From 1f2718217255f3e4c43306f25c239c333cd7ad94 Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Fri, 25 Apr 2025 21:32:28 +0000 Subject: [PATCH] Advisory Database Sync --- .../GHSA-2rvj-j9cf-63c3.json | 9 ++++- .../GHSA-3w8w-mhj7-j5rc.json | 6 ++- .../GHSA-57fv-v3pr-f2xc.json | 3 +- .../GHSA-57j3-gx8q-fwcj.json | 9 ++++- .../GHSA-6q4m-r7w6-3f7x.json | 2 +- .../GHSA-898w-r5qq-x64c.json | 4 +- .../GHSA-8h9r-h75m-6w75.json | 14 ++++++- .../GHSA-chh6-j7qm-5f43.json | 6 ++- .../GHSA-fm8r-8cvr-58v5.json | 1 + .../GHSA-gp3x-qgj2-chx4.json | 3 +- .../GHSA-jgrh-8xrq-472m.json | 3 +- .../GHSA-jp98-7c67-gjqv.json | 1 + .../GHSA-mq8h-fhgg-8mwv.json | 2 +- .../GHSA-p5m9-4j59-gqpc.json | 2 +- .../GHSA-pmw2-qfvq-r2cq.json | 2 +- .../GHSA-q43r-7xx8-jwr7.json | 2 +- .../GHSA-qvj8-qcrx-49c6.json | 2 +- .../GHSA-vf9x-mm3w-v4c3.json | 2 +- .../GHSA-wc5r-583w-9mrq.json | 3 +- .../GHSA-wm2m-ch4m-97cr.json | 1 + .../GHSA-wqm5-v7vh-9383.json | 4 +- .../GHSA-57f3-4qgr-hcrw.json | 1 + .../GHSA-95hr-886r-52mf.json | 6 ++- .../GHSA-m3q9-44rg-xw34.json | 4 +- .../GHSA-hqvr-h7vg-6665.json | 11 +++-- .../GHSA-8xp8-gmmj-xc8w.json | 10 ++++- .../GHSA-4c3f-c9v6-jqxm.json | 11 +++-- .../GHSA-4rmx-r8gj-vj26.json | 29 ++++++++++++++ .../GHSA-5cwq-8g5w-gmhm.json | 29 ++++++++++++++ .../GHSA-8343-fjcx-gwpw.json | 29 ++++++++++++++ .../GHSA-8pjq-x38c-gm89.json | 29 ++++++++++++++ .../GHSA-h656-x889-hh62.json | 29 ++++++++++++++ .../GHSA-pp5v-6vv5-vc6c.json | 29 ++++++++++++++ .../GHSA-q3v8-fm8w-jqcp.json | 40 +++++++++++++++++++ .../GHSA-qjrp-xr9r-wmrg.json | 40 +++++++++++++++++++ .../GHSA-r58q-xq2p-rf3w.json | 29 ++++++++++++++ .../GHSA-r7f2-jfpq-8j9r.json | 29 ++++++++++++++ 37 files changed, 405 insertions(+), 31 deletions(-) create mode 100644 advisories/unreviewed/2025/04/GHSA-4rmx-r8gj-vj26/GHSA-4rmx-r8gj-vj26.json create mode 100644 advisories/unreviewed/2025/04/GHSA-5cwq-8g5w-gmhm/GHSA-5cwq-8g5w-gmhm.json create mode 100644 advisories/unreviewed/2025/04/GHSA-8343-fjcx-gwpw/GHSA-8343-fjcx-gwpw.json create mode 100644 advisories/unreviewed/2025/04/GHSA-8pjq-x38c-gm89/GHSA-8pjq-x38c-gm89.json create mode 100644 advisories/unreviewed/2025/04/GHSA-h656-x889-hh62/GHSA-h656-x889-hh62.json create mode 100644 advisories/unreviewed/2025/04/GHSA-pp5v-6vv5-vc6c/GHSA-pp5v-6vv5-vc6c.json create mode 100644 advisories/unreviewed/2025/04/GHSA-q3v8-fm8w-jqcp/GHSA-q3v8-fm8w-jqcp.json create mode 100644 advisories/unreviewed/2025/04/GHSA-qjrp-xr9r-wmrg/GHSA-qjrp-xr9r-wmrg.json create mode 100644 advisories/unreviewed/2025/04/GHSA-r58q-xq2p-rf3w/GHSA-r58q-xq2p-rf3w.json create mode 100644 advisories/unreviewed/2025/04/GHSA-r7f2-jfpq-8j9r/GHSA-r7f2-jfpq-8j9r.json diff --git a/advisories/unreviewed/2022/05/GHSA-2rvj-j9cf-63c3/GHSA-2rvj-j9cf-63c3.json b/advisories/unreviewed/2022/05/GHSA-2rvj-j9cf-63c3/GHSA-2rvj-j9cf-63c3.json index 61e4cd284c1..88f0ad46299 100644 --- a/advisories/unreviewed/2022/05/GHSA-2rvj-j9cf-63c3/GHSA-2rvj-j9cf-63c3.json +++ b/advisories/unreviewed/2022/05/GHSA-2rvj-j9cf-63c3/GHSA-2rvj-j9cf-63c3.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-2rvj-j9cf-63c3", - "modified": "2022-05-24T19:17:56Z", + "modified": "2025-04-25T21:30:35Z", "published": "2022-05-24T19:17:56Z", "aliases": [ "CVE-2021-39343" ], "details": "The MPL-Publisher WordPress plugin is vulnerable to Stored Cross-Site Scripting due to insufficient input validation and sanitization via several parameters found in the ~/libs/PublisherController.php file which allowed attackers with administrative user access to inject arbitrary web scripts, in versions up to and including 1.30.2. This affects multi-site installations where unfiltered_html is disabled for administrators, and sites where unfiltered_html is disabled.