diff --git a/advisories/unreviewed/2023/05/GHSA-4pw8-jp5w-wqgr/GHSA-4pw8-jp5w-wqgr.json b/advisories/unreviewed/2023/05/GHSA-4pw8-jp5w-wqgr/GHSA-4pw8-jp5w-wqgr.json index 072cd6487f1..b0bb1900191 100644 --- a/advisories/unreviewed/2023/05/GHSA-4pw8-jp5w-wqgr/GHSA-4pw8-jp5w-wqgr.json +++ b/advisories/unreviewed/2023/05/GHSA-4pw8-jp5w-wqgr/GHSA-4pw8-jp5w-wqgr.json @@ -26,7 +26,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-200" + "CWE-200", + "CWE-276" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/03/GHSA-3fw4-qprq-cph8/GHSA-3fw4-qprq-cph8.json b/advisories/unreviewed/2024/03/GHSA-3fw4-qprq-cph8/GHSA-3fw4-qprq-cph8.json index 04facc1de70..a94a3f6b3fd 100644 --- a/advisories/unreviewed/2024/03/GHSA-3fw4-qprq-cph8/GHSA-3fw4-qprq-cph8.json +++ b/advisories/unreviewed/2024/03/GHSA-3fw4-qprq-cph8/GHSA-3fw4-qprq-cph8.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-3fw4-qprq-cph8", - "modified": "2024-03-30T09:30:41Z", + "modified": "2025-01-30T15:31:35Z", "published": "2024-03-30T09:30:41Z", "aliases": [ "CVE-2024-2140" @@ -29,7 +29,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-79" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/03/GHSA-3jwv-cj2j-h5c7/GHSA-3jwv-cj2j-h5c7.json b/advisories/unreviewed/2024/03/GHSA-3jwv-cj2j-h5c7/GHSA-3jwv-cj2j-h5c7.json index f703f02b936..c6ff5d97ce0 100644 --- a/advisories/unreviewed/2024/03/GHSA-3jwv-cj2j-h5c7/GHSA-3jwv-cj2j-h5c7.json +++ b/advisories/unreviewed/2024/03/GHSA-3jwv-cj2j-h5c7/GHSA-3jwv-cj2j-h5c7.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-3jwv-cj2j-h5c7", - "modified": "2024-03-04T03:30:26Z", + "modified": "2025-01-30T15:31:35Z", "published": "2024-03-04T03:30:26Z", "aliases": [ "CVE-2024-20020" ], "details": "In OPTEE, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08522504; Issue ID: ALPS08522504.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-787" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-04T03:15:07Z" diff --git a/advisories/unreviewed/2024/03/GHSA-4r36-x7px-386g/GHSA-4r36-x7px-386g.json b/advisories/unreviewed/2024/03/GHSA-4r36-x7px-386g/GHSA-4r36-x7px-386g.json index 33ac8f574c6..f8e0ca3e096 100644 --- a/advisories/unreviewed/2024/03/GHSA-4r36-x7px-386g/GHSA-4r36-x7px-386g.json +++ b/advisories/unreviewed/2024/03/GHSA-4r36-x7px-386g/GHSA-4r36-x7px-386g.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-4r36-x7px-386g", - "modified": "2024-03-30T09:30:41Z", + "modified": "2025-01-30T15:31:36Z", "published": "2024-03-30T09:30:41Z", "aliases": [ "CVE-2024-2144" @@ -33,7 +33,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-79" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/03/GHSA-5h5v-qgm5-g5m6/GHSA-5h5v-qgm5-g5m6.json b/advisories/unreviewed/2024/03/GHSA-5h5v-qgm5-g5m6/GHSA-5h5v-qgm5-g5m6.json index e480a7b9fa4..621781994a2 100644 --- a/advisories/unreviewed/2024/03/GHSA-5h5v-qgm5-g5m6/GHSA-5h5v-qgm5-g5m6.json +++ b/advisories/unreviewed/2024/03/GHSA-5h5v-qgm5-g5m6/GHSA-5h5v-qgm5-g5m6.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-5h5v-qgm5-g5m6", - "modified": "2024-03-30T09:30:41Z", + "modified": "2025-01-30T15:31:36Z", "published": "2024-03-30T09:30:41Z", "aliases": [ "CVE-2024-2142" @@ -33,7 +33,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-79" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/03/GHSA-9986-pcpw-cpf6/GHSA-9986-pcpw-cpf6.json b/advisories/unreviewed/2024/03/GHSA-9986-pcpw-cpf6/GHSA-9986-pcpw-cpf6.json index 21d6fdd9b1a..dbc48984fe6 100644 --- a/advisories/unreviewed/2024/03/GHSA-9986-pcpw-cpf6/GHSA-9986-pcpw-cpf6.json +++ b/advisories/unreviewed/2024/03/GHSA-9986-pcpw-cpf6/GHSA-9986-pcpw-cpf6.