From 1b6e4e55e0ccea8eb4338a1f166d93ecee62226c Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Mon, 10 Mar 2025 18:32:58 +0000 Subject: [PATCH] Advisory Database Sync --- .../GHSA-rq4w-cjrr-h8w8.json | 6 ++- .../GHSA-2fh4-gpch-vqv4.json | 4 +- .../GHSA-f93w-237m-4cjv.json | 2 +- .../GHSA-33v3-2qxj-vgv5.json | 11 +++-- .../GHSA-3gvj-5493-c96f.json | 11 +++-- .../GHSA-3pmw-h7mc-vxxq.json | 19 +++++++-- .../GHSA-5cwm-4qj6-4xfm.json | 4 +- .../GHSA-689f-q6h8-4mc5.json | 4 +- .../GHSA-6q28-45j9-263v.json | 11 +++-- .../GHSA-7qh2-q67g-xhj2.json | 4 +- .../GHSA-7rx6-7rmx-f3hf.json | 11 +++-- .../GHSA-9qq5-g8qh-67pf.json | 4 +- .../GHSA-chmj-69q7-qhgf.json | 11 +++-- .../GHSA-fx8f-q2j4-9jxv.json | 4 +- .../GHSA-rw64-46h7-gmc8.json | 11 +++-- .../GHSA-xhm6-wpwj-qm56.json | 15 +++++-- .../GHSA-2v9r-f76x-xq4j.json | 3 +- .../GHSA-783x-27w3-5wff.json | 3 +- .../GHSA-9j9f-jrvv-hxhr.json | 3 +- .../GHSA-p862-jjqx-6v8x.json | 3 +- .../GHSA-p83p-59g7-3x89.json | 2 +- .../GHSA-q3rr-g46f-jgqr.json | 6 ++- .../GHSA-3j87-859p-q82m.json | 33 +++++++++++++++ .../GHSA-3ww5-qm6q-xhcg.json | 11 +++-- .../GHSA-4pcp-h2jw-cp6p.json | 36 +++++++++++++++++ .../GHSA-546h-56qp-8jmw.json | 6 ++- .../GHSA-6m5m-3phv-f8fm.json | 15 +++++-- .../GHSA-83qj-6fr2-vhqg.json | 31 ++++++++++++++ .../GHSA-83wp-f5c3-hqqr.json | 6 ++- .../GHSA-9qjm-v45h-7fxq.json | 33 +++++++++++++++ .../GHSA-c3q9-q986-vrwh.json | 36 +++++++++++++++++ .../GHSA-cjhm-452j-46h2.json | 36 +++++++++++++++++ .../GHSA-h337-24ff-jhf6.json | 11 +++-- .../GHSA-h4r5-2pfh-pcwp.json | 40 +++++++++++++++++++ .../GHSA-v2mw-5mch-w8c5.json | 29 ++++++++++++++ .../GHSA-x2pr-grpc-jfvm.json | 40 +++++++++++++++++++ 36 files changed, 457 insertions(+), 58 deletions(-) create mode 100644 advisories/unreviewed/2025/03/GHSA-3j87-859p-q82m/GHSA-3j87-859p-q82m.json create mode 100644 advisories/unreviewed/2025/03/GHSA-4pcp-h2jw-cp6p/GHSA-4pcp-h2jw-cp6p.json create mode 100644 advisories/unreviewed/2025/03/GHSA-83qj-6fr2-vhqg/GHSA-83qj-6fr2-vhqg.json create mode 100644 advisories/unreviewed/2025/03/GHSA-9qjm-v45h-7fxq/GHSA-9qjm-v45h-7fxq.json create mode 100644 advisories/unreviewed/2025/03/GHSA-c3q9-q986-vrwh/GHSA-c3q9-q986-vrwh.json create mode 100644 advisories/unreviewed/2025/03/GHSA-cjhm-452j-46h2/GHSA-cjhm-452j-46h2.json create mode 100644 advisories/unreviewed/2025/03/GHSA-h4r5-2pfh-pcwp/GHSA-h4r5-2pfh-pcwp.json create mode 100644 advisories/unreviewed/2025/03/GHSA-v2mw-5mch-w8c5/GHSA-v2mw-5mch-w8c5.json create mode 100644 advisories/unreviewed/2025/03/GHSA-x2pr-grpc-jfvm/GHSA-x2pr-grpc-jfvm.json diff --git a/advisories/github-reviewed/2025/02/GHSA-rq4w-cjrr-h8w8/GHSA-rq4w-cjrr-h8w8.json b/advisories/github-reviewed/2025/02/GHSA-rq4w-cjrr-h8w8/GHSA-rq4w-cjrr-h8w8.json index c8224658e2d..673bbe78ade 100644 --- a/advisories/github-reviewed/2025/02/GHSA-rq4w-cjrr-h8w8/GHSA-rq4w-cjrr-h8w8.json +++ b/advisories/github-reviewed/2025/02/GHSA-rq4w-cjrr-h8w8/GHSA-rq4w-cjrr-h8w8.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-rq4w-cjrr-h8w8", - "modified": "2025-02-20T20:23:38Z", + "modified": "2025-03-10T18:31:56Z", "published": "2025-02-17T15:32:01Z", "aliases": [ "CVE-2025-1391" @@ -44,6 +44,10 @@ "type": "WEB", "url": "https://github.com/keycloak/keycloak/commit/5aa2b4c75bb474303ab807017582bc01a9f7e378" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2025:2545" + }, { "type": "WEB", "url": "https://access.redhat.com/security/cve/CVE-2025-1391" diff --git a/advisories/github-reviewed/2025/03/GHSA-2fh4-gpch-vqv4/GHSA-2fh4-gpch-vqv4.json b/advisories/github-reviewed/2025/03/GHSA-2fh4-gpch-vqv4/GHSA-2fh4-gpch-vqv4.json index 5c8c78887b9..4cac0aaf2a0 100644 --- a/advisories/github-reviewed/2025/03/GHSA-2fh4-gpch-vqv4/GHSA-2fh4-gpch-vqv4.json +++ b/advisories/github-reviewed/2025/03/GHSA-2fh4-gpch-vqv4/GHSA-2fh4-gpch-vqv4.json @@ -1,11 +1,11 @@ { "schema_version": "1.4.0", "id": "GHSA-2fh4-gpch-vqv4", - "modified": "2025-03-10T18:26:10Z", + "modified": "2025-03-10T18:31:03Z", "published": "2025-03-10T12:30:56Z", "withdrawn": "2025-03-10T18:26:09Z", "aliases": [], - "summary": "Zip Flag Bit Exploit Crashes Picklescan But Not PyTorch", + "summary": "Duplicate Advisory: Zip Flag Bit Exploit Crashes Picklescan But Not PyTorch", "details": "## Duplicate Advisory\nThis advisory has been withdrawn because it is a duplicate of GHSA-w8jq-xcqf-f792. This link is maintained to preserve external references.\n\n## Original Description\npicklescan before 0.0.23 fails to detect malicious pickle files inside PyTorch model archives when certain ZIP file flag bits are modified. By flipping specific bits in the ZIP file headers, an attacker can embed malicious pickle files that remain undetected by PickleScan while still being successfully loaded by PyTorch's torch.load(). This can lead to arbitrary code execution when loading a compromised model.", "severity": [ { diff --git a/advisories/unreviewed/2023/02/GHSA-f93w-237m-4cjv/GHSA-f93w-237m-4cjv.json b/advisories/unreviewed/2023/02/GHSA-f93w-237m-4cjv/GHSA-f93w-237m-4cjv.json index 39ed8c2c6a1..08eee08ae5c 100644 --- a/advisories/unreviewed/2023/02/GHSA-f93w-237m-4cjv/GHSA-f93w-237m-4cjv.json +++ b/advisories/unreviewed/2023/02/GHSA-f93w-237m-4cjv/GHSA-f93w-237m-4cjv.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-f93w-237m-4cjv", - "modified": "2023-03-04T06:30:21Z", + "modified": "2025-03-10T18:31:49Z", "published": "2023-02-27T18:32:10Z", "aliases": [ "CVE-2023-26758" diff --git a/advisories/unreviewed/2024/03/GHSA-33v3-2qxj-vgv5/GHSA-33v3-2qxj-vgv5.json b/advisories/unreviewed/2024/03/GHSA-33v3-2qxj-vgv5/GHSA-33v3-2qxj-vgv5.json index c8d2213b61c..181fd5e9e6b 100644 --- a/advisories/unreviewed/2024/03/GHSA-33v3-2qxj-vgv5/GHSA-33v3-2qxj-vgv5.json +++ b/advisories/unreviewed/2024/03/GHSA-33v3-2qxj-vgv5/GHSA-33v3-2qxj-vgv5.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-33v3-2qxj-vgv5", - "modified": "2024-06-27T12:30:44Z", + "modified": "2025-03-10T18:31:50Z", "published": "2024-03-18T12:30:35Z", "aliases": [ "CVE-2024-26636" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nllc: make llc_ui_sendmsg() more robust against bonding changes\n\nsyzbot was able to trick llc_ui_sendmsg(), allocating an skb with no\nheadroom, but subsequently trying to push 14 bytes of Ethernet header [1]\n\nLike some others, llc_ui_sendmsg() releases the socket lock before\ncalling sock_alloc_send_skb().