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { diff --git a/advisories/unreviewed/2022/11/GHSA-3w8w-mhj7-j5rc/GHSA-3w8w-mhj7-j5rc.json b/advisories/unreviewed/2022/11/GHSA-3w8w-mhj7-j5rc/GHSA-3w8w-mhj7-j5rc.json index f3e95836e49..560130a8a79 100644 --- a/advisories/unreviewed/2022/11/GHSA-3w8w-mhj7-j5rc/GHSA-3w8w-mhj7-j5rc.json +++ b/advisories/unreviewed/2022/11/GHSA-3w8w-mhj7-j5rc/GHSA-3w8w-mhj7-j5rc.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-3w8w-mhj7-j5rc", - "modified": "2022-12-01T15:30:19Z", + "modified": "2025-04-25T21:30:47Z", "published": "2022-11-24T00:30:51Z", "aliases": [ "CVE-2022-45873" @@ -31,6 +31,10 @@ "type": "WEB", "url": "https://github.com/systemd/systemd/commit/076b807be472630692c5348c60d0c2b7b28ad437" }, + { + "type": "WEB", + "url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/MS5N5SLYAHKENLAJWYBDKU55ICU3SVZF" + }, { "type": "WEB", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/MS5N5SLYAHKENLAJWYBDKU55ICU3SVZF" diff --git a/advisories/unreviewed/2022/11/GHSA-57fv-v3pr-f2xc/GHSA-57fv-v3pr-f2xc.json b/advisories/unreviewed/2022/11/GHSA-57fv-v3pr-f2xc/GHSA-57fv-v3pr-f2xc.json index c62bb8e097f..a91a6919a86 100644 --- a/advisories/unreviewed/2022/11/GHSA-57fv-v3pr-f2xc/GHSA-57fv-v3pr-f2xc.json +++ b/advisories/unreviewed/2022/11/GHSA-57fv-v3pr-f2xc/GHSA-57fv-v3pr-f2xc.json @@ -26,7 +26,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-77" + "CWE-77", + "CWE-78" ], "severity": "CRITICAL", "github_reviewed": false, diff --git a/advisories/unreviewed/2022/11/GHSA-57j3-gx8q-fwcj/GHSA-57j3-gx8q-fwcj.json b/advisories/unreviewed/2022/11/GHSA-57j3-gx8q-fwcj/GHSA-57j3-gx8q-fwcj.json index 3b90023a8ab..27b798d4d5f 100644 --- a/advisories/unreviewed/2022/11/GHSA-57j3-gx8q-fwcj/GHSA-57j3-gx8q-fwcj.json +++ b/advisories/unreviewed/2022/11/GHSA-57j3-gx8q-fwcj/GHSA-57j3-gx8q-fwcj.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-57j3-gx8q-fwcj", - "modified": "2022-12-20T06:30:37Z", + "modified": "2025-04-25T21:30:46Z", "published": "2022-11-23T21:30:31Z", "aliases": [ "CVE-2022-44789" @@ -31,6 +31,10 @@ "type": "WEB", "url": "https://github.com/ccxvii/mujs/releases/tag/1.3.2" }, + { + "type": "WEB", + "url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/MC6PLHTXHZ7GW7QQGTLBHLXL47UHTHXO" + }, { "type": "WEB", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/MC6PLHTXHZ7GW7QQGTLBHLXL47UHTHXO" @@ -42,7 +46,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-119" + "CWE-119", + "CWE-787" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2022/11/GHSA-6q4m-r7w6-3f7x/GHSA-6q4m-r7w6-3f7x.json b/advisories/unreviewed/2022/11/GHSA-6q4m-r7w6-3f7x/GHSA-6q4m-r7w6-3f7x.json index 29b1821c1cd..d8e6a165218 100644 --- a/advisories/unreviewed/2022/11/GHSA-6q4m-r7w6-3f7x/GHSA-6q4m-r7w6-3f7x.json +++ b/advisories/unreviewed/2022/11/GHSA-6q4m-r7w6-3f7x/GHSA-6q4m-r7w6-3f7x.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-6q4m-r7w6-3f7x", - "modified": "2022-11-23T18:30:28Z", + "modified": "2025-04-25T21:30:35Z", "published": "2022-11-22T21:30:17Z", "aliases": [ "CVE-2022-45331" diff --git a/advisories/unreviewed/2022/11/GHSA-898w-r5qq-x64c/GHSA-898w-r5qq-x64c.json b/advisories/unreviewed/2022/11/GHSA-898w-r5qq-x64c/GHSA-898w-r5qq-x64c.json index 017483d1885..58d43f35f89 100644 --- a/advisories/unreviewed/2022/11/GHSA-898w-r5qq-x64c/GHSA-898w-r5qq-x64c.json +++ b/advisories/unreviewed/2022/11/GHSA-898w-r5qq-x64c/GHSA-898w-r5qq-x64c.json @@ -29,7 +29,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-94" + ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/11/GHSA-8h9r-h75m-6w75/GHSA-8h9r-h75m-6w75.json b/advisories/unreviewed/2022/11/GHSA-8h9r-h75m-6w75/GHSA-8h9r-h75m-6w75.json index 2c673c3888f..7d0ea119b52 100644 --- a/advisories/unreviewed/2022/11/GHSA-8h9r-h75m-6w75/GHSA-8h9r-h75m-6w75.json +++ b/advisories/unreviewed/2022/11/GHSA-8h9r-h75m-6w75/GHSA-8h9r-h75m-6w75.