Advisory Database Sync

This commit is contained in:
advisory-database[bot]
2025-05-28 15:35:53 +00:00
parent 7034d7ad4f
commit 240256058e
76 changed files with 480 additions and 100 deletions
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-5rjg-fvgr-3xxf",
"modified": "2025-05-19T16:52:43Z",
"modified": "2025-05-28T15:34:05Z",
"published": "2025-05-19T16:52:43Z",
"aliases": [
"CVE-2025-47273"
@@ -59,6 +59,10 @@
{
"type": "WEB",
"url": "https://github.com/pypa/setuptools/blob/6ead555c5fb29bc57fe6105b1bffc163f56fd558/setuptools/package_index.py#L810C1-L825C88"
},
{
"type": "WEB",
"url": "https://lists.debian.org/debian-lts-announce/2025/05/msg00035.html"
}
],
"database_specific": {
@@ -1,13 +1,18 @@
{
"schema_version": "1.4.0",
"id": "GHSA-36vw-58gr-fvfc",
"modified": "2022-05-24T17:18:57Z",
"modified": "2025-05-28T15:33:50Z",
"published": "2022-05-24T17:18:57Z",
"aliases": [
"CVE-2019-11843"
],
"details": "The MailPoet plugin before 3.23.2 for WordPress allows remote attackers to inject arbitrary web script or HTML using extra parameters in the URL (Reflective Server-Side XSS).",
"severity": [],
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N"
}
],
"affected": [],
"references": [
{
@@ -28,7 +33,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-79"
],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-37cj-9g83-7692",
"modified": "2022-09-25T00:00:20Z",
"modified": "2025-05-28T15:33:54Z",
"published": "2022-09-22T00:00:23Z",
"aliases": [
"CVE-2022-29800"
@@ -42,7 +42,8 @@
],
"database_specific": {
"cwe_ids": [
"CWE-74"
"CWE-74",
"CWE-88"
],
"severity": "HIGH",
"github_reviewed": false,
@@ -25,7 +25,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-284"
],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -37,7 +37,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-276"
],
"severity": "CRITICAL",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-34vj-g8wc-6443",
"modified": "2023-12-12T18:31:33Z",
"modified": "2025-05-28T15:33:55Z",
"published": "2023-12-07T09:30:44Z",
"aliases": [
"CVE-2023-49225"
@@ -38,7 +38,8 @@
],
"database_specific": {
"cwe_ids": [
"CWE-121"
"CWE-121",
"CWE-787"
],
"severity": "HIGH",
"github_reviewed": false,
@@ -1,13 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-79r7-4mh7-v639",
"modified": "2024-12-04T12:31:45Z",
"modified": "2025-05-28T15:33:56Z",
"published": "2024-12-04T12:31:45Z",
"aliases": [
"CVE-2024-52274"
],
"details": "Stack-based Buffer Overflow vulnerability in Shenzhen Tenda Technology Co Tenda AC6V2 (setDoubleL2tpConfig->guest_ip_check(overflow arg: mask) modules) allows Overflow Buffers.This issue affects Tenda AC6V2: through 15.03.06.50",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
},
{
"type": "CVSS_V4",
"score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
@@ -26,7 +30,8 @@
],
"database_specific": {
"cwe_ids": [
"CWE-121"
"CWE-121",
"CWE-787"
],
"severity": "HIGH",
"github_reviewed": false,
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-9446-54vc-3xw5",
"modified": "2024-12-19T21:31:11Z",
"modified": "2025-05-28T15:33:57Z",
"published": "2024-12-19T21:31:11Z",
"aliases": [
"CVE-2024-7138"
@@ -22,6 +22,10 @@
{
"type": "WEB",
"url": "https://community.silabs.com/068Vm00000F9zre"
},
{
"type": "WEB",
"url": "https://community.silabs.com/068Vm00000I5mjD"
}
],
"database_specific": {
@@ -1,13 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-jv22-j23g-5gfv",
"modified": "2024-12-04T12:31:45Z",
"modified": "2025-05-28T15:33:56Z",
"published": "2024-12-04T12:31:45Z",
"aliases": [