\nThen it acquires it again, but does not redo all the sanity checks\nthat were performed.\n\nThis fix:\n\n- Uses LL_RESERVED_SPACE() to reserve space.\n- Check all conditions again after socket lock is held again.\n- Do not account Ethernet header for mtu limitation.\n\n[1]\n\nskbuff: skb_under_panic: text:ffff800088baa334 len:1514 put:14 head:ffff0000c9c37000 data:ffff0000c9c36ff2 tail:0x5dc end:0x6c0 dev:bond0\n\n kernel BUG at net/core/skbuff.c:193 !\nInternal error: Oops - BUG: 00000000f2000800 [#1] PREEMPT SMP\nModules linked in:\nCPU: 0 PID: 6875 Comm: syz-executor.0 Not tainted 6.7.0-rc8-syzkaller-00101-g0802e17d9aca-dirty #0\nHardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 11/17/2023\npstate: 60400005 (nZCv daif +PAN -UAO -TCO -DIT -SSBS BTYPE=--)\n pc : skb_panic net/core/skbuff.c:189 [inline]\n pc : skb_under_panic+0x13c/0x140 net/core/skbuff.c:203\n lr : skb_panic net/core/skbuff.c:189 [inline]\n lr : skb_under_panic+0x13c/0x140 net/core/skbuff.c:203\nsp : ffff800096f97000\nx29: ffff800096f97010 x28: ffff80008cc8d668 x27: dfff800000000000\nx26: ffff0000cb970c90 x25: 00000000000005dc x24: ffff0000c9c36ff2\nx23: ffff0000c9c37000 x22: 00000000000005ea x21: 00000000000006c0\nx20: 000000000000000e x19: ffff800088baa334 x18: 1fffe000368261ce\nx17: ffff80008e4ed000 x16: ffff80008a8310f8 x15: 0000000000000001\nx14: 1ffff00012df2d58 x13: 0000000000000000 x12: 0000000000000000\nx11: 0000000000000001 x10: 0000000000ff0100 x9 : e28a51f1087e8400\nx8 : e28a51f1087e8400 x7 : ffff80008028f8d0 x6 : 0000000000000000\nx5 : 0000000000000001 x4 : 0000000000000001 x3 : ffff800082b78714\nx2 : 0000000000000001 x1 : 0000000100000000 x0 : 0000000000000089\nCall trace:\n skb_panic net/core/skbuff.c:189 [inline]\n skb_under_panic+0x13c/0x140 net/core/skbuff.c:203\n skb_push+0xf0/0x108 net/core/skbuff.c:2451\n eth_header+0x44/0x1f8 net/ethernet/eth.c:83\n dev_hard_header include/linux/netdevice.h:3188 [inline]\n llc_mac_hdr_init+0x110/0x17c net/llc/llc_output.c:33\n llc_sap_action_send_xid_c+0x170/0x344 net/llc/llc_s_ac.c:85\n llc_exec_sap_trans_actions net/llc/llc_sap.c:153 [inline]\n llc_sap_next_state net/llc/llc_sap.c:182 [inline]\n llc_sap_state_process+0x1ec/0x774 net/llc/llc_sap.c:209\n llc_build_and_send_xid_pkt+0x12c/0x1c0 net/llc/llc_sap.c:270\n llc_ui_sendmsg+0x7bc/0xb1c net/llc/af_llc.c:997\n sock_sendmsg_nosec net/socket.c:730 [inline]\n __sock_sendmsg net/socket.c:745 [inline]\n sock_sendmsg+0x194/0x274 net/socket.c:767\n splice_to_socket+0x7cc/0xd58 fs/splice.c:881\n do_splice_from fs/splice.c:933 [inline]\n direct_splice_actor+0xe4/0x1c0 fs/splice.c:1142\n splice_direct_to_actor+0x2a0/0x7e4 fs/splice.c:1088\n do_splice_direct+0x20c/0x348 fs/splice.c:1194\n do_sendfile+0x4bc/0xc70 fs/read_write.c:1254\n __do_sys_sendfile64 fs/read_write.c:1322 [inline]\n __se_sys_sendfile64 fs/read_write.c:1308 [inline]\n __arm64_sys_sendfile64+0x160/0x3b4 fs/read_write.c:1308\n __invoke_syscall arch/arm64/kernel/syscall.c:37 [inline]\n invoke_syscall+0x98/0x2b8 arch/arm64/kernel/syscall.c:51\n el0_svc_common+0x130/0x23c arch/arm64/kernel/syscall.c:136\n do_el0_svc+0x48/0x58 arch/arm64/kernel/syscall.c:155\n el0_svc+0x54/0x158 arch/arm64/kernel/entry-common.c:678\n el0t_64_sync_handler+0x84/0xfc arch/arm64/kernel/entry-common.c:696\n el0t_64_sync+0x190/0x194 arch/arm64/kernel/entry.S:595\nCode: aa1803e6 aa1903e7 a90023f5 94792f6a (d4210000)", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -57,7 +62,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-18T11:15:10Z" diff --git a/advisories/unreviewed/2024/03/GHSA-3gvj-5493-c96f/GHSA-3gvj-5493-c96f.json b/advisories/unreviewed/2024/03/GHSA-3gvj-5493-c96f/GHSA-3gvj-5493-c96f.json index 572cf7a82f9..835738e9541 100644 --- a/advisories/unreviewed/2024/03/GHSA-3gvj-5493-c96f/GHSA-3gvj-5493-c96f.json +++ b/advisories/unreviewed/2024/03/GHSA-3gvj-5493-c96f/GHSA-3gvj-5493-c96f.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-3gvj-5493-c96f", - "modified": "2024-06-26T00:31:35Z", + "modified": "2025-03-10T18:31:49Z", "published": "2024-03-18T12:30:35Z", "aliases": [ "CVE-2023-52616" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ncrypto: lib/mpi - Fix unexpected pointer access in mpi_ec_init\n\nWhen the mpi_ec_ctx structure is initialized, some fields are not\ncleared, causing a crash when referencing the field when the\nstructure was released. Initially, this issue was ignored because\nmemory for mpi_ec_ctx is allocated with the __GFP_ZERO flag.\nFor example, this error will be triggered when calculating the\nZa value for SM2 separately.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -45,7 +50,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-18T11:15:08Z" diff --git a/advisories/unreviewed/2024/03/GHSA-3pmw-h7mc-vxxq/GHSA-3pmw-h7mc-vxxq.json b/advisories/unreviewed/2024/03/GHSA-3pmw-h7mc-vxxq/GHSA-3pmw-h7mc-vxxq.json index fde2cdf0c00..cbebf8ec8fd 100644 --- a/advisories/unreviewed/2024/03/GHSA-3pmw-h7mc-vxxq/GHSA-3pmw-h7mc-vxxq.json +++ b/advisories/unreviewed/2024/03/GHSA-3pmw-h7mc-vxxq/GHSA-3pmw-h7mc-vxxq.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-3pmw-h7mc-vxxq", - "modified": "2024-06-26T00:31:35Z", + "modified": "2025-03-10T18:31:50Z", "published": "2024-03-18T12:30:35Z", "aliases": [ "CVE-2024-26641" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv()\n\nsyzbot found __ip6_tnl_rcv() could access unitiliazed data [1].\n\nCall pskb_inet_may_pull() to fix this, and initialize ipv6h\nvariable after this call as it can change skb->head.