Advisory Database Sync

This commit is contained in:
advisory-database[bot]
2025-04-25 21:32:28 +00:00
parent 7dff7214d8
commit 1f27182172
37 changed files with 405 additions and 31 deletions
@@ -1,13 +1,18 @@
{
"schema_version": "1.4.0",
"id": "GHSA-2rvj-j9cf-63c3",
"modified": "2022-05-24T19:17:56Z",
"modified": "2025-04-25T21:30:35Z",
"published": "2022-05-24T19:17:56Z",
"aliases": [
"CVE-2021-39343"
],
"details": "The MPL-Publisher WordPress plugin is vulnerable to Stored Cross-Site Scripting due to insufficient input validation and sanitization via several parameters found in the ~/libs/PublisherController.php file which allowed attackers with administrative user access to inject arbitrary web scripts, in versions up to and including 1.30.2. This affects multi-site installations where unfiltered_html is disabled for administrators, and sites where unfiltered_html is disabled.",
"severity": [],
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N"
}
],
"affected": [],
"references": [
{
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-3w8w-mhj7-j5rc",
"modified": "2022-12-01T15:30:19Z",
"modified": "2025-04-25T21:30:47Z",
"published": "2022-11-24T00:30:51Z",
"aliases": [
"CVE-2022-45873"
@@ -31,6 +31,10 @@
"type": "WEB",
"url": "https://github.com/systemd/systemd/commit/076b807be472630692c5348c60d0c2b7b28ad437"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/MS5N5SLYAHKENLAJWYBDKU55ICU3SVZF"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/MS5N5SLYAHKENLAJWYBDKU55ICU3SVZF"
@@ -26,7 +26,8 @@
],
"database_specific": {
"cwe_ids": [
"CWE-77"
"CWE-77",
"CWE-78"
],
"severity": "CRITICAL",
"github_reviewed": false,
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-57j3-gx8q-fwcj",
"modified": "2022-12-20T06:30:37Z",
"modified": "2025-04-25T21:30:46Z",
"published": "2022-11-23T21:30:31Z",
"aliases": [
"CVE-2022-44789"
@@ -31,6 +31,10 @@
"type": "WEB",
"url": "https://github.com/ccxvii/mujs/releases/tag/1.3.2"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/MC6PLHTXHZ7GW7QQGTLBHLXL47UHTHXO"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/MC6PLHTXHZ7GW7QQGTLBHLXL47UHTHXO"
@@ -42,7 +46,8 @@
],
"database_specific": {
"cwe_ids": [
"CWE-119"
"CWE-119",
"CWE-787"
],
"severity": "HIGH",
"github_reviewed": false,
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-6q4m-r7w6-3f7x",
"modified": "2022-11-23T18:30:28Z",
"modified": "2025-04-25T21:30:35Z",
"published": "2022-11-22T21:30:17Z",
"aliases": [
"CVE-2022-45331"
@@ -29,7 +29,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-94"
],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-8h9r-h75m-6w75",
"modified": "2022-11-28T21:30:23Z",
"modified": "2025-04-25T21:30:45Z",
"published": "2022-11-23T21:30:32Z",
"aliases": [
"CVE-2022-45866"
@@ -35,6 +35,18 @@
"type": "WEB",
"url": "https://github.com/PierreLvx/qpress/compare/20170415...20220819"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BQWF7635AJSDKEIGLB73XAH643POGTFY"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/G4RXO3VYIFRTNIFHWIAZWND6ZXQ5OYOB"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UUZ73XT2FXLHC7I4ODLOVB4O4QN7Q7JB"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/BQWF7635AJSDKEIGLB73XAH643POGTFY"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-chh6-j7qm-5f43",
"modified": "2022-11-30T06:30:26Z",
"modified": "2025-04-25T21:30:51Z",
"published": "2022-11-29T00:30:18Z",
"aliases": [
"CVE-2022-45221"
@@ -19,6 +19,10 @@
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2022-45221"
},
{
"type": "WEB",
"url": "https://medium.com/%40just0rg/web-based-student-clearance-system-in-php-free-source-code-v1-0-unrestricted-input-leads-to-xss-5802ead12124"
},
{
"type": "WEB",
"url": "https://medium.com/@just0rg/web-based-student-clearance-system-in-php-free-source-code-v1-0-unrestricted-input-leads-to-xss-5802ead12124"
@@ -26,6 +26,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-22",
"CWE-732"
],
"severity": "MODERATE",
@@ -26,7 +26,8 @@
],
"database_specific": {
"cwe_ids": [
"CWE-77"
"CWE-77",
"CWE-78"
],
"severity": "CRITICAL",
"github_reviewed": false,
@@ -26,7 +26,8 @@
],
"database_specific": {
"cwe_ids": [
"CWE-77"
"CWE-77",
"CWE-78"
],
"severity": "CRITICAL",
"github_reviewed": false,
@@ -26,6 +26,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-425",
"CWE-522"
],
"severity": "CRITICAL",
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-mq8h-fhgg-8mwv",
"modified": "2022-11-23T18:30:28Z",
"modified": "2025-04-25T21:30:35Z",
"published": "2022-11-22T21:30:17Z",
"aliases": [
"CVE-2022-45330"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-p5m9-4j59-gqpc",
"modified": "2022-11-23T18:30:28Z",
"modified": "2025-04-25T21:30:36Z",
"published": "2022-11-22T21:30:17Z",
"aliases": [
"CVE-2022-45535"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-pmw2-qfvq-r2cq",
"modified": "2022-11-30T06:30:27Z",
"modified": "2025-04-25T21:30:49Z",
"published": "2022-11-28T15:30:24Z",
"aliases": [
"CVE-2022-31877"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-q43r-7xx8-jwr7",
"modified": "2022-11-23T18:30:29Z",
"modified": "2025-04-25T21:30:36Z",
"published": "2022-11-22T21:30:17Z",
"aliases": [
"CVE-2022-45529"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-qvj8-qcrx-49c6",
"modified": "2022-11-23T21:30:33Z",
"modified": "2025-04-25T21:30:35Z",
"published": "2022-11-22T15:30:25Z",
"aliases": [
"CVE-2022-44808"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-vf9x-mm3w-v4c3",
"modified": "2022-11-26T06:31:18Z",
"modified": "2025-04-25T21:30:38Z",
"published": "2022-11-23T06:30:24Z",
"aliases": [
"CVE-2022-45472"
@@ -26,7 +26,8 @@
],
"database_specific": {
"cwe_ids": [
"CWE-77"
"CWE-77",
"CWE-78"
],
"severity": "CRITICAL",
"github_reviewed": false,
@@ -30,6 +30,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-121",
"CWE-787"
],
"severity": "HIGH",

Some files were not shown because too many files have changed in this diff Show More