mirror of
https://github.com/netbirdio/advisory-database.git
synced 2026-05-22 18:04:22 -07:00
Advisory Database Sync
This commit is contained in:
@@ -1,13 +1,18 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-2rvj-j9cf-63c3",
|
||||
"modified": "2022-05-24T19:17:56Z",
|
||||
"modified": "2025-04-25T21:30:35Z",
|
||||
"published": "2022-05-24T19:17:56Z",
|
||||
"aliases": [
|
||||
"CVE-2021-39343"
|
||||
],
|
||||
"details": "The MPL-Publisher WordPress plugin is vulnerable to Stored Cross-Site Scripting due to insufficient input validation and sanitization via several parameters found in the ~/libs/PublisherController.php file which allowed attackers with administrative user access to inject arbitrary web scripts, in versions up to and including 1.30.2. This affects multi-site installations where unfiltered_html is disabled for administrators, and sites where unfiltered_html is disabled.",
|
||||
"severity": [],
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N"
|
||||
}
|
||||
],
|
||||
"affected": [],
|
||||
"references": [
|
||||
{
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-3w8w-mhj7-j5rc",
|
||||
"modified": "2022-12-01T15:30:19Z",
|
||||
"modified": "2025-04-25T21:30:47Z",
|
||||
"published": "2022-11-24T00:30:51Z",
|
||||
"aliases": [
|
||||
"CVE-2022-45873"
|
||||
@@ -31,6 +31,10 @@
|
||||
"type": "WEB",
|
||||
"url": "https://github.com/systemd/systemd/commit/076b807be472630692c5348c60d0c2b7b28ad437"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/MS5N5SLYAHKENLAJWYBDKU55ICU3SVZF"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/MS5N5SLYAHKENLAJWYBDKU55ICU3SVZF"
|
||||
|
||||
@@ -26,7 +26,8 @@
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
"CWE-77"
|
||||
"CWE-77",
|
||||
"CWE-78"
|
||||
],
|
||||
"severity": "CRITICAL",
|
||||
"github_reviewed": false,
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-57j3-gx8q-fwcj",
|
||||
"modified": "2022-12-20T06:30:37Z",
|
||||
"modified": "2025-04-25T21:30:46Z",
|
||||
"published": "2022-11-23T21:30:31Z",
|
||||
"aliases": [
|
||||
"CVE-2022-44789"
|
||||
@@ -31,6 +31,10 @@
|
||||
"type": "WEB",
|
||||
"url": "https://github.com/ccxvii/mujs/releases/tag/1.3.2"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/MC6PLHTXHZ7GW7QQGTLBHLXL47UHTHXO"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/MC6PLHTXHZ7GW7QQGTLBHLXL47UHTHXO"
|
||||
@@ -42,7 +46,8 @@
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
"CWE-119"
|
||||
"CWE-119",
|
||||
"CWE-787"
|
||||
],
|
||||
"severity": "HIGH",
|
||||
"github_reviewed": false,
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-6q4m-r7w6-3f7x",
|
||||
"modified": "2022-11-23T18:30:28Z",
|
||||
"modified": "2025-04-25T21:30:35Z",
|
||||
"published": "2022-11-22T21:30:17Z",
|
||||
"aliases": [
|
||||
"CVE-2022-45331"
|
||||
|
||||
@@ -29,7 +29,9 @@
|
||||
}
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [],
|
||||
"cwe_ids": [
|
||||
"CWE-94"
|
||||
],
|
||||
"severity": "HIGH",
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-8h9r-h75m-6w75",
|
||||
"modified": "2022-11-28T21:30:23Z",
|
||||
"modified": "2025-04-25T21:30:45Z",
|
||||
"published": "2022-11-23T21:30:32Z",
|
||||
"aliases": [
|
||||
"CVE-2022-45866"
|
||||
@@ -35,6 +35,18 @@
|
||||
"type": "WEB",
|
||||
"url": "https://github.com/PierreLvx/qpress/compare/20170415...20220819"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BQWF7635AJSDKEIGLB73XAH643POGTFY"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/G4RXO3VYIFRTNIFHWIAZWND6ZXQ5OYOB"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UUZ73XT2FXLHC7I4ODLOVB4O4QN7Q7JB"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/BQWF7635AJSDKEIGLB73XAH643POGTFY"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-chh6-j7qm-5f43",