\n\n[1]\n BUG: KMSAN: uninit-value in __INET_ECN_decapsulate include/net/inet_ecn.h:253 [inline]\n BUG: KMSAN: uninit-value in INET_ECN_decapsulate include/net/inet_ecn.h:275 [inline]\n BUG: KMSAN: uninit-value in IP6_ECN_decapsulate+0x7df/0x1e50 include/net/inet_ecn.h:321\n __INET_ECN_decapsulate include/net/inet_ecn.h:253 [inline]\n INET_ECN_decapsulate include/net/inet_ecn.h:275 [inline]\n IP6_ECN_decapsulate+0x7df/0x1e50 include/net/inet_ecn.h:321\n ip6ip6_dscp_ecn_decapsulate+0x178/0x1b0 net/ipv6/ip6_tunnel.c:727\n __ip6_tnl_rcv+0xd4e/0x1590 net/ipv6/ip6_tunnel.c:845\n ip6_tnl_rcv+0xce/0x100 net/ipv6/ip6_tunnel.c:888\n gre_rcv+0x143f/0x1870\n ip6_protocol_deliver_rcu+0xda6/0x2a60 net/ipv6/ip6_input.c:438\n ip6_input_finish net/ipv6/ip6_input.c:483 [inline]\n NF_HOOK include/linux/netfilter.h:314 [inline]\n ip6_input+0x15d/0x430 net/ipv6/ip6_input.c:492\n ip6_mc_input+0xa7e/0xc80 net/ipv6/ip6_input.c:586\n dst_input include/net/dst.h:461 [inline]\n ip6_rcv_finish+0x5db/0x870 net/ipv6/ip6_input.c:79\n NF_HOOK include/linux/netfilter.h:314 [inline]\n ipv6_rcv+0xda/0x390 net/ipv6/ip6_input.c:310\n __netif_receive_skb_one_core net/core/dev.c:5532 [inline]\n __netif_receive_skb+0x1a6/0x5a0 net/core/dev.c:5646\n netif_receive_skb_internal net/core/dev.c:5732 [inline]\n netif_receive_skb+0x58/0x660 net/core/dev.c:5791\n tun_rx_batched+0x3ee/0x980 drivers/net/tun.c:1555\n tun_get_user+0x53af/0x66d0 drivers/net/tun.c:2002\n tun_chr_write_iter+0x3af/0x5d0 drivers/net/tun.c:2048\n call_write_iter include/linux/fs.h:2084 [inline]\n new_sync_write fs/read_write.c:497 [inline]\n vfs_write+0x786/0x1200 fs/read_write.c:590\n ksys_write+0x20f/0x4c0 fs/read_write.c:643\n __do_sys_write fs/read_write.c:655 [inline]\n __se_sys_write fs/read_write.c:652 [inline]\n __x64_sys_write+0x93/0xd0 fs/read_write.c:652\n do_syscall_x64 arch/x86/entry/common.c:52 [inline]\n do_syscall_64+0x6d/0x140 arch/x86/entry/common.c:83\n entry_SYSCALL_64_after_hwframe+0x63/0x6b\n\nUninit was created at:\n slab_post_alloc_hook+0x129/0xa70 mm/slab.h:768\n slab_alloc_node mm/slub.c:3478 [inline]\n kmem_cache_alloc_node+0x5e9/0xb10 mm/slub.c:3523\n kmalloc_reserve+0x13d/0x4a0 net/core/skbuff.c:560\n __alloc_skb+0x318/0x740 net/core/skbuff.c:651\n alloc_skb include/linux/skbuff.h:1286 [inline]\n alloc_skb_with_frags+0xc8/0xbd0 net/core/skbuff.c:6334\n sock_alloc_send_pskb+0xa80/0xbf0 net/core/sock.c:2787\n tun_alloc_skb drivers/net/tun.c:1531 [inline]\n tun_get_user+0x1e8a/0x66d0 drivers/net/tun.c:1846\n tun_chr_write_iter+0x3af/0x5d0 drivers/net/tun.c:2048\n call_write_iter include/linux/fs.h:2084 [inline]\n new_sync_write fs/read_write.c:497 [inline]\n vfs_write+0x786/0x1200 fs/read_write.c:590\n ksys_write+0x20f/0x4c0 fs/read_write.c:643\n __do_sys_write fs/read_write.c:655 [inline]\n __se_sys_write fs/read_write.c:652 [inline]\n __x64_sys_write+0x93/0xd0 fs/read_write.c:652\n do_syscall_x64 arch/x86/entry/common.c:52 [inline]\n do_syscall_64+0x6d/0x140 arch/x86/entry/common.c:83\n entry_SYSCALL_64_after_hwframe+0x63/0x6b\n\nCPU: 0 PID: 5034 Comm: syz-executor331 Not tainted 6.7.0-syzkaller-00562-g9f8413c4a66f #0\nHardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 11/17/2023", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -41,11 +46,17 @@ { "type": "WEB", "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00017.html" + }, + { + "type": "WEB", + "url": "https://security.netapp.com/advisory/ntap-20241108-0008" } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-908" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-18T11:15:11Z" diff --git a/advisories/unreviewed/2024/03/GHSA-5cwm-4qj6-4xfm/GHSA-5cwm-4qj6-4xfm.json b/advisories/unreviewed/2024/03/GHSA-5cwm-4qj6-4xfm/GHSA-5cwm-4qj6-4xfm.json index b0e05be6780..8c0842c583a 100644 --- a/advisories/unreviewed/2024/03/GHSA-5cwm-4qj6-4xfm/GHSA-5cwm-4qj6-4xfm.json +++ b/advisories/unreviewed/2024/03/GHSA-5cwm-4qj6-4xfm/GHSA-5cwm-4qj6-4xfm.json @@ -1,12 +1,12 @@ { "schema_version": "1.4.0", "id": "GHSA-5cwm-4qj6-4xfm", - "modified": "2024-03-27T18:32:39Z", + "modified": "2025-03-10T18:31:50Z", "published": "2024-03-27T18:32:39Z", "aliases": [ "CVE-2023-0582" ], - "details": "Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in ForgeRock Access Management allows Authorization Bypass.\n\nThis issue affects access management: before 7.3.0, before 7.2.1, before 7.1.4, through 7.0.2.\n\n", + "details": "Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in ForgeRock Access Management allows Authorization Bypass.\n\nThis issue affects access management: before 7.3.0, before 7.2.1, before 7.1.4, through 7.0.2.", "severity": [ { "type": "CVSS_V3", diff --git a/advisories/unreviewed/2024/03/GHSA-689f-q6h8-4mc5/GHSA-689f-q6h8-4mc5.json b/advisories/unreviewed/2024/03/GHSA-689f-q6h8-4mc5/GHSA-689f-q6h8-4mc5.json index 19b1c559f16..fa1c1225c4e 100644 --- a/advisories/unreviewed/2024/03/GHSA-689f-q6h8-4mc5/GHSA-689f-q6h8-4mc5.json +++ b/advisories/unreviewed/2024/03/GHSA-689f-q6h8-4mc5/GHSA-689f-q6h8-4mc5.json @@ -1,12 +1,12 @@ { "schema_version": "1.4.0", "id": "GHSA-689f-q6h8-4mc5", - "modified": "2024-03-27T15:30:37Z", + "modified": "2025-03-10T18:31:50Z", "published": "2024-03-27T15:30:37Z", "aliases": [ "CVE-2023-44999" ], - "details": "Cross-Site Request Forgery (CSRF) vulnerability in WooCommerce WooCommerce Stripe Payment Gateway.This issue affects WooCommerce Stripe Payment Gateway: from n/a through 7.6.0.\n\n", + "details": "Cross-Site Request Forgery (CSRF) vulnerability in WooCommerce WooCommerce Stripe Payment Gateway.This issue affects WooCommerce Stripe Payment Gateway: from n/a through 7.6.0.", "severity": [ { "type": "CVSS_V3", diff --git a/advisories/unreviewed/2024/03/GHSA-6q28-45j9-263v/GHSA-6q28-45j9-263v.json b/advisories/unreviewed/2024/03/GHSA-6q28-45j9-263v/GHSA-6q28-45j9-263v.json index 5918470cba7..8f9a1c72dca 100644 --- a/advisories/unreviewed/2024/03/GHSA-6q28-45j9-263v/GHSA-6q28-45j9-263v.json +++ b/advisories/unreviewed/2024/03/GHSA-6q28-45j9-263v/GHSA-6q28-45j9-263v.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-6q28-45j9-263v", - "modified": "2024-06-26T00:31:35Z", + "modified": "2025-03-10T18:31:50Z", "published": "2024-03-18T12:30:35Z", "aliases": [ "CVE-2024-26640" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ntcp: add sanity checks to rx zerocopy\n\nTCP rx zerocopy intent is to map pages initially allocated\nfrom NIC drivers, not pages owned by a fs.