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-8h9r-h75m-6w75", - "modified": "2022-11-28T21:30:23Z", + "modified": "2025-04-25T21:30:45Z", "published": "2022-11-23T21:30:32Z", "aliases": [ "CVE-2022-45866" @@ -35,6 +35,18 @@ "type": "WEB", "url": "https://github.com/PierreLvx/qpress/compare/20170415...20220819" }, + { + "type": "WEB", + "url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BQWF7635AJSDKEIGLB73XAH643POGTFY" + }, + { + "type": "WEB", + "url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/G4RXO3VYIFRTNIFHWIAZWND6ZXQ5OYOB" + }, + { + "type": "WEB", + "url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UUZ73XT2FXLHC7I4ODLOVB4O4QN7Q7JB" + }, { "type": "WEB", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/BQWF7635AJSDKEIGLB73XAH643POGTFY" diff --git a/advisories/unreviewed/2022/11/GHSA-chh6-j7qm-5f43/GHSA-chh6-j7qm-5f43.json b/advisories/unreviewed/2022/11/GHSA-chh6-j7qm-5f43/GHSA-chh6-j7qm-5f43.json index 8f2d3e6e082..48175ee9c5a 100644 --- a/advisories/unreviewed/2022/11/GHSA-chh6-j7qm-5f43/GHSA-chh6-j7qm-5f43.json +++ b/advisories/unreviewed/2022/11/GHSA-chh6-j7qm-5f43/GHSA-chh6-j7qm-5f43.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-chh6-j7qm-5f43", - "modified": "2022-11-30T06:30:26Z", + "modified": "2025-04-25T21:30:51Z", "published": "2022-11-29T00:30:18Z", "aliases": [ "CVE-2022-45221" @@ -19,6 +19,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-45221" }, + { + "type": "WEB", + "url": "https://medium.com/%40just0rg/web-based-student-clearance-system-in-php-free-source-code-v1-0-unrestricted-input-leads-to-xss-5802ead12124" + }, { "type": "WEB", "url": "https://medium.com/@just0rg/web-based-student-clearance-system-in-php-free-source-code-v1-0-unrestricted-input-leads-to-xss-5802ead12124" diff --git a/advisories/unreviewed/2022/11/GHSA-fm8r-8cvr-58v5/GHSA-fm8r-8cvr-58v5.json b/advisories/unreviewed/2022/11/GHSA-fm8r-8cvr-58v5/GHSA-fm8r-8cvr-58v5.json index 18c0bcaefed..bf754bc7fb2 100644 --- a/advisories/unreviewed/2022/11/GHSA-fm8r-8cvr-58v5/GHSA-fm8r-8cvr-58v5.json +++ b/advisories/unreviewed/2022/11/GHSA-fm8r-8cvr-58v5/GHSA-fm8r-8cvr-58v5.json @@ -26,6 +26,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-22", "CWE-732" ], "severity": "MODERATE", diff --git a/advisories/unreviewed/2022/11/GHSA-gp3x-qgj2-chx4/GHSA-gp3x-qgj2-chx4.json b/advisories/unreviewed/2022/11/GHSA-gp3x-qgj2-chx4/GHSA-gp3x-qgj2-chx4.json index 964940e113d..f6ad4780a00 100644 --- a/advisories/unreviewed/2022/11/GHSA-gp3x-qgj2-chx4/GHSA-gp3x-qgj2-chx4.json +++ b/advisories/unreviewed/2022/11/GHSA-gp3x-qgj2-chx4/GHSA-gp3x-qgj2-chx4.json @@ -26,7 +26,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-77" + "CWE-77", + "CWE-78" ], "severity": "CRITICAL", "github_reviewed": false, diff --git a/advisories/unreviewed/2022/11/GHSA-jgrh-8xrq-472m/GHSA-jgrh-8xrq-472m.json b/advisories/unreviewed/2022/11/GHSA-jgrh-8xrq-472m/GHSA-jgrh-8xrq-472m.json index 32e70ade6da..9075304dc46 100644 --- a/advisories/unreviewed/2022/11/GHSA-jgrh-8xrq-472m/GHSA-jgrh-8xrq-472m.json +++ b/advisories/unreviewed/2022/11/GHSA-jgrh-8xrq-472m/GHSA-jgrh-8xrq-472m.json @@ -26,7 +26,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-77" + "CWE-77", + "CWE-78" ], "severity": "CRITICAL", "github_reviewed": false, diff --git a/advisories/unreviewed/2022/11/GHSA-jp98-7c67-gjqv/GHSA-jp98-7c67-gjqv.json b/advisories/unreviewed/2022/11/GHSA-jp98-7c67-gjqv/GHSA-jp98-7c67-gjqv.json index d9d4f955cf1..e906dbfbcf0 100644 --- a/advisories/unreviewed/2022/11/GHSA-jp98-7c67-gjqv/GHSA-jp98-7c67-gjqv.json +++ b/advisories/unreviewed/2022/11/GHSA-jp98-7c67-gjqv/GHSA-jp98-7c67-gjqv.json @@ -26,6 +26,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-425", "CWE-522" ], "severity": "CRITICAL", diff --git a/advisories/unreviewed/2022/11/GHSA-mq8h-fhgg-8mwv/GHSA-mq8h-fhgg-8mwv.json b/advisories/unreviewed/2022/11/GHSA-mq8h-fhgg-8mwv/GHSA-mq8h-fhgg-8mwv.json index c06e53f8744..5eafa0510d2 100644 --- a/advisories/unreviewed/2022/11/GHSA-mq8h-fhgg-8mwv/GHSA-mq8h-fhgg-8mwv.json +++ b/advisories/unreviewed/2022/11/GHSA-mq8h-fhgg-8mwv/GHSA-mq8h-fhgg-8mwv.