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-9986-pcpw-cpf6", - "modified": "2024-03-30T09:30:41Z", + "modified": "2025-01-30T15:31:35Z", "published": "2024-03-30T09:30:41Z", "aliases": [ "CVE-2024-2141" @@ -33,7 +33,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-79" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/03/GHSA-c94c-g2hm-xg4p/GHSA-c94c-g2hm-xg4p.json b/advisories/unreviewed/2024/03/GHSA-c94c-g2hm-xg4p/GHSA-c94c-g2hm-xg4p.json index 671f1bdb0bf..7b699f5d7b5 100644 --- a/advisories/unreviewed/2024/03/GHSA-c94c-g2hm-xg4p/GHSA-c94c-g2hm-xg4p.json +++ b/advisories/unreviewed/2024/03/GHSA-c94c-g2hm-xg4p/GHSA-c94c-g2hm-xg4p.json @@ -34,7 +34,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-643" + "CWE-643", + "CWE-91" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/03/GHSA-f9wv-mpx9-2hqq/GHSA-f9wv-mpx9-2hqq.json b/advisories/unreviewed/2024/03/GHSA-f9wv-mpx9-2hqq/GHSA-f9wv-mpx9-2hqq.json index 374a8a9377a..1817a460b50 100644 --- a/advisories/unreviewed/2024/03/GHSA-f9wv-mpx9-2hqq/GHSA-f9wv-mpx9-2hqq.json +++ b/advisories/unreviewed/2024/03/GHSA-f9wv-mpx9-2hqq/GHSA-f9wv-mpx9-2hqq.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-f9wv-mpx9-2hqq", - "modified": "2024-03-30T09:30:41Z", + "modified": "2025-01-30T15:31:36Z", "published": "2024-03-30T09:30:41Z", "aliases": [ "CVE-2024-2143" @@ -29,7 +29,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-79" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/03/GHSA-w6rw-5fh3-46gp/GHSA-w6rw-5fh3-46gp.json b/advisories/unreviewed/2024/03/GHSA-w6rw-5fh3-46gp/GHSA-w6rw-5fh3-46gp.json index 1746f6d9f6d..8ee24483c5f 100644 --- a/advisories/unreviewed/2024/03/GHSA-w6rw-5fh3-46gp/GHSA-w6rw-5fh3-46gp.json +++ b/advisories/unreviewed/2024/03/GHSA-w6rw-5fh3-46gp/GHSA-w6rw-5fh3-46gp.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-w6rw-5fh3-46gp", - "modified": "2024-03-04T03:30:26Z", + "modified": "2025-01-30T15:31:35Z", "published": "2024-03-04T03:30:26Z", "aliases": [ "CVE-2024-20022" ], "details": "In lk, there is a possible escalation of privilege due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08528255; Issue ID: ALPS08528255.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -21,7 +26,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-04T03:15:07Z" diff --git a/advisories/unreviewed/2024/05/GHSA-j448-jqj7-gh7x/GHSA-j448-jqj7-gh7x.json b/advisories/unreviewed/2024/05/GHSA-j448-jqj7-gh7x/GHSA-j448-jqj7-gh7x.json index 12b131c40b9..98fe2dbdb67 100644 --- a/advisories/unreviewed/2024/05/GHSA-j448-jqj7-gh7x/GHSA-j448-jqj7-gh7x.json +++ b/advisories/unreviewed/2024/05/GHSA-j448-jqj7-gh7x/GHSA-j448-jqj7-gh7x.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-j448-jqj7-gh7x", - "modified": "2024-05-14T18:30:56Z", + "modified": "2025-01-30T15:31:36Z", "published": "2024-05-14T18:30:56Z", "aliases": [ "CVE-2024-4712" diff --git a/advisories/unreviewed/2024/06/GHSA-hcq4-pvmg-m2gp/GHSA-hcq4-pvmg-m2gp.json b/advisories/unreviewed/2024/06/GHSA-hcq4-pvmg-m2gp/GHSA-hcq4-pvmg-m2gp.json index c6a2645fb5b..cd33afa376b 100644 --- a/advisories/unreviewed/2024/06/GHSA-hcq4-pvmg-m2gp/GHSA-hcq4-pvmg-m2gp.json +++ b/advisories/unreviewed/2024/06/GHSA-hcq4-pvmg-m2gp/GHSA-hcq4-pvmg-m2gp.