\n\nThis patch adds to can_map_frag() these additional checks:\n\n- Page must not be a compound one.\n- page->mapping must be NULL.\n\nThis fixes the panic reported by ZhangPeng.\n\nsyzbot was able to loopback packets built with sendfile(),\nmapping pages owned by an ext4 file to TCP rx zerocopy.\n\nr3 = socket$inet_tcp(0x2, 0x1, 0x0)\nmmap(&(0x7f0000ff9000/0x4000)=nil, 0x4000, 0x0, 0x12, r3, 0x0)\nr4 = socket$inet_tcp(0x2, 0x1, 0x0)\nbind$inet(r4, &(0x7f0000000000)={0x2, 0x4e24, @multicast1}, 0x10)\nconnect$inet(r4, &(0x7f00000006c0)={0x2, 0x4e24, @empty}, 0x10)\nr5 = openat$dir(0xffffffffffffff9c, &(0x7f00000000c0)='./file0\\x00',\n 0x181e42, 0x0)\nfallocate(r5, 0x0, 0x0, 0x85b8)\nsendfile(r4, r5, 0x0, 0x8ba0)\ngetsockopt$inet_tcp_TCP_ZEROCOPY_RECEIVE(r4, 0x6, 0x23,\n &(0x7f00000001c0)={&(0x7f0000ffb000/0x3000)=nil, 0x3000, 0x0, 0x0, 0x0,\n 0x0, 0x0, 0x0, 0x0}, &(0x7f0000000440)=0x40)\nr6 = openat$dir(0xffffffffffffff9c, &(0x7f00000000c0)='./file0\\x00',\n 0x181e42, 0x0)", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -45,7 +50,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-18T11:15:11Z" diff --git a/advisories/unreviewed/2024/03/GHSA-7qh2-q67g-xhj2/GHSA-7qh2-q67g-xhj2.json b/advisories/unreviewed/2024/03/GHSA-7qh2-q67g-xhj2/GHSA-7qh2-q67g-xhj2.json index 4f4985868d4..7737193a07c 100644 --- a/advisories/unreviewed/2024/03/GHSA-7qh2-q67g-xhj2/GHSA-7qh2-q67g-xhj2.json +++ b/advisories/unreviewed/2024/03/GHSA-7qh2-q67g-xhj2/GHSA-7qh2-q67g-xhj2.json @@ -1,12 +1,12 @@ { "schema_version": "1.4.0", "id": "GHSA-7qh2-q67g-xhj2", - "modified": "2024-03-27T09:30:41Z", + "modified": "2025-03-10T18:31:50Z", "published": "2024-03-27T09:30:40Z", "aliases": [ "CVE-2024-29925" ], - "details": "Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpWax Post Grid, Slider & Carousel Ultimate allows Stored XSS.This issue affects Post Grid, Slider & Carousel Ultimate: from n/a through 1.6.6.\n\n", + "details": "Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpWax Post Grid, Slider & Carousel Ultimate allows Stored XSS.This issue affects Post Grid, Slider & Carousel Ultimate: from n/a through 1.6.6.", "severity": [ { "type": "CVSS_V3", diff --git a/advisories/unreviewed/2024/03/GHSA-7rx6-7rmx-f3hf/GHSA-7rx6-7rmx-f3hf.json b/advisories/unreviewed/2024/03/GHSA-7rx6-7rmx-f3hf/GHSA-7rx6-7rmx-f3hf.json index e1d3477ae28..56f990090e9 100644 --- a/advisories/unreviewed/2024/03/GHSA-7rx6-7rmx-f3hf/GHSA-7rx6-7rmx-f3hf.json +++ b/advisories/unreviewed/2024/03/GHSA-7rx6-7rmx-f3hf/GHSA-7rx6-7rmx-f3hf.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-7rx6-7rmx-f3hf", - "modified": "2024-03-18T12:30:35Z", + "modified": "2025-03-10T18:31:49Z", "published": "2024-03-18T12:30:35Z", "aliases": [ "CVE-2024-26634" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet: fix removing a namespace with conflicting altnames\n\nMark reports a BUG() when a net namespace is removed.\n\n kernel BUG at net/core/dev.c:11520!\n\nPhysical interfaces moved outside of init_net get \"refunded\"\nto init_net when that namespace disappears. The main interface\nname may get overwritten in the process if it would have\nconflicted. We need to also discard all conflicting altnames.\nRecent fixes addressed ensuring that altnames get moved\nwith the main interface, which surfaced this problem.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -33,7 +38,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-18T11:15:10Z" diff --git a/advisories/unreviewed/2024/03/GHSA-9qq5-g8qh-67pf/GHSA-9qq5-g8qh-67pf.json b/advisories/unreviewed/2024/03/GHSA-9qq5-g8qh-67pf/GHSA-9qq5-g8qh-67pf.json index c3210984433..1c844d99a94 100644 --- a/advisories/unreviewed/2024/03/GHSA-9qq5-g8qh-67pf/GHSA-9qq5-g8qh-67pf.json +++ b/advisories/unreviewed/2024/03/GHSA-9qq5-g8qh-67pf/GHSA-9qq5-g8qh-67pf.json @@ -1,12 +1,12 @@ { "schema_version": "1.4.0", "id": "GHSA-9qq5-g8qh-67pf", - "modified": "2024-03-27T15:30:38Z", + "modified": "2025-03-10T18:31:50Z", "published": "2024-03-27T15:30:38Z", "aliases": [ "CVE-2024-29759" ], - "details": "Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CodePeople Calculated Fields Form allows Reflected XSS.This issue affects Calculated Fields Form: from n/a through 1.2.54.\n\n", + "details": "Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CodePeople Calculated Fields Form allows Reflected XSS.This issue affects Calculated Fields Form: from n/a through 1.2.54.", "severity": [ { "type": "CVSS_V3", diff --git a/advisories/unreviewed/2024/03/GHSA-chmj-69q7-qhgf/GHSA-chmj-69q7-qhgf.json b/advisories/unreviewed/2024/03/GHSA-chmj-69q7-qhgf/GHSA-chmj-69q7-qhgf.json index a860d29365e..46c4e20115b 100644 --- a/advisories/unreviewed/2024/03/GHSA-chmj-69q7-qhgf/GHSA-chmj-69q7-qhgf.json +++ b/advisories/unreviewed/2024/03/GHSA-chmj-69q7-qhgf/GHSA-chmj-69q7-qhgf.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-chmj-69q7-qhgf", - "modified": "2024-03-18T12:30:35Z", + "modified": "2025-03-10T18:31:49Z", "published": "2024-03-18T12:30:35Z", "aliases": [ "CVE-2024-26637" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: ath11k: rely on mac80211 debugfs handling for vif\n\nmac80211 started to delete debugfs entries in certain cases, causing a\nath11k to crash when it tried to delete the entries later. Fix this by\nrelying on mac80211 to delete the entries when appropriate and adding\nthem from the vif_add_debugfs handler.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -25,7 +30,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-18T11:15:10Z" diff --git a/advisories/unreviewed/2024/03/GHSA-fx8f-q2j4-9jxv/GHSA-fx8f-q2j4-9jxv.json b/advisories/unreviewed/2024/03/GHSA-fx8f-q2j4-9jxv/GHSA-fx8f-q2j4-9jxv.json index d52444dbf20..ae101f6fcba 100644 --- a/advisories/unreviewed/2024/03/GHSA-fx8f-q2j4-9jxv/GHSA-fx8f-q2j4-9jxv.json +++ b/advisories/unreviewed/2024/03/GHSA-fx8f-q2j4-9jxv/GHSA-fx8f-q2j4-9jxv.json @@ -1,12 +1,12 @@ { "schema_version": "1.4.0", "id": "GHSA-fx8f-q2j4-9jxv", - "modified": "2024-03-27T09:30:40Z", + "modified": "2025-03-10T18:31:50Z", "published": "2024-03-27T09:30:40Z", "aliases": [ "CVE-2024-29921" ], - "details": "Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Supsystic Photo Gallery by Supsystic allows Stored XSS.This issue affects Photo Gallery by Supsystic: from n/a through 1.15.16.