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-mq8h-fhgg-8mwv", - "modified": "2022-11-23T18:30:28Z", + "modified": "2025-04-25T21:30:35Z", "published": "2022-11-22T21:30:17Z", "aliases": [ "CVE-2022-45330" diff --git a/advisories/unreviewed/2022/11/GHSA-p5m9-4j59-gqpc/GHSA-p5m9-4j59-gqpc.json b/advisories/unreviewed/2022/11/GHSA-p5m9-4j59-gqpc/GHSA-p5m9-4j59-gqpc.json index 7e81feb5f69..3ceaf6bd337 100644 --- a/advisories/unreviewed/2022/11/GHSA-p5m9-4j59-gqpc/GHSA-p5m9-4j59-gqpc.json +++ b/advisories/unreviewed/2022/11/GHSA-p5m9-4j59-gqpc/GHSA-p5m9-4j59-gqpc.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-p5m9-4j59-gqpc", - "modified": "2022-11-23T18:30:28Z", + "modified": "2025-04-25T21:30:36Z", "published": "2022-11-22T21:30:17Z", "aliases": [ "CVE-2022-45535" diff --git a/advisories/unreviewed/2022/11/GHSA-pmw2-qfvq-r2cq/GHSA-pmw2-qfvq-r2cq.json b/advisories/unreviewed/2022/11/GHSA-pmw2-qfvq-r2cq/GHSA-pmw2-qfvq-r2cq.json index 5aff76ab422..790bb20b5ac 100644 --- a/advisories/unreviewed/2022/11/GHSA-pmw2-qfvq-r2cq/GHSA-pmw2-qfvq-r2cq.json +++ b/advisories/unreviewed/2022/11/GHSA-pmw2-qfvq-r2cq/GHSA-pmw2-qfvq-r2cq.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-pmw2-qfvq-r2cq", - "modified": "2022-11-30T06:30:27Z", + "modified": "2025-04-25T21:30:49Z", "published": "2022-11-28T15:30:24Z", "aliases": [ "CVE-2022-31877" diff --git a/advisories/unreviewed/2022/11/GHSA-q43r-7xx8-jwr7/GHSA-q43r-7xx8-jwr7.json b/advisories/unreviewed/2022/11/GHSA-q43r-7xx8-jwr7/GHSA-q43r-7xx8-jwr7.json index 4de98797d97..75974ee73f3 100644 --- a/advisories/unreviewed/2022/11/GHSA-q43r-7xx8-jwr7/GHSA-q43r-7xx8-jwr7.json +++ b/advisories/unreviewed/2022/11/GHSA-q43r-7xx8-jwr7/GHSA-q43r-7xx8-jwr7.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-q43r-7xx8-jwr7", - "modified": "2022-11-23T18:30:29Z", + "modified": "2025-04-25T21:30:36Z", "published": "2022-11-22T21:30:17Z", "aliases": [ "CVE-2022-45529" diff --git a/advisories/unreviewed/2022/11/GHSA-qvj8-qcrx-49c6/GHSA-qvj8-qcrx-49c6.json b/advisories/unreviewed/2022/11/GHSA-qvj8-qcrx-49c6/GHSA-qvj8-qcrx-49c6.json index f8f2d08b408..2411b9d2b54 100644 --- a/advisories/unreviewed/2022/11/GHSA-qvj8-qcrx-49c6/GHSA-qvj8-qcrx-49c6.json +++ b/advisories/unreviewed/2022/11/GHSA-qvj8-qcrx-49c6/GHSA-qvj8-qcrx-49c6.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-qvj8-qcrx-49c6", - "modified": "2022-11-23T21:30:33Z", + "modified": "2025-04-25T21:30:35Z", "published": "2022-11-22T15:30:25Z", "aliases": [ "CVE-2022-44808" diff --git a/advisories/unreviewed/2022/11/GHSA-vf9x-mm3w-v4c3/GHSA-vf9x-mm3w-v4c3.json b/advisories/unreviewed/2022/11/GHSA-vf9x-mm3w-v4c3/GHSA-vf9x-mm3w-v4c3.json index 53e396d2c51..825c4bb0c6b 100644 --- a/advisories/unreviewed/2022/11/GHSA-vf9x-mm3w-v4c3/GHSA-vf9x-mm3w-v4c3.json +++ b/advisories/unreviewed/2022/11/GHSA-vf9x-mm3w-v4c3/GHSA-vf9x-mm3w-v4c3.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-vf9x-mm3w-v4c3", - "modified": "2022-11-26T06:31:18Z", + "modified": "2025-04-25T21:30:38Z", "published": "2022-11-23T06:30:24Z", "aliases": [ "CVE-2022-45472" diff --git a/advisories/unreviewed/2022/11/GHSA-wc5r-583w-9mrq/GHSA-wc5r-583w-9mrq.json b/advisories/unreviewed/2022/11/GHSA-wc5r-583w-9mrq/GHSA-wc5r-583w-9mrq.json index 0ddd6f9f3ed..15ae88f7f0a 100644 --- a/advisories/unreviewed/2022/11/GHSA-wc5r-583w-9mrq/GHSA-wc5r-583w-9mrq.json +++ b/advisories/unreviewed/2022/11/GHSA-wc5r-583w-9mrq/GHSA-wc5r-583w-9mrq.json @@ -26,7 +26,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-77" + "CWE-77", + "CWE-78" ], "severity": "CRITICAL", "github_reviewed": false, diff --git a/advisories/unreviewed/2022/11/GHSA-wm2m-ch4m-97cr/GHSA-wm2m-ch4m-97cr.json