Publish Advisories

GHSA-8m8m-98c9-vw7q
GHSA-hj78-p4h7-m5fv
GHSA-hp5j-2585-qx6g
GHSA-q53r-9hh9-w277
GHSA-8m8m-98c9-vw7q
This commit is contained in:
advisory-database[bot]
2025-01-28 19:16:19 +00:00
parent 3a74993285
commit 1ed94bbaa7
5 changed files with 244 additions and 60 deletions
@@ -0,0 +1,76 @@
{
"schema_version": "1.4.0",
"id": "GHSA-8m8m-98c9-vw7q",
"modified": "2025-01-28T19:14:30Z",
"published": "2025-01-28T15:31:57Z",
"withdrawn": "2025-01-28T19:14:30Z",
"aliases": [],
"summary": "Duplicate Advisory: pimcore/customer-data-framework vulnerable to SQL Injection: Hibernate",
"details": "## Duplicate Advisory\nThis advisory has been withdrawn because it is a duplicate of GHSA-q53r-9hh9-w277. This link is maintained to preserve external references.\n\n## Original Description\nA vulnerability, which was classified as critical, has been found in Pimcore customer-data-framework up to 4.2.0. Affected by this issue is some unknown functionality of the file /admin/customermanagementframework/customers/list. The manipulation of the argument filterDefinition/filter leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 4.2.1 is able to address this issue. It is recommended to upgrade the affected component.",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L"
},
{
"type": "CVSS_V4",
"score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
}
],
"affected": [
{
"package": {
"ecosystem": "Packagist",
"name": "pimcore/customer-data-framework"
},
"ranges": [
{
"type": "ECOSYSTEM",
"events": [
{
"introduced": "0"
},
{
"fixed": "4.2.1"
}
]
}
]
}
],
"references": [
{
"type": "WEB",
"url": "https://github.com/pimcore/pimcore/security/advisories/GHSA-q53r-9hh9-w277"
},
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11956"
},
{
"type": "WEB",
"url": "https://github.com/pimcore/customer-data-framework/releases/tag/v4.2.1"
},
{
"type": "WEB",
"url": "https://vuldb.com/?ctiid.293906"
},
{
"type": "WEB",
"url": "https://vuldb.com/?id.293906"
},
{
"type": "WEB",
"url": "https://vuldb.com/?submit.451863"
}
],
"database_specific": {
"cwe_ids": [
"CWE-74"
],
"severity": "MODERATE",
"github_reviewed": true,
"github_reviewed_at": "2025-01-28T19:14:30Z",
"nvd_published_at": "2025-01-28T14:15:29Z"
}
}
@@ -0,0 +1,58 @@
{
"schema_version": "1.4.0",
"id": "GHSA-hj78-p4h7-m5fv",
"modified": "2025-01-28T19:15:44Z",
"published": "2025-01-28T19:15:44Z",
"aliases": [
"CVE-2025-24856"
],
"summary": "TYPO3-EXT-SA-2025-001: Account Takeover in extension \"OpenID Connect Authentication\" (oidc)",
"details": "## Problem Description\nA vulnerability in the account linking logic of the extension allows a pre-hijacking attack leading to Account Takeover. The attack can only be exploited if the following requirements are met:\n\n- An attacker can anticipate the email address of the user.\n- An attacker can register a public frontend user account using that email address before the user's first OIDC login.\n- The IDP returns the field email containing the email address of the user\n\n## Solution\nAn updated versions 4.0.0 is available from the TYPO3 extension manager, packagist and at \nhttps://extensions.typo3.org/extension/download/oidc/4.0.0/zip\n\nUsers of the extension are advised to update the extension as soon as possible.",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:L/A:N"
}
],
"affected": [
{
"package": {
"ecosystem": "Packagist",
"name": "causal/oidc"
},
"ranges": [
{
"type": "ECOSYSTEM",
"events": [
{
"introduced": "3.0.0"
},
{
"fixed": "4.0.0"
}
]
}
]
}
],
"references": [
{
"type": "WEB",
"url": "https://github.com/FriendsOfPHP/security-advisories/blob/master/causal/oidc/CVE-2025-24856.yaml"
},
{
"type": "WEB",
"url": "https://typo3.org/security/advisory/typo3-ext-sa-2025-001"
}
],
"database_specific": {
"cwe_ids": [
"CWE-288",
"CWE-639"
],
"severity": "MODERATE",
"github_reviewed": true,
"github_reviewed_at": "2025-01-28T19:15:44Z",
"nvd_published_at": null
}
}
@@ -1,11 +1,12 @@
{
"schema_version": "1.4.0",
"id": "GHSA-hp5j-2585-qx6g",
"modified": "2025-01-28T12:31:07Z",
"modified": "2025-01-28T19:15:28Z",
"published": "2025-01-28T12:31:07Z",
"aliases": [
"CVE-2025-0750"
],
"summary": "CRI-O Path Traversal vulnerability",
"details": "A vulnerability was found in CRI-O. A path traversal issue in the log management functions (UnMountPodLogs and LinkContainerLogs) may allow an attacker with permissions to create and delete Pods to unmount arbitrary host paths, leading to node-level denial of service by unmounting critical system directories.",
"severity": [
{
@@ -13,7 +14,27 @@
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:H"
}
],
"affected": [],
"affected": [
{
"package": {
"ecosystem": "Go",
"name": "github.com/cri-o/cri-o"
},
"ranges": [
{
"type": "ECOSYSTEM",
"events": [
{
"introduced": "0"
},
{
"last_affected": "1.33.0"
}
]
}
]
}
],
"references": [
{
"type": "ADVISORY",
@@ -26,6 +47,10 @@
{
"type": "WEB",
"url": "https://bugzilla.redhat.com/show_bug.cgi?id=2339405"
},
{
"type": "PACKAGE",
"url": "https://github.com/cri-o/cri-o"
}
],
"database_specific": {
@@ -33,8 +58,8 @@
"CWE-22"
],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"github_reviewed": true,
"github_reviewed_at": "2025-01-28T19:15:28Z",
"nvd_published_at": "2025-01-28T10:15:09Z"
}
}
File diff suppressed because one or more lines are too long
@@ -1,56 +0,0 @@
{
"schema_version": "1.4.0",
"id": "GHSA-8m8m-98c9-vw7q",
"modified": "2025-01-28T15:31:57Z",
"published": "2025-01-28T15:31:57Z",
"aliases": [
"CVE-2024-11956"
],
"details": "A vulnerability, which was classified as critical, has been found in Pimcore customer-data-framework up to 4.2.0. Affected by this issue is some unknown functionality of the file /admin/customermanagementframework/customers/list. The manipulation of the argument filterDefinition/filter leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 4.2.1 is able to address this issue. It is recommended to upgrade the affected component.",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L"
},
{
"type": "CVSS_V4",
"score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
}
],
"affected": [],
"references": [
{
"type": "WEB",
"url": "https://github.com/pimcore/pimcore/security/advisories/GHSA-q53r-9hh9-w277"
},
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11956"
},
{
"type": "WEB",
"url": "https://github.com/pimcore/customer-data-framework/releases/tag/v4.2.1"
},
{
"type": "WEB",
"url": "https://vuldb.com/?ctiid.293906"
},
{
"type": "WEB",
"url": "https://vuldb.com/?id.293906"
},
{
"type": "WEB",
"url": "https://vuldb.com/?submit.451863"
}
],
"database_specific": {
"cwe_ids": [
"CWE-74"
],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2025-01-28T14:15:29Z"
}
}