\n\n", + "details": "Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Supsystic Photo Gallery by Supsystic allows Stored XSS.This issue affects Photo Gallery by Supsystic: from n/a through 1.15.16.", "severity": [ { "type": "CVSS_V3", diff --git a/advisories/unreviewed/2024/03/GHSA-rw64-46h7-gmc8/GHSA-rw64-46h7-gmc8.json b/advisories/unreviewed/2024/03/GHSA-rw64-46h7-gmc8/GHSA-rw64-46h7-gmc8.json index 73ce9d875dd..42d0a4ec42a 100644 --- a/advisories/unreviewed/2024/03/GHSA-rw64-46h7-gmc8/GHSA-rw64-46h7-gmc8.json +++ b/advisories/unreviewed/2024/03/GHSA-rw64-46h7-gmc8/GHSA-rw64-46h7-gmc8.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-rw64-46h7-gmc8", - "modified": "2024-03-18T12:30:34Z", + "modified": "2025-03-10T18:31:49Z", "published": "2024-03-18T12:30:34Z", "aliases": [ "CVE-2023-52611" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: rtw88: sdio: Honor the host max_req_size in the RX path\n\nLukas reports skb_over_panic errors on his Banana Pi BPI-CM4 which comes\nwith an Amlogic A311D (G12B) SoC and a RTL8822CS SDIO wifi/Bluetooth\ncombo card. The error he observed is identical to what has been fixed\nin commit e967229ead0e (\"wifi: rtw88: sdio: Check the HISR RX_REQUEST\nbit in rtw_sdio_rx_isr()\") but that commit didn't fix Lukas' problem.\n\nLukas found that disabling or limiting RX aggregation works around the\nproblem for some time (but does not fully fix it). In the following\ndiscussion a few key topics have been discussed which have an impact on\nthis problem:\n- The Amlogic A311D (G12B) SoC has a hardware bug in the SDIO controller\n which prevents DMA transfers. Instead all transfers need to go through\n the controller SRAM which limits transfers to 1536 bytes\n- rtw88 chips don't split incoming (RX) packets, so if a big packet is\n received this is forwarded to the host in it's original form\n- rtw88 chips can do RX aggregation, meaning more multiple incoming\n packets can be pulled by the host from the card with one MMC/SDIO\n transfer. This Depends on settings in the REG_RXDMA_AGG_PG_TH\n register (BIT_RXDMA_AGG_PG_TH limits the number of packets that will\n be aggregated, BIT_DMA_AGG_TO_V1 configures a timeout for aggregation\n and BIT_EN_PRE_CALC makes the chip honor the limits more effectively)\n\nUse multiple consecutive reads in rtw_sdio_read_port() and limit the\nnumber of bytes which are copied by the host from the card in one\nMMC/SDIO transfer. This allows receiving a buffer that's larger than\nthe hosts max_req_size (number of bytes which can be transferred in\none MMC/SDIO transfer). As a result of this the skb_over_panic error\nis gone as the rtw88 driver is now able to receive more than 1536 bytes\nfrom the card (either because the incoming packet is larger than that\nor because multiple packets have been aggregated).\n\nIn case of an receive errors (-EILSEQ has been observed by Lukas) we\nneed to drain the remaining data from the card's buffer, otherwise the\ncard will return corrupt data for the next rtw_sdio_read_port() call.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -29,7 +34,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-18T11:15:08Z" diff --git a/advisories/unreviewed/2024/03/GHSA-xhm6-wpwj-qm56/GHSA-xhm6-wpwj-qm56.json b/advisories/unreviewed/2024/03/GHSA-xhm6-wpwj-qm56/GHSA-xhm6-wpwj-qm56.json index a3cc289c0b8..e8c282db322 100644 --- a/advisories/unreviewed/2024/03/GHSA-xhm6-wpwj-qm56/GHSA-xhm6-wpwj-qm56.json +++ b/advisories/unreviewed/2024/03/GHSA-xhm6-wpwj-qm56/GHSA-xhm6-wpwj-qm56.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-xhm6-wpwj-qm56", - "modified": "2024-06-27T12:30:44Z", + "modified": "2025-03-10T18:31:49Z", "published": "2024-03-18T12:30:35Z", "aliases": [ "CVE-2024-26635" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nllc: Drop support for ETH_P_TR_802_2.\n\nsyzbot reported an uninit-value bug below. [0]\n\nllc supports ETH_P_802_2 (0x0004) and used to support ETH_P_TR_802_2\n(0x0011), and syzbot abused the latter to trigger the bug.\n\n write$tun(r0, &(0x7f0000000040)={@val={0x0, 0x11}, @val, @mpls={[], @llc={@snap={0xaa, 0x1, ')', \"90e5dd\"}}}}, 0x16)\n\nllc_conn_handler() initialises local variables {saddr,daddr}.mac\nbased on skb in llc_pdu_decode_sa()/llc_pdu_decode_da() and passes\nthem to __llc_lookup().\n\nHowever, the initialisation is done only when skb->protocol is\nhtons(ETH_P_802_2), otherwise, __llc_lookup_established() and\n__llc_lookup_listener() will read garbage.\n\nThe missing initialisation existed prior to commit 211ed865108e\n(\"net: delete all instances of special processing for token ring\").\n\nIt removed the part to kick out the token ring stuff but forgot to\nclose the door allowing ETH_P_TR_802_2 packets to sneak into llc_rcv().\n\nLet's remove llc_tr_packet_type and complete the deprecation.\n\n[0]:\nBUG: KMSAN: uninit-value in __llc_lookup_established+0xe9d/0xf90\n __llc_lookup_established+0xe9d/0xf90\n __llc_lookup net/llc/llc_conn.c:611 [inline]\n llc_conn_handler+0x4bd/0x1360 net/llc/llc_conn.c:791\n llc_rcv+0xfbb/0x14a0 net/llc/llc_input.c:206\n __netif_receive_skb_one_core net/core/dev.c:5527 [inline]\n __netif_receive_skb+0x1a6/0x5a0 net/core/dev.c:5641\n netif_receive_skb_internal net/core/dev.c:5727 [inline]\n netif_receive_skb+0x58/0x660 net/core/dev.c:5786\n tun_rx_batched+0x3ee/0x980 drivers/net/tun.c:1555\n tun_get_user+0x53af/0x66d0 drivers/net/tun.c:2002\n tun_chr_write_iter+0x3af/0x5d0 drivers/net/tun.c:2048\n call_write_iter include/linux/fs.h:2020 [inline]\n new_sync_write fs/read_write.c:491 [inline]\n vfs_write+0x8ef/0x1490 fs/read_write.c:584\n ksys_write+0x20f/0x4c0 fs/read_write.c:637\n __do_sys_write fs/read_write.c:649 [inline]\n __se_sys_write fs/read_write.c:646 [inline]\n __x64_sys_write+0x93/0xd0 fs/read_write.c:646\n do_syscall_x64 arch/x86/entry/common.c:51 [inline]\n do_syscall_64+0x44/0x110 