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-hcq4-pvmg-m2gp", - "modified": "2024-06-01T18:30:46Z", + "modified": "2025-01-30T15:31:36Z", "published": "2024-06-01T18:30:46Z", "aliases": [ "CVE-2024-4148" @@ -19,6 +19,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-4148" }, + { + "type": "WEB", + "url": "https://github.com/lunary-ai/lunary/commit/1e8a3d941ba5cfef2c478dd5bac4e4a4b4d67830" + }, { "type": "WEB", "url": "https://huntr.com/bounties/eca4ad45-2a38-4f3c-9ec1-8205cd51be31" diff --git a/advisories/unreviewed/2024/11/GHSA-j6q3-cq66-wv24/GHSA-j6q3-cq66-wv24.json b/advisories/unreviewed/2024/11/GHSA-j6q3-cq66-wv24/GHSA-j6q3-cq66-wv24.json index 433b8e6323f..c1ee2ee2766 100644 --- a/advisories/unreviewed/2024/11/GHSA-j6q3-cq66-wv24/GHSA-j6q3-cq66-wv24.json +++ b/advisories/unreviewed/2024/11/GHSA-j6q3-cq66-wv24/GHSA-j6q3-cq66-wv24.json @@ -34,7 +34,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-121" + "CWE-121", + "CWE-787" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/11/GHSA-v5h2-p3p4-wc8q/GHSA-v5h2-p3p4-wc8q.json b/advisories/unreviewed/2024/11/GHSA-v5h2-p3p4-wc8q/GHSA-v5h2-p3p4-wc8q.json index 7b97c29badf..869556b13d0 100644 --- a/advisories/unreviewed/2024/11/GHSA-v5h2-p3p4-wc8q/GHSA-v5h2-p3p4-wc8q.json +++ b/advisories/unreviewed/2024/11/GHSA-v5h2-p3p4-wc8q/GHSA-v5h2-p3p4-wc8q.json @@ -34,7 +34,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-121" + "CWE-121", + "CWE-787" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/11/GHSA-vj2h-cxvj-32h5/GHSA-vj2h-cxvj-32h5.json b/advisories/unreviewed/2024/11/GHSA-vj2h-cxvj-32h5/GHSA-vj2h-cxvj-32h5.json index beefc24369f..2326e68d28b 100644 --- a/advisories/unreviewed/2024/11/GHSA-vj2h-cxvj-32h5/GHSA-vj2h-cxvj-32h5.json +++ b/advisories/unreviewed/2024/11/GHSA-vj2h-cxvj-32h5/GHSA-vj2h-cxvj-32h5.json @@ -34,7 +34,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-121" + "CWE-121", + "CWE-787" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/12/GHSA-q234-cxpj-mgpq/GHSA-q234-cxpj-mgpq.json b/advisories/unreviewed/2024/12/GHSA-q234-cxpj-mgpq/GHSA-q234-cxpj-mgpq.json index 17fb69df1fa..472a6c90ebc 100644 --- a/advisories/unreviewed/2024/12/GHSA-q234-cxpj-mgpq/GHSA-q234-cxpj-mgpq.json +++ b/advisories/unreviewed/2024/12/GHSA-q234-cxpj-mgpq/GHSA-q234-cxpj-mgpq.json @@ -1,13 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-q234-cxpj-mgpq", - "modified": "2024-12-10T00:31:27Z", + "modified": "2025-01-30T15:31:36Z", "published": "2024-12-10T00:31:27Z", "aliases": [ "CVE-2024-9672" ], "details": "A reflected cross-site scripting (XSS) vulnerability exists in PaperCut NG/MF. This issue can be used to execute specially created JavaScript payloads in the browser. A user must click on a malicious link for this issue to occur.", "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" + }, { "type": "CVSS_V4", "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:N/VI:L/VA:N/SC:H/SI:H/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" @@ -26,6 +30,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-79", "CWE-917" ], "severity": "MODERATE", diff --git a/advisories/unreviewed/2025/01/GHSA-2282-4ccr-wfvx/GHSA-2282-4ccr-wfvx.json b/advisories/unreviewed/2025/01/GHSA-2282-4ccr-wfvx/GHSA-2282-4ccr-wfvx.json new file mode 100644 index 00000000000..462355d1af4 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-2282-4ccr-wfvx/GHSA-2282-4ccr-wfvx.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2282-4ccr-wfvx", + "modified": "2025-01-30T15:31:39Z", + "published": "2025-01-30T15:31:38Z", + "aliases": [ + "CVE-2024-13549" + ], + "details": "The All Bootstrap Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the \"Accordion\" widget in all versions up to, and including, 1.3.26 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-13549" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset/3228370/all-bootstrap-blocks/trunk/blocks/accordion-item.php" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/786e16be-dee9-43de-afe3-dcc0d17bc92b?