diff --git a/advisories/github-reviewed/2020/09/GHSA-699q-wcff-g9mj/GHSA-699q-wcff-g9mj.json b/advisories/github-reviewed/2020/09/GHSA-699q-wcff-g9mj/GHSA-699q-wcff-g9mj.json index 44169c4e3af..83ee7e53fb2 100644 --- a/advisories/github-reviewed/2020/09/GHSA-699q-wcff-g9mj/GHSA-699q-wcff-g9mj.json +++ b/advisories/github-reviewed/2020/09/GHSA-699q-wcff-g9mj/GHSA-699q-wcff-g9mj.json @@ -47,6 +47,14 @@ { "type": "WEB", "url": "https://github.com/yiisoft/yii2/commit/9abccb96d7c5ddb569f92d1a748f50ee9b3e2b99" + }, + { + "type": "WEB", + "url": "https://github.com/FriendsOfPHP/security-advisories/blob/master/yiisoft/yii2/CVE-2020-15148.yaml" + }, + { + "type": "WEB", + "url": "https://www.yiiframework.com/news/303/yii-2-0-38" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/11/GHSA-hpjm-3ww5-6cpf/GHSA-hpjm-3ww5-6cpf.json b/advisories/github-reviewed/2020/11/GHSA-hpjm-3ww5-6cpf/GHSA-hpjm-3ww5-6cpf.json index d5c6311fb68..2dd31e05369 100644 --- a/advisories/github-reviewed/2020/11/GHSA-hpjm-3ww5-6cpf/GHSA-hpjm-3ww5-6cpf.json +++ b/advisories/github-reviewed/2020/11/GHSA-hpjm-3ww5-6cpf/GHSA-hpjm-3ww5-6cpf.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-hpjm-3ww5-6cpf", - "modified": "2021-01-07T22:41:42Z", + "modified": "2024-02-07T18:52:28Z", "published": "2020-11-18T21:06:07Z", "aliases": [ "CVE-2020-26216" @@ -162,6 +162,10 @@ "type": "WEB", "url": "https://github.com/TYPO3/Fluid/commit/f20db4e74cf9803c6cffca2ed2f03e1b0b89d0dc" }, + { + "type": "WEB", + "url": "https://github.com/FriendsOfPHP/security-advisories/blob/master/typo3fluid/fluid/CVE-2020-26216.yaml" + }, { "type": "WEB", "url": "https://typo3.org/security/advisory/typo3-core-sa-2020-009" @@ -171,7 +175,7 @@ "cwe_ids": [ "CWE-79" ], - "severity": "MODERATE", + "severity": "HIGH", "github_reviewed": true, "github_reviewed_at": "2020-11-17T20:30:15Z", "nvd_published_at": null diff --git a/advisories/github-reviewed/2021/05/GHSA-rwgm-f83r-v3qj/GHSA-rwgm-f83r-v3qj.json b/advisories/github-reviewed/2021/05/GHSA-rwgm-f83r-v3qj/GHSA-rwgm-f83r-v3qj.json index a1b9733c185..069d8766846 100644 --- a/advisories/github-reviewed/2021/05/GHSA-rwgm-f83r-v3qj/GHSA-rwgm-f83r-v3qj.json +++ b/advisories/github-reviewed/2021/05/GHSA-rwgm-f83r-v3qj/GHSA-rwgm-f83r-v3qj.json @@ -25,7 +25,7 @@ "type": "ECOSYSTEM", "events": [ { - "introduced": "0" + "introduced": "0.12.0" }, { "fixed": "2.5.0" @@ -67,6 +67,10 @@ { "type": "WEB", "url": "https://github.com/wp-cli/wp-cli/pull/5523" + }, + { + "type": "WEB", + "url": "https://github.com/FriendsOfPHP/security-advisories/blob/master/wp-cli/wp-cli/CVE-2021-29504.yaml" } ], "database_specific": { diff --git a/advisories/github-reviewed/2021/08/GHSA-c5c9-8c6m-727v/GHSA-c5c9-8c6m-727v.json b/advisories/github-reviewed/2021/08/GHSA-c5c9-8c6m-727v/GHSA-c5c9-8c6m-727v.json index e1149d75b68..12e34842b5f 100644 --- a/advisories/github-reviewed/2021/08/GHSA-c5c9-8c6m-727v/GHSA-c5c9-8c6m-727v.json +++ b/advisories/github-reviewed/2021/08/GHSA-c5c9-8c6m-727v/GHSA-c5c9-8c6m-727v.