b/advisories/unreviewed/2022/11/GHSA-wm2m-ch4m-97cr/GHSA-wm2m-ch4m-97cr.json index 5992ab5fe65..fe3928d6d85 100644 --- a/advisories/unreviewed/2022/11/GHSA-wm2m-ch4m-97cr/GHSA-wm2m-ch4m-97cr.json +++ b/advisories/unreviewed/2022/11/GHSA-wm2m-ch4m-97cr/GHSA-wm2m-ch4m-97cr.json @@ -30,6 +30,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-121", "CWE-787" ], "severity": "HIGH", diff --git a/advisories/unreviewed/2022/11/GHSA-wqm5-v7vh-9383/GHSA-wqm5-v7vh-9383.json b/advisories/unreviewed/2022/11/GHSA-wqm5-v7vh-9383/GHSA-wqm5-v7vh-9383.json index 3e5d8e8ec3c..98a3b8ba6af 100644 --- a/advisories/unreviewed/2022/11/GHSA-wqm5-v7vh-9383/GHSA-wqm5-v7vh-9383.json +++ b/advisories/unreviewed/2022/11/GHSA-wqm5-v7vh-9383/GHSA-wqm5-v7vh-9383.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-20" + ], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/12/GHSA-57f3-4qgr-hcrw/GHSA-57f3-4qgr-hcrw.json b/advisories/unreviewed/2022/12/GHSA-57f3-4qgr-hcrw/GHSA-57f3-4qgr-hcrw.json index 316596d4618..4eacfb095b0 100644 --- a/advisories/unreviewed/2022/12/GHSA-57f3-4qgr-hcrw/GHSA-57f3-4qgr-hcrw.json +++ b/advisories/unreviewed/2022/12/GHSA-57f3-4qgr-hcrw/GHSA-57f3-4qgr-hcrw.json @@ -26,6 +26,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-119", "CWE-59" ], "severity": "CRITICAL", diff --git a/advisories/unreviewed/2023/07/GHSA-95hr-886r-52mf/GHSA-95hr-886r-52mf.json b/advisories/unreviewed/2023/07/GHSA-95hr-886r-52mf/GHSA-95hr-886r-52mf.json index 4835ac1889c..383e48969f8 100644 --- a/advisories/unreviewed/2023/07/GHSA-95hr-886r-52mf/GHSA-95hr-886r-52mf.json +++ b/advisories/unreviewed/2023/07/GHSA-95hr-886r-52mf/GHSA-95hr-886r-52mf.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-95hr-886r-52mf", - "modified": "2024-04-04T05:30:28Z", + "modified": "2025-04-25T21:30:35Z", "published": "2023-07-06T19:24:04Z", "aliases": [ "CVE-2022-36784" @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-20" + ], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/02/GHSA-m3q9-44rg-xw34/GHSA-m3q9-44rg-xw34.json b/advisories/unreviewed/2024/02/GHSA-m3q9-44rg-xw34/GHSA-m3q9-44rg-xw34.json index 811454a5fc9..e3779657fa3 100644 --- a/advisories/unreviewed/2024/02/GHSA-m3q9-44rg-xw34/GHSA-m3q9-44rg-xw34.json +++ b/advisories/unreviewed/2024/02/GHSA-m3q9-44rg-xw34/GHSA-m3q9-44rg-xw34.json @@ -1,12 +1,12 @@ { "schema_version": "1.4.0", "id": "GHSA-m3q9-44rg-xw34", - "modified": "2025-02-13T18:32:19Z", + "modified": "2025-04-25T21:31:28Z", "published": "2024-02-26T18:30:28Z", "aliases": [ "CVE-2023-49114" ], - "details": "A DLL hijacking vulnerability was identified in the Qognify VMS Client Viewer version 7.1 or higher, which allows local users to execute arbitrary code and obtain higher privileges via careful placement of a malicious DLL, if some specific pre-conditions are met.\n\n", + "details": "A DLL hijacking vulnerability was identified in the Qognify VMS Client Viewer version 7.1 or higher, which allows local users to execute arbitrary code and obtain higher privileges via careful placement of a malicious DLL, if some specific pre-conditions are met.", "severity": [ { "type": "CVSS_V3", diff --git a/advisories/unreviewed/2024/06/GHSA-hqvr-h7vg-6665/GHSA-hqvr-h7vg-6665.json b/advisories/unreviewed/2024/06/GHSA-hqvr-h7vg-6665/GHSA-hqvr-h7vg-6665.json index 821315dff94..63700a26958 100644 --- a/advisories/unreviewed/2024/06/GHSA-hqvr-h7vg-6665/GHSA-hqvr-h7vg-6665.json +++ b/advisories/unreviewed/2024/06/GHSA-hqvr-h7vg-6665/GHSA-hqvr-h7vg-6665.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-hqvr-h7vg-6665", - "modified": "2024-06-03T03:31:04Z", + "modified": "2025-04-25T21:31:28Z", "published": "2024-06-03T03:31:04Z", "aliases": [ "CVE-2024-20068" ], "details": "In modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service with no additional execution privileges needed. User interaction is no needed for exploitation. Patch ID: MOLY01270721; Issue ID: MSV-1479.