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-30T14:15:34Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-26mp-7jg9-5q47/GHSA-26mp-7jg9-5q47.json b/advisories/unreviewed/2025/01/GHSA-26mp-7jg9-5q47/GHSA-26mp-7jg9-5q47.json index 289c8ddfa23..16c11a8f9bb 100644 --- a/advisories/unreviewed/2025/01/GHSA-26mp-7jg9-5q47/GHSA-26mp-7jg9-5q47.json +++ b/advisories/unreviewed/2025/01/GHSA-26mp-7jg9-5q47/GHSA-26mp-7jg9-5q47.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-26mp-7jg9-5q47", - "modified": "2025-01-14T06:32:01Z", + "modified": "2025-01-30T15:31:36Z", "published": "2025-01-14T06:32:00Z", "aliases": [ "CVE-2024-13348" diff --git a/advisories/unreviewed/2025/01/GHSA-26wm-7r96-7phx/GHSA-26wm-7r96-7phx.json b/advisories/unreviewed/2025/01/GHSA-26wm-7r96-7phx/GHSA-26wm-7r96-7phx.json index 80cbc95d422..6e0ba21075e 100644 --- a/advisories/unreviewed/2025/01/GHSA-26wm-7r96-7phx/GHSA-26wm-7r96-7phx.json +++ b/advisories/unreviewed/2025/01/GHSA-26wm-7r96-7phx/GHSA-26wm-7r96-7phx.json @@ -26,7 +26,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-284" + "CWE-284", + "CWE-863" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/01/GHSA-2gf3-m6c4-6gx9/GHSA-2gf3-m6c4-6gx9.json b/advisories/unreviewed/2025/01/GHSA-2gf3-m6c4-6gx9/GHSA-2gf3-m6c4-6gx9.json new file mode 100644 index 00000000000..32cbfdad139 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-2gf3-m6c4-6gx9/GHSA-2gf3-m6c4-6gx9.json @@ -0,0 +1,44 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2gf3-m6c4-6gx9", + "modified": "2025-01-30T15:31:39Z", + "published": "2025-01-30T15:31:39Z", + "aliases": [ + "CVE-2024-13742" + ], + "details": "The iControlWP – Multiple WordPress Site Manager plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 4.4.5 via deserialization of untrusted input from the reqpars parameter. This makes it possible for unauthenticated attackers to inject a PHP Object. No known POP chain is present in the vulnerable software, which means this vulnerability has no impact unless another plugin or theme containing a POP chain is installed on the site. If a POP chain is present via an additional plugin or theme installed on the target system, it may allow the attacker to perform actions like delete arbitrary files, retrieve sensitive data, or execute code depending on the POP chain present.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-13742" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/worpit-admin-dashboard-plugin/tags/4.4.5/lib/src/LegacyApi/RequestParameters.php#L42" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/worpit-admin-dashboard-plugin/tags/4.4.5/src/api/RequestParameters.php#L14" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/6f25b0cc-60ec-49a0-8356-fd3fba97e987?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-502" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-30T14:15:36Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-2h8h-53wp-5m9q/GHSA-2h8h-53wp-5m9q.json b/advisories/unreviewed/2025/01/GHSA-2h8h-53wp-5m9q/GHSA-2h8h-53wp-5m9q.json new file mode 100644 index 00000000000..b1a0898684a --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-2h8h-53wp-5m9q/GHSA-2h8h-53wp-5m9q.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2h8h-53wp-5m9q", + "modified": "2025-01-30T15:31:39Z", + "published": "2025-01-30T15:31:39Z", + "aliases": [ + "CVE-2024-13652" + ], + "details": "The ECPay Ecommerce for WooCommerce plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the 'clear_ecpay_debug_log' AJAX action in all versions up to, and including, 1.1.2411060. This makes it possible for authenticated attackers, with Subscriber-level access and above, to clear the plugin's log files.