|
||||
"modified": "2022-11-30T06:30:26Z",
|
||||
"modified": "2025-04-25T21:30:51Z",
|
||||
"published": "2022-11-29T00:30:18Z",
|
||||
"aliases": [
|
||||
"CVE-2022-45221"
|
||||
@@ -19,6 +19,10 @@
|
||||
"type": "ADVISORY",
|
||||
"url": "https://nvd.nist.gov/vuln/detail/CVE-2022-45221"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://medium.com/%40just0rg/web-based-student-clearance-system-in-php-free-source-code-v1-0-unrestricted-input-leads-to-xss-5802ead12124"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://medium.com/@just0rg/web-based-student-clearance-system-in-php-free-source-code-v1-0-unrestricted-input-leads-to-xss-5802ead12124"
|
||||
|
||||
@@ -26,6 +26,7 @@
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
"CWE-22",
|
||||
"CWE-732"
|
||||
],
|
||||
"severity": "MODERATE",
|
||||
|
||||
@@ -26,7 +26,8 @@
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
"CWE-77"
|
||||
"CWE-77",
|
||||
"CWE-78"
|
||||
],
|
||||
"severity": "CRITICAL",
|
||||
"github_reviewed": false,
|
||||
|
||||
@@ -26,7 +26,8 @@
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
"CWE-77"
|
||||
"CWE-77",
|
||||
"CWE-78"
|
||||
],
|
||||
"severity": "CRITICAL",
|
||||
"github_reviewed": false,
|
||||
|
||||
@@ -26,6 +26,7 @@
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
"CWE-425",
|
||||
"CWE-522"
|
||||
],
|
||||
"severity": "CRITICAL",
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-mq8h-fhgg-8mwv",
|
||||
"modified": "2022-11-23T18:30:28Z",
|
||||
"modified": "2025-04-25T21:30:35Z",
|
||||
"published": "2022-11-22T21:30:17Z",
|
||||
"aliases": [
|
||||
"CVE-2022-45330"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-p5m9-4j59-gqpc",
|
||||
"modified": "2022-11-23T18:30:28Z",
|
||||
"modified": "2025-04-25T21:30:36Z",
|
||||
"published": "2022-11-22T21:30:17Z",
|
||||
"aliases": [
|
||||
"CVE-2022-45535"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-pmw2-qfvq-r2cq",
|
||||
"modified": "2022-11-30T06:30:27Z",
|
||||
"modified": "2025-04-25T21:30:49Z",
|
||||
"published": "2022-11-28T15:30:24Z",
|
||||
"aliases": [
|
||||
"CVE-2022-31877"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-q43r-7xx8-jwr7",
|
||||
"modified": "2022-11-23T18:30:29Z",
|
||||
"modified": "2025-04-25T21:30:36Z",
|
||||
"published": "2022-11-22T21:30:17Z",
|
||||
"aliases": [
|
||||
"CVE-2022-45529"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-qvj8-qcrx-49c6",
|
||||
"modified": "2022-11-23T21:30:33Z",
|
||||
"modified": "2025-04-25T21:30:35Z",
|
||||
"published": "2022-11-22T15:30:25Z",
|
||||
"aliases": [
|
||||
"CVE-2022-44808"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-vf9x-mm3w-v4c3",
|
||||
"modified": "2022-11-26T06:31:18Z",
|
||||
"modified": "2025-04-25T21:30:38Z",
|
||||
"published": "2022-11-23T06:30:24Z",
|
||||
"aliases": [
|
||||
"CVE-2022-45472"
|
||||
|
||||
@@ -26,7 +26,8 @@
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
"CWE-77"
|
||||
"CWE-77",
|
||||
"CWE-78"
|
||||
],
|
||||
"severity": "CRITICAL",
|
||||
"github_reviewed": false,
|
||||
|
||||
@@ -30,6 +30,7 @@
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
"CWE-121",
|
||||
"CWE-787"
|
||||
],
|
||||
"severity": "HIGH",
|
||||
|
||||
Some files were not shown because too many files have changed in this diff Show More
Reference in New Issue
Block a user