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-37pq-893f-g7q5/GHSA-37pq-893f-g7q5.json b/advisories/unreviewed/2025/04/GHSA-37pq-893f-g7q5/GHSA-37pq-893f-g7q5.json new file mode 100644 index 00000000000..cc1929ff949 --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-37pq-893f-g7q5/GHSA-37pq-893f-g7q5.json @@ -0,0 +1,52 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-37pq-893f-g7q5", + "modified": "2025-04-27T21:34:47Z", + "published": "2025-04-27T21:34:47Z", + "aliases": [ + "CVE-2025-3984" + ], + "details": "A vulnerability was found in Apereo CAS 5.2.6 and classified as critical. Affected by this issue is the function saveService of the file cas-5.2.6\\webapp-mgmt\\cas-management-webapp-support\\src\\main\\java\\org\\apereo\\cas\\mgmt\\services\\web\\RegisteredServiceSimpleFormController.java of the component Groovy Code Handler. The manipulation leads to code injection. The attack may be launched remotely. The complexity of an attack is rather high. The exploitation is known to be difficult. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:H/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-3984" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.306320" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.306320" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.557100" + }, + { + "type": "WEB", + "url": "https://wx.mail.qq.com/s?k=ilW4ixcMaVgGU49Dij" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-74" + ], + "severity": "LOW", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-27T20:15:15Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-42jq-cg85-cj5g/GHSA-42jq-cg85-cj5g.json b/advisories/unreviewed/2025/04/GHSA-42jq-cg85-cj5g/GHSA-42jq-cg85-cj5g.json new file mode 100644 index 00000000000..9bf5b9c4c44 --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-42jq-cg85-cj5g/GHSA-42jq-cg85-cj5g.json @@ -0,0 +1,52 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-42jq-cg85-cj5g", + "modified": "2025-04-27T21:34:47Z", + "published": "2025-04-27T21:34:47Z", + "aliases": [ + "CVE-2025-3983" + ], + "details": "A vulnerability has been found in AMTT Hotel Broadband Operation System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /manager/system/nlog_down.php. The manipulation of the argument ProtocolType leads to command injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. Other parameters might be affected as well. The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-3983" + }, + { + "type": "WEB", + "url": "https://github.com/MichaelZhuang521/cve/blob/main/rce.md" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.306319" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.306319" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.556223" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-74" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-27T20:15:15Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-6rf5-gh7p-5vg7/GHSA-6rf5-gh7p-5vg7.json b/advisories/unreviewed/2025/04/GHSA-6rf5-gh7p-5vg7/GHSA-6rf5-gh7p-5vg7.json new file mode 100644 index 00000000000..33a478c2f0c --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-6rf5-gh7p-5vg7/GHSA-6rf5-gh7p-5vg7.json @@ -0,0 +1,52 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-6rf5-gh7p-5vg7", + "modified": "2025-04-27T21:34:47Z", + "published": "2025-04-27T21:34:46Z", + "aliases": [ + "CVE-2025-3982" + ], + "details": "A vulnerability, which was classified as problematic, was found in nortikin Sverchok 1.3.0. Affected is the function SvSetPropNodeMK2 of the file sverchok/nodes/object_nodes/getsetprop_mk2.py of the component Set Property Mk2 Node. The manipulation leads to improperly controlled modification of object prototype attributes ('prototype pollution'). It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-3982" + }, + { + "type": "WEB", + "url": "https://gist.github.com/superboy-zjc/a31b8ea7466f91b437598297bf5cbce8" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.306318" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.306318" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.557411" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-94" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-27T19:15:15Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-8rx4-fxq5-vj4v/GHSA-8rx4-fxq5-vj4v.json b/advisories/unreviewed/2025/04/GHSA-8rx4-fxq5-vj4v/GHSA-8rx4-fxq5-vj4v.json new file mode 100644 index 00000000000..13e526605a8 --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-8rx4-fxq5-vj4v/GHSA-8rx4-fxq5-vj4v.json @@ -0,0 +1,52 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-8rx4-fxq5-vj4v", + "modified": "2025-04-27T21:34:48Z", + "published": "2025-04-27T21:34:48Z", + "aliases": [ + "CVE-2025-3985" + ], + "details": "A vulnerability was found in Apereo CAS 5.2.6. It has been classified as problematic. This affects the function ResponseEntity of the file cas-5.2.6\\webapp-mgmt\\cas-management-webapp-support\\src\\main\\java\\org\\apereo\\cas\\mgmt\\services\\web\\ManageRegisteredServicesMultiActionController.java. The manipulation of the argument Query leads to inefficient regular expression complexity. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-3985" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.306321" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.306321" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.557110" + }, + { + "type": "WEB", + "url": "https://wx.mail.qq.com/s?k=lzDuxVkSRXUZ0bwZEG" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-400" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-27T21:15:16Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-hrc5-3jpv-g9x2/GHSA-hrc5-3jpv-g9x2.json b/advisories/unreviewed/2025/04/GHSA-hrc5-3jpv-g9x2/GHSA-hrc5-3jpv-g9x2.json new file mode 100644 index 00000000000..5c23a9e6f0a --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-hrc5-3jpv-g9x2/GHSA-hrc5-3jpv-g9x2.json @@ -0,0 +1,56 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-hrc5-3jpv-g9x2", + "modified": "2025-04-27T21:34:47Z", + "published": "2025-04-27T21:34:47Z", + "aliases": [ + "CVE-2025-46687" + ], + "details": "quickjs-ng through 0.9.0 has a missing length check in JS_ReadString for a string, leading to a heap-based buffer overflow. QuickJS before 2025-04-26 is also affected.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:L/I:L/A:L" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-46687" + }, + { + "type": "WEB", + "url": "https://github.com/bellard/quickjs/issues/399" + }, + { + "type": "WEB", + "url": "https://github.com/quickjs-ng/quickjs/issues/1018" + }, + { + "type": "WEB", + "url": "https://github.com/quickjs-ng/quickjs/pull/1020" + }, + { + "type": "WEB", + "url": "https://github.com/bellard/quickjs/commit/1eb05e44fad89daafa8ee3eb74b8520b4a37ec9a" + }, + { + "type": "WEB", + "url": "https://github.com/quickjs-ng/quickjs/commit/28fa43d3ddff2c1ba91b6e3a788b2d7ba82d1465" + }, + { + "type": "WEB", + "url": "https://bellard.org/quickjs/Changelog" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-770" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-27T20:15:15Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-mvwq-hcrj-f5x9/GHSA-mvwq-hcrj-f5x9.json b/advisories/unreviewed/2025/04/GHSA-mvwq-hcrj-f5x9/GHSA-mvwq-hcrj-f5x9.json new file mode 100644 index 00000000000..a74a1a0116b --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-mvwq-hcrj-f5x9/GHSA-mvwq-hcrj-f5x9.json @@ -0,0 +1,52 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-mvwq-hcrj-f5x9", + "modified": "2025-04-27T21:34:48Z", + "published": "2025-04-27T21:34:48Z", + "aliases": [ + "CVE-2025-3986" + ], + "details": "A vulnerability was found in Apereo CAS 5.2.6. It has been declared as problematic. This vulnerability affects unknown code of the file cas-5.2.6\\core\\cas-server-core-configuration-metadata-repository\\src\\main\\java\\org\\apereo\\cas\\metadata\\rest\\CasConfigurationMetadataServerController.java. The manipulation of the argument Name leads to inefficient regular expression complexity. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-3986" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.306322" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.306322" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.557473" + }, + { + "type": "WEB", + "url": "https://wx.mail.qq.com/s?k=rk-m8GwRMVMcOjBY1a" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-400" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-27T21:15:16Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-rhjm-ww6w-hrx2/GHSA-rhjm-ww6w-hrx2.json b/advisories/unreviewed/2025/04/GHSA-rhjm-ww6w-hrx2/GHSA-rhjm-ww6w-hrx2.json new file mode 100644 index 00000000000..56c04262907 --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-rhjm-ww6w-hrx2/GHSA-rhjm-ww6w-hrx2.json @@ -0,0 +1,48 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-rhjm-ww6w-hrx2", + "modified": "2025-04-27T21:34:46Z", + "published": "2025-04-27T21:34:46Z", + "aliases": [ + "CVE-2025-3981" + ], + "details": "A vulnerability, which was classified as problematic, has been found in wowjoy 浙江湖州华卓信息科技有限公司 Internet Doctor Workstation System 1.0. This issue affects some unknown processing of the file /v1/prescription/details/. The manipulation leads to improper authorization. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-3981" + }, + { + "type": "WEB", + "url": "https://github.com/38279/3/issues/1" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.306317" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.306317" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-266" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-27T19:15:15Z" + } +} \ No newline at end of file