arch/x86/entry/common.c:82\n entry_SYSCALL_64_after_hwframe+0x63/0x6b\n\nLocal variable daddr created at:\n llc_conn_handler+0x53/0x1360 net/llc/llc_conn.c:783\n llc_rcv+0xfbb/0x14a0 net/llc/llc_input.c:206\n\nCPU: 1 PID: 5004 Comm: syz-executor994 Not tainted 6.6.0-syzkaller-14500-g1c41041124bd #0\nHardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 10/09/2023", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -56,8 +61,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-909" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-18T11:15:10Z" diff --git a/advisories/unreviewed/2024/05/GHSA-2v9r-f76x-xq4j/GHSA-2v9r-f76x-xq4j.json b/advisories/unreviewed/2024/05/GHSA-2v9r-f76x-xq4j/GHSA-2v9r-f76x-xq4j.json index 5ea018b380a..77806ab2b7c 100644 --- a/advisories/unreviewed/2024/05/GHSA-2v9r-f76x-xq4j/GHSA-2v9r-f76x-xq4j.json +++ b/advisories/unreviewed/2024/05/GHSA-2v9r-f76x-xq4j/GHSA-2v9r-f76x-xq4j.json @@ -30,7 +30,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-121" + "CWE-121", + "CWE-787" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/05/GHSA-783x-27w3-5wff/GHSA-783x-27w3-5wff.json b/advisories/unreviewed/2024/05/GHSA-783x-27w3-5wff/GHSA-783x-27w3-5wff.json index 2f98090fbaf..9b4428bbd4d 100644 --- a/advisories/unreviewed/2024/05/GHSA-783x-27w3-5wff/GHSA-783x-27w3-5wff.json +++ b/advisories/unreviewed/2024/05/GHSA-783x-27w3-5wff/GHSA-783x-27w3-5wff.json @@ -30,7 +30,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-121" + "CWE-121", + "CWE-787" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/05/GHSA-9j9f-jrvv-hxhr/GHSA-9j9f-jrvv-hxhr.json b/advisories/unreviewed/2024/05/GHSA-9j9f-jrvv-hxhr/GHSA-9j9f-jrvv-hxhr.json index 11bcb0e73ba..32e6978c390 100644 --- a/advisories/unreviewed/2024/05/GHSA-9j9f-jrvv-hxhr/GHSA-9j9f-jrvv-hxhr.json +++ b/advisories/unreviewed/2024/05/GHSA-9j9f-jrvv-hxhr/GHSA-9j9f-jrvv-hxhr.json @@ -30,7 +30,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-121" + "CWE-121", + "CWE-787" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/05/GHSA-p862-jjqx-6v8x/GHSA-p862-jjqx-6v8x.json b/advisories/unreviewed/2024/05/GHSA-p862-jjqx-6v8x/GHSA-p862-jjqx-6v8x.json index f63da8e8745..b3e4dd5b5a6 100644 --- a/advisories/unreviewed/2024/05/GHSA-p862-jjqx-6v8x/GHSA-p862-jjqx-6v8x.json +++ b/advisories/unreviewed/2024/05/GHSA-p862-jjqx-6v8x/GHSA-p862-jjqx-6v8x.json @@ -30,7 +30,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-121" + "CWE-121", + "CWE-787" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/10/GHSA-p83p-59g7-3x89/GHSA-p83p-59g7-3x89.json b/advisories/unreviewed/2024/10/GHSA-p83p-59g7-3x89/GHSA-p83p-59g7-3x89.json index d0c31650ed0..fd9171dec6d 100644 --- a/advisories/unreviewed/2024/10/GHSA-p83p-59g7-3x89/GHSA-p83p-59g7-3x89.json +++ b/advisories/unreviewed/2024/10/GHSA-p83p-59g7-3x89/GHSA-p83p-59g7-3x89.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-p83p-59g7-3x89", - "modified": "2024-10-17T21:31:32Z", + "modified": "2025-03-10T18:31:52Z", "published": "2024-10-17T21:31:32Z", "aliases": [ "CVE-2024-49281" diff --git a/advisories/unreviewed/2025/02/GHSA-q3rr-g46f-jgqr/GHSA-q3rr-g46f-jgqr.json b/advisories/unreviewed/2025/02/GHSA-q3rr-g46f-jgqr/GHSA-q3rr-g46f-jgqr.json index 1b755a66afc..c18051e2cdf 100644 --- a/advisories/unreviewed/2025/02/GHSA-q3rr-g46f-jgqr/GHSA-q3rr-g46f-jgqr.json +++ b/advisories/unreviewed/2025/02/GHSA-q3rr-g46f-jgqr/GHSA-q3rr-g46f-jgqr.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-q3rr-g46f-jgqr", - "modified": "2025-02-19T21:31:38Z", + "modified": "2025-03-10T18:31:55Z", "published": "2025-02-19T21:31:38Z", "aliases": [ "CVE-2025-0624" @@ -19,6 +19,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-0624" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2025:2521" + }, { "type": "WEB", "url": "https://access.redhat.com/security/cve/CVE-2025-0624" diff --git a/advisories/unreviewed/2025/03/GHSA-3j87-859p-q82m/GHSA-3j87-859p-q82m.json b/advisories/unreviewed/2025/03/GHSA-3j87-859p-q82m/GHSA-3j87-859p-q82m.json new file mode 100644 index 00000000000..d036c827171 --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-3j87-859p-q82m/GHSA-3j87-859p-q82m.json @@ -0,0 +1,33 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-3j87-859p-q82m", + "modified": "2025-03-10T18:31:56Z", + "published": "2025-03-10T18:31:56Z", + "aliases": [ + "CVE-2025-25382" + ], + "details": "An issue in the Property Tax Payment Portal in Information Kerala Mission SANCHAYA v3.0.4 allows attackers to arbitrarily modify payment amounts via a crafted request.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-25382" + }, + { + "type": "WEB", + "url": "https://github.com/edwin-0990/CVE_ID/blob/main/CVE-2025-25382/README.md" + }, + { + "type": "WEB", + "url": "https://tax.lsgkerala.gov.in/epayment/QuickPaySearch.php" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-10T16:15:13Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-3ww5-qm6q-xhcg/GHSA-3ww5-qm6q-xhcg.json b/advisories/unreviewed/2025/03/GHSA-3ww5-qm6q-xhcg/GHSA-3ww5-qm6q-xhcg.json index 4876775a1bb..07797b26413 100644 --- a/advisories/unreviewed/2025/03/GHSA-3ww5-qm6q-xhcg/GHSA-3ww5-qm6q-xhcg.json +++ b/advisories/unreviewed/2025/03/GHSA-3ww5-qm6q-xhcg/GHSA-3ww5-qm6q-xhcg.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-3ww5-qm6q-xhcg", - "modified": "2025-03-08T06:30:42Z", + "modified": "2025-03-10T18:31:55Z", "published": "2025-03-08T06:30:42Z", "aliases": [ "CVE-2024-13825" ], "details": "The Email Keep WordPress plugin through 1.1 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -21,7 +26,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-03-08T06:15:36Z" diff --git a/advisories/unreviewed/2025/03/GHSA-4pcp-h2jw-cp6p/GHSA-4pcp-h2jw-cp6p.json b/advisories/unreviewed/2025/03/GHSA-4pcp-h2jw-cp6p/GHSA-4pcp-h2jw-cp6p.json new file mode 100644 index 00000000000..2d5308e2f2b --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-4pcp-h2jw-cp6p/GHSA-4pcp-h2jw-cp6p.