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -23,7 +28,7 @@ "cwe_ids": [ "CWE-787" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-06-03T02:15:08Z" diff --git a/advisories/unreviewed/2024/12/GHSA-8xp8-gmmj-xc8w/GHSA-8xp8-gmmj-xc8w.json b/advisories/unreviewed/2024/12/GHSA-8xp8-gmmj-xc8w/GHSA-8xp8-gmmj-xc8w.json index e0508674457..7460db4e2d2 100644 --- a/advisories/unreviewed/2024/12/GHSA-8xp8-gmmj-xc8w/GHSA-8xp8-gmmj-xc8w.json +++ b/advisories/unreviewed/2024/12/GHSA-8xp8-gmmj-xc8w/GHSA-8xp8-gmmj-xc8w.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-8xp8-gmmj-xc8w", - "modified": "2025-04-25T18:31:10Z", + "modified": "2025-04-25T21:31:32Z", "published": "2024-12-25T18:30:45Z", "aliases": [ "CVE-2024-56431" @@ -31,9 +31,17 @@ "type": "WEB", "url": "https://github.com/xiph/theora/blob/7180717276af1ebc7da15c83162d6c5d6203aabf/lib/huffdec.c#L193" }, + { + "type": "WEB", + "url": "https://www.openwall.com/lists/oss-security/2025/04/25/6" + }, { "type": "WEB", "url": "http://www.openwall.com/lists/oss-security/2025/04/25/4" + }, + { + "type": "WEB", + "url": "http://www.openwall.com/lists/oss-security/2025/04/25/6" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/04/GHSA-4c3f-c9v6-jqxm/GHSA-4c3f-c9v6-jqxm.json b/advisories/unreviewed/2025/04/GHSA-4c3f-c9v6-jqxm/GHSA-4c3f-c9v6-jqxm.json index 45c0a4038a2..1af6475b785 100644 --- a/advisories/unreviewed/2025/04/GHSA-4c3f-c9v6-jqxm/GHSA-4c3f-c9v6-jqxm.json +++ b/advisories/unreviewed/2025/04/GHSA-4c3f-c9v6-jqxm/GHSA-4c3f-c9v6-jqxm.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-4c3f-c9v6-jqxm", - "modified": "2025-04-25T06:30:56Z", + "modified": "2025-04-25T21:31:32Z", "published": "2025-04-25T06:30:56Z", "aliases": [ "CVE-2025-0671" ], "details": "The Icegram Express WordPress plugin before 5.7.50 does not sanitise and escape some of its Template settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup).", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -21,7 +26,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-04-25T06:15:44Z" diff --git a/advisories/unreviewed/2025/04/GHSA-4rmx-r8gj-vj26/GHSA-4rmx-r8gj-vj26.json b/advisories/unreviewed/2025/04/GHSA-4rmx-r8gj-vj26/GHSA-4rmx-r8gj-vj26.json new file mode 100644 index 00000000000..acc7129462f --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-4rmx-r8gj-vj26/GHSA-4rmx-r8gj-vj26.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-4rmx-r8gj-vj26", + "modified": "2025-04-25T21:31:33Z", + "published": "2025-04-25T21:31:33Z", + "aliases": [ + "CVE-2025-32986" + ], + "details": "NETSCOUT nGeniusONE before 6.4.0 b2350 has a Sensitive File Accessible Without Proper Authentication to an endpoint.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-32986" + }, + { + "type": "WEB", + "url": "https://www.netscout.com/securityadvisories" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-25T21:15:39Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-5cwq-8g5w-gmhm/GHSA-5cwq-8g5w-gmhm.json b/advisories/unreviewed/2025/04/GHSA-5cwq-8g5w-gmhm/GHSA-5cwq-8g5w-gmhm.json new file mode 100644 index 00000000000..ac53016382a --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-5cwq-8g5w-gmhm/GHSA-5cwq-8g5w-gmhm.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-5cwq-8g5w-gmhm", + "modified": "2025-04-25T21:31:33Z", + "published": "2025-04-25T21:31:33Z", + "aliases": [ + "CVE-2025-32979" + ], + "details": "NETSCOUT nGeniusONE before 6.4.0 b2350 allows Arbitrary File Creation by authenticated users.