diff --git a/advisories/unreviewed/2025/03/GHSA-4p6w-747g-444c/GHSA-4p6w-747g-444c.json b/advisories/unreviewed/2025/03/GHSA-4p6w-747g-444c/GHSA-4p6w-747g-444c.json new file mode 100644 index 00000000000..679c71a5ee6 --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-4p6w-747g-444c/GHSA-4p6w-747g-444c.json @@ -0,0 +1,56 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-4p6w-747g-444c", + "modified": "2025-03-25T12:30:30Z", + "published": "2025-03-25T12:30:30Z", + "aliases": [ + "CVE-2025-2757" + ], + "details": "A vulnerability classified as critical was found in Open Asset Import Library Assimp 5.4.3. This vulnerability affects the function AI_MD5_PARSE_STRING_IN_QUOTATION of the file code/AssetLib/MD5/MD5Parser.cpp of the component MD5 File Handler. The manipulation of the argument data leads to heap-based buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-2757" + }, + { + "type": "WEB", + "url": "https://github.com/assimp/assimp/issues/6019" + }, + { + "type": "WEB", + "url": "https://github.com/assimp/assimp/issues/6019#issue-2877376386" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.300862" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.300862" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.517817" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-119" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-25T10:15:16Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-54c2-9q4c-hr8r/GHSA-54c2-9q4c-hr8r.json b/advisories/unreviewed/2025/03/GHSA-54c2-9q4c-hr8r/GHSA-54c2-9q4c-hr8r.json new file mode 100644 index 00000000000..c166112236e --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-54c2-9q4c-hr8r/GHSA-54c2-9q4c-hr8r.json @@ -0,0 +1,52 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-54c2-9q4c-hr8r", + "modified": "2025-03-25T12:30:29Z", + "published": "2025-03-25T12:30:29Z", + "aliases": [ + "CVE-2025-2542" + ], + "details": "The Your Simple SVG Support plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 1.0.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Author-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses the SVG file.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-2542" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/your-simple-svg-support/tags/1.0.0/your-simple-svg-support.php#L16" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/your-simple-svg-support/tags/1.0.0/your-simple-svg-support.php#L20" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset/3259951" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/your-simple-svg-support/#developers" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/1aa9d836-4e13-4c6a-b1e6-a8f984805842?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-25T10:15:16Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-7xc7-3prm-fpx6/GHSA-7xc7-3prm-fpx6.json b/advisories/unreviewed/2025/03/GHSA-7xc7-3prm-fpx6/GHSA-7xc7-3prm-fpx6.json new file mode 100644 index 00000000000..0b9a33a7a9c --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-7xc7-3prm-fpx6/GHSA-7xc7-3prm-fpx6.json @@ -0,0 +1,48 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-7xc7-3prm-fpx6", + "modified": "2025-03-25T12:30:30Z", + "published": "2025-03-25T12:30:30Z", + "aliases": [ + "CVE-2025-2109" + ], + "details": "The WP Compress – Instant Performance & Speed Optimization plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 6.30.15 via the init() function. This makes it possible for unauthenticated attackers to make web requests to arbitrary locations originating from the web application and can be used to query information from internal services.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:N/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-2109" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/wp-compress-image-optimizer/tags/6.30.15/wp-compress-core.php#L994" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset/3254259" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/wp-compress-image-optimizer/#developers" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/10b9d703-de9d-472a-bdfb-bc9a41bf375e?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-918" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-25T11:15:36Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-92pj-xr28-j7xr/GHSA-92pj-xr28-j7xr.json b/advisories/unreviewed/2025/03/GHSA-92pj-xr28-j7xr/GHSA-92pj-xr28-j7xr.json new file mode 100644 index 00000000000..2b29ed2a52c --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-92pj-xr28-j7xr/GHSA-92pj-xr28-j7xr.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-92pj-xr28-j7xr", + "modified": "2025-03-25T12:30:29Z", + "published": "2025-03-25T12:30:29Z", + "aliases": [ + "CVE-2024-53679" + ], + "details": "Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Apache VCL in the User Lookup form. A user with sufficient rights to be able to view this part of the site can craft a URL or be tricked in to clicking a URL that will give a specified user elevated rights.