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-4pcp-h2jw-cp6p", + "modified": "2025-03-10T18:31:56Z", + "published": "2025-03-10T18:31:56Z", + "aliases": [ + "CVE-2024-52905" + ], + "details": "IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.2.6 and 6.2.0.0 through 6.2.0.3 could disclose sensitive database information to a privileged user.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-52905" + }, + { + "type": "WEB", + "url": "https://www.ibm.com/support/pages/node/7185264" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-497" + ], + "severity": "LOW", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-10T16:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-546h-56qp-8jmw/GHSA-546h-56qp-8jmw.json b/advisories/unreviewed/2025/03/GHSA-546h-56qp-8jmw/GHSA-546h-56qp-8jmw.json index ad5cfc49cef..88f1d678221 100644 --- a/advisories/unreviewed/2025/03/GHSA-546h-56qp-8jmw/GHSA-546h-56qp-8jmw.json +++ b/advisories/unreviewed/2025/03/GHSA-546h-56qp-8jmw/GHSA-546h-56qp-8jmw.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-546h-56qp-8jmw", - "modified": "2025-03-10T12:30:55Z", + "modified": "2025-03-10T18:31:56Z", "published": "2025-03-10T12:30:55Z", "aliases": [ "CVE-2024-13918" @@ -30,6 +30,10 @@ { "type": "WEB", "url": "https://github.com/sbaresearch/advisories/tree/public/2024/SBA-ADV-20241209-01_Laravel_Reflected_XSS_via_Request_Parameter_in_Debug-Mode_Error_Page" + }, + { + "type": "WEB", + "url": "http://www.openwall.com/lists/oss-security/2025/03/10/3" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/03/GHSA-6m5m-3phv-f8fm/GHSA-6m5m-3phv-f8fm.json b/advisories/unreviewed/2025/03/GHSA-6m5m-3phv-f8fm/GHSA-6m5m-3phv-f8fm.json index 825fcafd7ae..69742215dc5 100644 --- a/advisories/unreviewed/2025/03/GHSA-6m5m-3phv-f8fm/GHSA-6m5m-3phv-f8fm.json +++ b/advisories/unreviewed/2025/03/GHSA-6m5m-3phv-f8fm/GHSA-6m5m-3phv-f8fm.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-6m5m-3phv-f8fm", - "modified": "2025-03-07T21:31:10Z", + "modified": "2025-03-10T18:31:55Z", "published": "2025-03-07T21:31:10Z", "aliases": [ "CVE-2024-42733" ], "details": "An issue in Docmosis Tornado v.2.9.7 and before allows a remote attacker to execute arbitrary code via a crafted script to the UNC path input", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-94" + ], + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-03-07T21:15:17Z" diff --git a/advisories/unreviewed/2025/03/GHSA-83qj-6fr2-vhqg/GHSA-83qj-6fr2-vhqg.json b/advisories/unreviewed/2025/03/GHSA-83qj-6fr2-vhqg/GHSA-83qj-6fr2-vhqg.json new file mode 100644 index 00000000000..2b70be05e56 --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-83qj-6fr2-vhqg/GHSA-83qj-6fr2-vhqg.json @@ -0,0 +1,31 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-83qj-6fr2-vhqg", + "modified": "2025-03-10T18:31:56Z", + "published": "2025-03-10T18:31:56Z", + "aliases": [ + "CVE-2025-24813" + ], + "details": "Path Equivalence: 'file.Name' (Internal Dot) leading to Remote Code Execution and/or Information disclosure and/or malicious content added to uploaded files via write enabled Default Servlet in Apache Tomcat.\n\nThis issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.2, from 10.1.0-M1 through 10.1.34, from 9.0.0.M1 through 9.0.98.\n\nIf all of the following were true, a malicious user was able to view security sensitive files and/or inject content into those files:\n- writes enabled for the default servlet (disabled by default)\n- support for partial PUT (enabled by default)\n- a target URL for security sensitive uploads that was a sub-directory of a target URL for public uploads\n- attacker knowledge of the names of security sensitive files being uploaded\n- the security sensitive files also being uploaded via partial PUT\n\nIf all of the following were true, a malicious user was able to perform remote code execution:\n- writes enabled for the default servlet (disabled by default)\n- support for partial PUT (enabled by default)\n- application was using Tomcat's file based session persistence with the default storage location\n- application included a library that may be leveraged in a deserialization attack\n\nUsers are recommended to upgrade to version 11.0.3, 10.1.35 or 9.0.98, which fixes the issue.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-24813" + }, + { + "type": "WEB", + "url": "https://lists.apache.org/thread/j5fkjv2k477os90nczf2v9l61fb0kkgq" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-44" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-10T17:15:35Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-83wp-f5c3-hqqr/GHSA-83wp-f5c3-hqqr.json b/advisories/unreviewed/2025/03/GHSA-83wp-f5c3-hqqr/GHSA-83wp-f5c3-hqqr.json index 7b2a50d0064..a7f9d5220d7 100644 --- a/advisories/unreviewed/2025/03/GHSA-83wp-f5c3-hqqr/GHSA-83wp-f5c3-hqqr.json +++ b/advisories/unreviewed/2025/03/GHSA-83wp-f5c3-hqqr/GHSA-83wp-f5c3-hqqr.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-83wp-f5c3-hqqr", - "modified": "2025-03-10T12:30:55Z", + "modified": "2025-03-10T18:31:56Z", "published": "2025-03-10T12:30:55Z", "aliases": [ "CVE-2024-13919" @@ -30,6 +30,10 @@ { "type": "WEB", "url": "https://github.com/sbaresearch/advisories/tree/public/2024/SBA-ADV-20241209-02_Laravel_Reflected_XSS_via_Route_Parameter_in_Debug-Mode_Error_Page" + }, + { + "type": "WEB", + "url": "http://www.openwall.com/lists/oss-security/2025/03/10/4" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/03/GHSA-9qjm-v45h-7fxq/GHSA-9qjm-v45h-7fxq.json b/advisories/unreviewed/2025/03/GHSA-9qjm-v45h-7fxq/GHSA-9qjm-v45h-7fxq.json new file mode 100644 index 00000000000..0672997ebf1 --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-9qjm-v45h-7fxq/GHSA-9qjm-v45h-7fxq.json @@ -0,0 +1,33 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-9qjm-v45h-7fxq", + "modified": "2025-03-10T18:31:56Z", + "published": "2025-03-10T18:31:56Z", + "aliases": [ + "CVE-2025-25940" + ], + "details": "VisiCut 2.1 allows code execution via Insecure XML Deserialization in the loadPlfFile method of VisicutModel.java.