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-32979" + }, + { + "type": "WEB", + "url": "https://www.netscout.com/securityadvisories" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-25T21:15:38Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-8343-fjcx-gwpw/GHSA-8343-fjcx-gwpw.json b/advisories/unreviewed/2025/04/GHSA-8343-fjcx-gwpw/GHSA-8343-fjcx-gwpw.json new file mode 100644 index 00000000000..8236fd7fddf --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-8343-fjcx-gwpw/GHSA-8343-fjcx-gwpw.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-8343-fjcx-gwpw", + "modified": "2025-04-25T21:31:33Z", + "published": "2025-04-25T21:31:33Z", + "aliases": [ + "CVE-2025-32983" + ], + "details": "NETSCOUT nGeniusONE before 6.4.0 b2350 allows Technical Information Disclosure via a Stack Trace.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-32983" + }, + { + "type": "WEB", + "url": "https://www.netscout.com/securityadvisories" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-25T21:15:39Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-8pjq-x38c-gm89/GHSA-8pjq-x38c-gm89.json b/advisories/unreviewed/2025/04/GHSA-8pjq-x38c-gm89/GHSA-8pjq-x38c-gm89.json new file mode 100644 index 00000000000..0c52278414e --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-8pjq-x38c-gm89/GHSA-8pjq-x38c-gm89.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-8pjq-x38c-gm89", + "modified": "2025-04-25T21:31:33Z", + "published": "2025-04-25T21:31:33Z", + "aliases": [ + "CVE-2025-32982" + ], + "details": "NETSCOUT nGeniusONE before 6.4.0 b2350 has a Broken Authorization Schema for the report module.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-32982" + }, + { + "type": "WEB", + "url": "https://www.netscout.com/securityadvisories" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-25T21:15:39Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-h656-x889-hh62/GHSA-h656-x889-hh62.json b/advisories/unreviewed/2025/04/GHSA-h656-x889-hh62/GHSA-h656-x889-hh62.json new file mode 100644 index 00000000000..7ffd06dcfee --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-h656-x889-hh62/GHSA-h656-x889-hh62.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-h656-x889-hh62", + "modified": "2025-04-25T21:31:33Z", + "published": "2025-04-25T21:31:33Z", + "aliases": [ + "CVE-2025-32981" + ], + "details": "NETSCOUT nGeniusONE before 6.4.0 b2350 allows local users to leverage Insecure Permissions for the nGeniusCLI File.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-32981" + }, + { + "type": "WEB", + "url": "https://www.netscout.com/securityadvisories" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-25T21:15:39Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-pp5v-6vv5-vc6c/GHSA-pp5v-6vv5-vc6c.json b/advisories/unreviewed/2025/04/GHSA-pp5v-6vv5-vc6c/GHSA-pp5v-6vv5-vc6c.json new file mode 100644 index 00000000000..f3f984a5de7 --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-pp5v-6vv5-vc6c/GHSA-pp5v-6vv5-vc6c.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-pp5v-6vv5-vc6c", + "modified": "2025-04-25T21:31:33Z", + "published": "2025-04-25T21:31:33Z", + "aliases": [ + "CVE-2025-32984" + ], + "details": "NETSCOUT nGeniusONE before 6.4.0 b2350 allows Stored Cross-Site Scripting (XSS) via a certain POST parameter.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-32984" + }, + { + "type": "WEB", + "url": "https://www.netscout.com/securityadvisories" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-25T21:15:39Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-q3v8-fm8w-jqcp/GHSA-q3v8-fm8w-jqcp.json b/advisories/unreviewed/2025/04/GHSA-q3v8-fm8w-jqcp/GHSA-q3v8-fm8w-jqcp.json new file mode 100644 index 00000000000..996deeeeef9 --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-q3v8-fm8w-jqcp/GHSA-q3v8-fm8w-jqcp.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-q3v8-fm8w-jqcp", + "modified": "2025-04-25T21:31:33Z", + "published": "2025-04-25T21:31:33Z", + "aliases": [ + "CVE-2025-28128" + ], + "details": "An issue in Mytel Telecom Online Account System v1.0 allows attackers to bypass the OTP verification process via a crafted request.