\n\n\n\nThis issue affects all versions of Apache VCL through 2.5.1.\n\n\n\nUsers are recommended to upgrade to version 2.5.2, which fixes the issue.", + "severity": [ + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:M/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-53679" + }, + { + "type": "WEB", + "url": "https://lists.apache.org/thread/bq5vs0hndt9cz9b6rpfr5on1nd4qrmyr" + }, + { + "type": "WEB", + "url": "http://www.openwall.com/lists/oss-security/2025/03/24/2" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-25T10:15:16Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-cvwm-xr4j-jf5j/GHSA-cvwm-xr4j-jf5j.json b/advisories/unreviewed/2025/03/GHSA-cvwm-xr4j-jf5j/GHSA-cvwm-xr4j-jf5j.json new file mode 100644 index 00000000000..7eef01d8541 --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-cvwm-xr4j-jf5j/GHSA-cvwm-xr4j-jf5j.json @@ -0,0 +1,56 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-cvwm-xr4j-jf5j", + "modified": "2025-03-25T12:30:30Z", + "published": "2025-03-25T12:30:30Z", + "aliases": [ + "CVE-2025-2756" + ], + "details": "A vulnerability classified as critical has been found in Open Asset Import Library Assimp 5.4.3. This affects the function Assimp::AC3DImporter::ConvertObjectSection of the file code/AssetLib/AC/ACLoader.cpp of the component AC3D File Handler. The manipulation of the argument tmp leads to heap-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-2756" + }, + { + "type": "WEB", + "url": "https://github.com/assimp/assimp/issues/6018" + }, + { + "type": "WEB", + "url": "https://github.com/assimp/assimp/issues/6018#issue-2877375815" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.300861" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.300861" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.517790" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-119" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-25T10:15:16Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-fwrx-wppx-25wm/GHSA-fwrx-wppx-25wm.json b/advisories/unreviewed/2025/03/GHSA-fwrx-wppx-25wm/GHSA-fwrx-wppx-25wm.json new file mode 100644 index 00000000000..8fe70792255 --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-fwrx-wppx-25wm/GHSA-fwrx-wppx-25wm.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-fwrx-wppx-25wm", + "modified": "2025-03-25T12:30:29Z", + "published": "2025-03-25T12:30:29Z", + "aliases": [ + "CVE-2024-53678" + ], + "details": "Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Apache VCL. Users can modify form data submitted when requesting a new Block Allocation such that a SELECT SQL statement is modified. The data returned by the SELECT statement is not viewable by the attacker.\n\nThis issue affects all versions of Apache VCL from 2.2 through 2.5.1.\n\nUsers are recommended to upgrade to version 2.5.2, which fixes the issue.", + "severity": [ + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:M/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-53678" + }, + { + "type": "WEB", + "url": "https://lists.apache.org/thread/2bmjnzgjwwq59nv6xw44w0tnpz4k4pf4" + }, + { + "type": "WEB", + "url": "http://www.openwall.com/lists/oss-security/2025/03/24/1" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-89" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-25T10:15:13Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-hqqg-2mp2-77pg/GHSA-hqqg-2mp2-77pg.json b/advisories/unreviewed/2025/03/GHSA-hqqg-2mp2-77pg/GHSA-hqqg-2mp2-77pg.json new file mode 100644 index 00000000000..9d21a2a2548 --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-hqqg-2mp2-77pg/GHSA-hqqg-2mp2-77pg.json @@ -0,0 +1,48 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-hqqg-2mp2-77pg", + "modified": "2025-03-25T12:30:30Z", + "published": "2025-03-25T12:30:30Z", + "aliases": [ + "CVE-2025-2635" + ], + "details": "The Digital License Manager plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of remove_query_arg() function without appropriate escaping on the URL in all versions up to, and including, 1.7.3. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-2635" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/digital-license-manager/trunk/includes/ListTables/Activations.php#L476" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset/3260900" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/digital-license-manager/#developers" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/a266e003-3a0a-4832-a88b-60c2a26b387c?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-25T10:15:16Z" + } +} \ No newline at end of file