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-c5c9-8c6m-727v", - "modified": "2021-10-21T13:56:39Z", + "modified": "2024-02-07T18:51:52Z", "published": "2021-08-19T15:53:12Z", "aliases": [ "CVE-2021-32768" @@ -32,10 +32,7 @@ } ] } - ], - "database_specific": { - "last_known_affected_version_range": "<= 7.6.52" - } + ] }, { "package": { @@ -54,32 +51,7 @@ } ] } - ], - "database_specific": { - "last_known_affected_version_range": "<= 8.7.41" - } - }, - { - "package": { - "ecosystem": "Packagist", - "name": "typo3/cms-core" - }, - "ranges": [ - { - "type": "ECOSYSTEM", - "events": [ - { - "introduced": "9.0.0" - }, - { - "fixed": "9.5.29" - } - ] - } - ], - "database_specific": { - "last_known_affected_version_range": "<= 9.5.28" - } + ] }, { "package": { @@ -98,10 +70,7 @@ } ] } - ], - "database_specific": { - "last_known_affected_version_range": "<= 10.4.18" - } + ] }, { "package": { @@ -120,10 +89,121 @@ } ] } - ], - "database_specific": { - "last_known_affected_version_range": "<= 11.3.1" - } + ] + }, + { + "package": { + "ecosystem": "Packagist", + "name": "typo3/cms-core" + }, + "ranges": [ + { + "type": "ECOSYSTEM", + "events": [ + { + "introduced": "9.0.0" + }, + { + "fixed": "9.5.29" + } + ] + } + ] + }, + { + "package": { + "ecosystem": "Packagist", + "name": "typo3/cms" + }, + "ranges": [ + { + "type": "ECOSYSTEM", + "events": [ + { + "introduced": "10.0.0" + }, + { + "fixed": "10.4.19" + } + ] + } + ] + }, + { + "package": { + "ecosystem": "Packagist", + "name": "typo3/cms" + }, + "ranges": [ + { + "type": "ECOSYSTEM", + "events": [ + { + "introduced": "11.0.0" + }, + { + "fixed": "11.3.2" + } + ] + } + ] + }, + { + "package": { + "ecosystem": "Packagist", + "name": "typo3/cms" + }, + "ranges": [ + { + "type": "ECOSYSTEM", + "events": [ + { + "introduced": "9.0.0" + }, + { + "fixed": "9.5.29" + } + ] + } + ] + }, + { + "package": { + "ecosystem": "Packagist", + "name": "typo3/cms" + }, + "ranges": [ + { + "type": "ECOSYSTEM", + "events": [ + { + "introduced": "8.0.0" + }, + { + "fixed": "8.7.42" + } + ] + } + ] + }, + { + "package": { + "ecosystem": "Packagist", + "name": "typo3/cms" + }, + "ranges": [ + { + "type": "ECOSYSTEM", + "events": [ + { + "introduced": "7.0.0" + }, + { + "fixed": "7.6.53" + } + ] + } + ] } ], "references": [ @@ -139,6 +219,14 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-32768" }, + { + "type": "WEB", + "url": "https://github.com/FriendsOfPHP/security-advisories/blob/master/typo3/cms-core/CVE-2021-32768.yaml" + }, + { + "type": "WEB", + "url": "https://github.com/FriendsOfPHP/security-advisories/blob/master/typo3/cms/CVE-2021-32768.yaml" + }, { "type": "WEB", "url": "https://typo3.org/security/advisory/typo3-core-sa-2021-013" diff --git a/advisories/github-reviewed/2022/05/GHSA-gwwq-54qp-9pgp/GHSA-gwwq-54qp-9pgp.json b/advisories/github-reviewed/2022/05/GHSA-gwwq-54qp-9pgp/GHSA-gwwq-54qp-9pgp.json index 5a85be0ddf4..029d3100637 100644 --- a/advisories/github-reviewed/2022/05/GHSA-gwwq-54qp-9pgp/GHSA-gwwq-54qp-9pgp.json +++ b/advisories/github-reviewed/2022/05/GHSA-gwwq-54qp-9pgp/GHSA-gwwq-54qp-9pgp.json @@ -52,6 +52,14 @@ "type": "WEB", "url": "https://framework.zend.com/changelog/2.3.6" }, + { + "type": "WEB", + "url": "https://framework.zend.com/security/advisory/ZF2015-03" + }, + { + "type": "WEB", + "url": "https://github.com/FriendsOfPHP/security-advisories/blob/master/zendframework/zendframework/CVE-2015-1786.yaml" + }, { "type": "WEB", "url": "https://github.com/zendframework/zf-web/blob/f97fe5c3cf6c51df7502237c6342511802c8df22/module/Security/view/security/advisory/ZF2015-03.phtml" diff --git a/advisories/github-reviewed/2022/05/GHSA-j6c3-3c4w-qv8p/GHSA-j6c3-3c4w-qv8p.json b/advisories/github-reviewed/2022/05/GHSA-j6c3-3c4w-qv8p/GHSA-j6c3-3c4w-qv8p.json index 454f677933d..87b7bc7546e 100644 --- a/advisories/github-reviewed/2022/05/GHSA-j6c3-3c4w-qv8p/GHSA-j6c3-3c4w-qv8p.json +++ b/advisories/github-reviewed/2022/05/GHSA-j6c3-3c4w-qv8p/GHSA-j6c3-3c4w-qv8p.json @@ -68,6 +68,44 @@ ] } ] + }, + { + "package": { + "ecosystem": "Packagist", + "name": "typo3/cms" + }, + "ranges": [ + { + "type": "ECOSYSTEM", + "events": [ + { + "introduced": "6.2.0" + }, + { + "fixed": "6.2.14" + } + ] + } + ] + }, + { + "package": { + "ecosystem": "Packagist", + "name": "typo3/cms" + }, + "ranges": [ + { + "type": "ECOSYSTEM", + "events": [ + { + "introduced": "7.0.0" + }, + { + "fixed": "7.3.1" + } + ] + } + ] } ], "references": [ @@ -95,6 +133,10 @@ "type": "WEB", "url": "https://github.com/moodle/moodle/commit/d65634044ebaa738f55bdec521beb42844d6916a" }, + { + "type": "WEB", + "url": "https://github.com/FriendsOfPHP/security-advisories/blob/master/typo3/cms/CVE-2013-7341.yaml" + }, { "type": "PACKAGE", "url": "https://github.com/moodle/moodle" @@ -103,6 +145,10 @@ "type": "WEB", "url": "https://moodle.org/mod/forum/discuss.php?d=256420" }, + { + "type": "WEB", + "url": "https://typo3.org/security/advisory/typo3-core-sa-2015-007" + }, { "type": "WEB", "url": "http://flash.flowplayer.org/documentation/version-history.html" diff --git a/advisories/github-reviewed/2022/05/GHSA-p9hp-3gpv-52w3/GHSA-p9hp-3gpv-52w3.json b/advisories/github-reviewed/2022/05/GHSA-p9hp-3gpv-52w3/GHSA-p9hp-3gpv-52w3.json index 38cb5485098..f61feb59c0c 100644 --- a/advisories/github-reviewed/2022/05/GHSA-p9hp-3gpv-52w3/GHSA-p9hp-3gpv-52w3.json +++ b/advisories/github-reviewed/2022/05/GHSA-p9hp-3gpv-52w3/GHSA-p9hp-3gpv-52w3.json @@ -33,6 +33,25 @@ ] } ] + }, + { + "package": { + "ecosystem": "Packagist", + "name": "zendframework/zendframework1" + }, + "ranges": [ + { + "type": "ECOSYSTEM", + "events": [ + { + "introduced": "0" + }, + { + "fixed": "1.12.19" + } + ] + } + ] } ], "references": [ @@ -44,6 +63,10 @@ "type": "WEB", "url": "https://framework.zend.com/security/advisory/ZF2016-02" }, + { + "type": "WEB", + "url": "https://github.com/FriendsOfPHP/security-advisories/blob/master/zendframework/zendframework1/CVE-2016-6233.yaml" + }, { "type": "PACKAGE", "url": "https://github.com/zendframework/zendframework"