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:L/A:L" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-28128" + }, + { + "type": "WEB", + "url": "https://gist.github.com/str4ng3r-0x7/3d9d310cb6cc5af39088ef44289ba588#file-cve-2025-28128" + }, + { + "type": "WEB", + "url": "https://mytel.com.mm" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-290" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-25T20:15:39Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-qjrp-xr9r-wmrg/GHSA-qjrp-xr9r-wmrg.json b/advisories/unreviewed/2025/04/GHSA-qjrp-xr9r-wmrg/GHSA-qjrp-xr9r-wmrg.json new file mode 100644 index 00000000000..4e7e28be3c5 --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-qjrp-xr9r-wmrg/GHSA-qjrp-xr9r-wmrg.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-qjrp-xr9r-wmrg", + "modified": "2025-04-25T21:31:33Z", + "published": "2025-04-25T21:31:33Z", + "aliases": [ + "CVE-2025-3935" + ], + "details": "ScreenConnect versions 25.2.3 and earlier versions may be susceptible to a ViewState code injection attack. ASP.NET Web Forms use ViewState to preserve page and control state, with data encoded using Base64 protected by machine keys. \nIt is important to note that to obtain these machine keys, privileged system level access must be obtained. \n\n\n\nIf these machine keys are compromised, attackers could create and send a malicious ViewState to the website, potentially leading to remote code execution on the server. \n\n\n\nThe risk does not originate from a vulnerability introduced by ScreenConnect, but from platform level behavior.  This had no direct impact to ScreenConnect Client. ScreenConnect 2025.4 patch disables ViewState and removes any dependency on it.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-3935" + }, + { + "type": "WEB", + "url": "https://www.connectwise.com/company/trust/advisories" + }, + { + "type": "WEB", + "url": "https://www.connectwise.com/company/trust/security-bulletins/screenconnect-security-patch-2025.4" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-287" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-25T19:15:49Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-r58q-xq2p-rf3w/GHSA-r58q-xq2p-rf3w.json b/advisories/unreviewed/2025/04/GHSA-r58q-xq2p-rf3w/GHSA-r58q-xq2p-rf3w.json new file mode 100644 index 00000000000..74c57ca6d12 --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-r58q-xq2p-rf3w/GHSA-r58q-xq2p-rf3w.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-r58q-xq2p-rf3w", + "modified": "2025-04-25T21:31:33Z", + "published": "2025-04-25T21:31:33Z", + "aliases": [ + "CVE-2025-32980" + ], + "details": "NETSCOUT nGeniusONE before 6.4.0 b2350 has a Weak Sudo Configuration.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-32980" + }, + { + "type": "WEB", + "url": "https://www.netscout.com/securityadvisories" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-25T21:15:38Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-r7f2-jfpq-8j9r/GHSA-r7f2-jfpq-8j9r.json b/advisories/unreviewed/2025/04/GHSA-r7f2-jfpq-8j9r/GHSA-r7f2-jfpq-8j9r.json new file mode 100644 index 00000000000..20e1f75ed77 --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-r7f2-jfpq-8j9r/GHSA-r7f2-jfpq-8j9r.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-r7f2-jfpq-8j9r", + "modified": "2025-04-25T21:31:33Z", + "published": "2025-04-25T21:31:33Z", + "aliases": [ + "CVE-2025-32985" + ], + "details": "NETSCOUT nGeniusONE before 6.4.0 b2350 has Hardcoded Credentials that can be obtained from JAR files.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-32985" + }, + { + "type": "WEB", + "url": "https://www.netscout.com/securityadvisories" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-25T21:15:39Z" + } +} \ No newline at end of file