"CVE-2024-52273"
],
"details": "Stack-based Buffer Overflow vulnerability in Shenzhen Tenda Technology Co Tenda AC6V2 (setDoublePppoeConfig->guest_ip_check(overflow arg: mask) modules) allows Overflow Buffers.This issue affects Tenda AC6V2: through 15.03.06.50",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
},
{
"type": "CVSS_V4",
"score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
@@ -26,7 +30,8 @@
],
"database_specific": {
"cwe_ids": [
"CWE-121"
"CWE-121",
"CWE-787"
],
"severity": "HIGH",
"github_reviewed": false,
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-m2wv-vgv6-f4hv",
"modified": "2024-12-19T21:31:11Z",
"modified": "2025-05-28T15:33:57Z",
"published": "2024-12-19T21:31:11Z",
"aliases": [
"CVE-2024-7139"
@@ -22,6 +22,10 @@
{
"type": "WEB",
"url": "https://community.silabs.com/068Vm00000F9zre"
},
{
"type": "WEB",
"url": "https://community.silabs.com/068Vm00000I5mjD"
}
],
"database_specific": {
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-mwxc-q3ch-vfhx",
"modified": "2024-12-19T21:31:11Z",
"modified": "2025-05-28T15:33:56Z",
"published": "2024-12-19T21:31:11Z",
"aliases": [
"CVE-2024-7137"
@@ -22,6 +22,10 @@
{
"type": "WEB",
"url": "https://community.silabs.com/068Vm00000F9zre"
},
{
"type": "WEB",
"url": "https://community.silabs.com/068Vm00000I5mjD"
}
],
"database_specific": {
@@ -1,13 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-p2hx-7wmw-x3vv",
"modified": "2024-12-04T12:31:45Z",
"modified": "2025-05-28T15:33:56Z",
"published": "2024-12-04T12:31:45Z",
"aliases": [
"CVE-2024-52272"
],
"details": "Stack-based Buffer Overflow vulnerability in Shenzhen Tenda Technology Co Tenda AC6V2 (fromAdvSetLanip(overflow arg:lanMask) modules) allows Overflow Buffers.This issue affects Tenda AC6V2: through 15.03.06.50",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
},
{
"type": "CVSS_V4",
"score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
@@ -26,7 +30,8 @@
],
"database_specific": {
"cwe_ids": [
"CWE-121"
"CWE-121",
"CWE-787"
],
"severity": "HIGH",
"github_reviewed": false,
@@ -1,13 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-wv6h-2w59-v7m9",
"modified": "2024-12-04T12:31:45Z",
"modified": "2025-05-28T15:33:56Z",
"published": "2024-12-04T12:31:45Z",
"aliases": [
"CVE-2024-52275"
],
"details": "Stack-based Buffer Overflow vulnerability in Shenzhen Tenda Technology Co Tenda AC6V2 (fromWizardHandle modules) allows Overflow Buffers.This issue affects Tenda AC6V2: through 15.03.06.50.",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
},
{
"type": "CVSS_V4",
"score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
@@ -34,7 +38,8 @@
],
"database_specific": {
"cwe_ids": [
"CWE-121"
"CWE-121",
"CWE-787"
],
"severity": "HIGH",
"github_reviewed": false,
@@ -46,7 +46,8 @@
],
"database_specific": {
"cwe_ids": [
"CWE-74"
"CWE-74",
"CWE-78"
],
"severity": "HIGH",
"github_reviewed": false,
@@ -46,7 +46,8 @@
],
"database_specific": {
"cwe_ids": [
"CWE-74"
"CWE-74",
"CWE-89"
],
"severity": "MODERATE",
"github_reviewed": false,
@@ -46,7 +46,8 @@
],
"database_specific": {
"cwe_ids": [
"CWE-74"
"CWE-74",
"CWE-89"
],
"severity": "MODERATE",
"github_reviewed": false,
@@ -46,7 +46,8 @@
],
"database_specific": {
"cwe_ids": [
"CWE-74"
"CWE-74",
"CWE-89"
],
"severity": "MODERATE",
"github_reviewed": false,
@@ -46,7 +46,8 @@
],
"database_specific": {
"cwe_ids": [
"CWE-74"
"CWE-74",
"CWE-89"
],
"severity": "MODERATE",
"github_reviewed": false,

Some files were not shown because too many files have changed in this diff Show More