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-25940" + }, + { + "type": "WEB", + "url": "https://github.com/t-oster/VisiCut" + }, + { + "type": "WEB", + "url": "https://royblume.github.io/CVE-2025-25940" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-10T16:15:13Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-c3q9-q986-vrwh/GHSA-c3q9-q986-vrwh.json b/advisories/unreviewed/2025/03/GHSA-c3q9-q986-vrwh/GHSA-c3q9-q986-vrwh.json new file mode 100644 index 00000000000..21a0fe1aee0 --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-c3q9-q986-vrwh/GHSA-c3q9-q986-vrwh.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-c3q9-q986-vrwh", + "modified": "2025-03-10T18:31:57Z", + "published": "2025-03-10T18:31:57Z", + "aliases": [ + "CVE-2025-1296" + ], + "details": "Nomad Community and Nomad Enterprise (“Nomad”) are vulnerable to unintentional exposure of the workload identity token and client secret token in audit logs. This vulnerability, identified as CVE-2025-1296, is fixed in Nomad Community Edition 1.9.7 and Nomad Enterprise 1.9.7, 1.8.11, and 1.7.19.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-1296" + }, + { + "type": "WEB", + "url": "https://discuss.hashicorp.com/t/hcsec-2025-04-nomad-exposes-sensitive-workload-identity-and-client-secret-token-in-audit-logs/73737" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-532" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-10T18:15:30Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-cjhm-452j-46h2/GHSA-cjhm-452j-46h2.json b/advisories/unreviewed/2025/03/GHSA-cjhm-452j-46h2/GHSA-cjhm-452j-46h2.json new file mode 100644 index 00000000000..ea274e09600 --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-cjhm-452j-46h2/GHSA-cjhm-452j-46h2.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-cjhm-452j-46h2", + "modified": "2025-03-10T18:31:56Z", + "published": "2025-03-10T18:31:56Z", + "aliases": [ + "CVE-2024-47109" + ], + "details": "IBM Sterling File Gateway 6.0.0.0 through 6.1.2.6 and 6.2.0.0 through 6.2.0.3 UI could disclosure the installation path of the server which could aid in further attacks against the system.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47109" + }, + { + "type": "WEB", + "url": "https://www.ibm.com/support/pages/node/7185259" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-522" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-10T16:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-h337-24ff-jhf6/GHSA-h337-24ff-jhf6.json b/advisories/unreviewed/2025/03/GHSA-h337-24ff-jhf6/GHSA-h337-24ff-jhf6.json index b665403b81c..c6167242762 100644 --- a/advisories/unreviewed/2025/03/GHSA-h337-24ff-jhf6/GHSA-h337-24ff-jhf6.json +++ b/advisories/unreviewed/2025/03/GHSA-h337-24ff-jhf6/GHSA-h337-24ff-jhf6.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-h337-24ff-jhf6", - "modified": "2025-03-08T06:30:42Z", + "modified": "2025-03-10T18:31:55Z", "published": "2025-03-08T06:30:42Z", "aliases": [ "CVE-2024-13826" ], "details": "The Email Keep WordPress plugin through 1.1 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -21,7 +26,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-03-08T06:15:36Z" diff --git a/advisories/unreviewed/2025/03/GHSA-h4r5-2pfh-pcwp/GHSA-h4r5-2pfh-pcwp.json b/advisories/unreviewed/2025/03/GHSA-h4r5-2pfh-pcwp/GHSA-h4r5-2pfh-pcwp.json new file mode 100644 index 00000000000..2c11ac4c795 --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-h4r5-2pfh-pcwp/GHSA-h4r5-2pfh-pcwp.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-h4r5-2pfh-pcwp", + "modified": "2025-03-10T18:31:56Z", + "published": "2025-03-10T18:31:56Z", + "aliases": [ + "CVE-2024-55199" + ], + "details": "A Stored Cross Site Scripting (XSS) vulnerability in Celk Sistemas Celk Saude v.3.1.252.1 allows a remote attacker to store JavaScript code inside a PDF file through the file upload feature. When the file is rendered, the injected code is executed on the user's browser.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-55199" + }, + { + "type": "WEB", + "url": "https://github.com/gabriel-bri/vulnerability-research/tree/main/CVE-2024-55199" + }, + { + "type": "WEB", + "url": "https://portswigger.net/web-security/cross-site-scripting/stored" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-10T18:15:29Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-v2mw-5mch-w8c5/GHSA-v2mw-5mch-w8c5.json b/advisories/unreviewed/2025/03/GHSA-v2mw-5mch-w8c5/GHSA-v2mw-5mch-w8c5.json new file mode 100644 index 00000000000..250ad19abf9 --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-v2mw-5mch-w8c5/GHSA-v2mw-5mch-w8c5.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-v2mw-5mch-w8c5", + "modified": "2025-03-10T18:31:56Z", + "published": "2025-03-10T18:31:56Z", + "aliases": [ + "CVE-2025-25977" + ], + "details": "An issue in canvg v.4.0.2 allows an attacker to execute arbitrary code via the Constructor of the class StyleElement.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-25977" + }, + { + "type": "WEB", + "url": "https://github.com/canvg/canvg/issues/1749" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-10T16:15:13Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-x2pr-grpc-jfvm/GHSA-x2pr-grpc-jfvm.json b/advisories/unreviewed/2025/03/GHSA-x2pr-grpc-jfvm/GHSA-x2pr-grpc-jfvm.json new file mode 100644 index 00000000000..c077bbe8603 --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-x2pr-grpc-jfvm/GHSA-x2pr-grpc-jfvm.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-x2pr-grpc-jfvm", + "modified": "2025-03-10T18:31:56Z", + "published": "2025-03-10T18:31:56Z", + "aliases": [ + "CVE-2024-53307" + ], + "details": "A reflected cross-site scripting (XSS) vulnerability in the /mw/ endpoint of Evisions MAPS v6.10.2.267 allows attackers to execute arbitrary code in the context of a user's browser via injecting a crafted payload.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-53307" + }, + { + "type": "WEB", + "url": "https://gist.github.com/Xib3rR4dAr/bf754848f1cd77162f79226144b04648" + }, + { + "type": "WEB", + "url": "https://webhelp.evisions.com/releaseguides/maps/default.htm#6.11/6.11%20Release%20Notes.htm?TocPath=MAPS%25206.11%2520Release%2520Guide%257C_____3" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-10T18:15:29Z" + } +} \ No newline at end of file