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-13652" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/ecpay-ecommerce-for-woocommerce" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/5ae08e0b-ea17-46c1-aad3-4ecea69c1bdc?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-862" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-30T14:15:35Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-2mqw-xvh5-rv38/GHSA-2mqw-xvh5-rv38.json b/advisories/unreviewed/2025/01/GHSA-2mqw-xvh5-rv38/GHSA-2mqw-xvh5-rv38.json index 4f3f3805cc5..36c2e1f72de 100644 --- a/advisories/unreviewed/2025/01/GHSA-2mqw-xvh5-rv38/GHSA-2mqw-xvh5-rv38.json +++ b/advisories/unreviewed/2025/01/GHSA-2mqw-xvh5-rv38/GHSA-2mqw-xvh5-rv38.json @@ -26,7 +26,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-284" + "CWE-284", + "CWE-863" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/01/GHSA-35p2-5vrh-m3p6/GHSA-35p2-5vrh-m3p6.json b/advisories/unreviewed/2025/01/GHSA-35p2-5vrh-m3p6/GHSA-35p2-5vrh-m3p6.json new file mode 100644 index 00000000000..2dc42550e25 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-35p2-5vrh-m3p6/GHSA-35p2-5vrh-m3p6.json @@ -0,0 +1,33 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-35p2-5vrh-m3p6", + "modified": "2025-01-30T15:31:39Z", + "published": "2025-01-30T15:31:39Z", + "aliases": [ + "CVE-2024-55417" + ], + "details": "DevDojo Voyager through version 1.8.0 is vulnerable to bypassing the file type verification when an authenticated user uploads a file via /admin/media/upload. An authenticated user can upload a web shell causing arbitrary code execution on the server.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-55417" + }, + { + "type": "WEB", + "url": "https://github.com/thedevdojo/voyager/blob/1.6/src/Http/Controllers/VoyagerMediaController.php#L238" + }, + { + "type": "WEB", + "url": "https://www.sonarsource.com/blog/the-tainted-voyage-uncovering-voyagers-vulnerabilities" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-30T15:15:17Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-388j-jw77-hhcj/GHSA-388j-jw77-hhcj.json b/advisories/unreviewed/2025/01/GHSA-388j-jw77-hhcj/GHSA-388j-jw77-hhcj.json new file mode 100644 index 00000000000..d7557a00761 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-388j-jw77-hhcj/GHSA-388j-jw77-hhcj.json @@ -0,0 +1,44 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-388j-jw77-hhcj", + "modified": "2025-01-30T15:31:38Z", + "published": "2025-01-30T15:31:38Z", + "aliases": [ + "CVE-2024-12320" + ], + "details": "The Team Rosters plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘tab’ parameter in all versions up to, and including, 4.7 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12320" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/team-rosters/trunk/includes/mstw-tr-settings.php#L126" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/team-rosters/trunk/includes/mstw-tr-settings.php#L54" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/86b85505-8cae-4607-a645-5b127f6f37e7?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-30T14:15:32Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-3vmp-5673-67p4/GHSA-3vmp-5673-67p4.json b/advisories/unreviewed/2025/01/GHSA-3vmp-5673-67p4/GHSA-3vmp-5673-67p4.json index e322024d56d..1747d5e7287 100644 --- a/advisories/unreviewed/2025/01/GHSA-3vmp-5673-67p4/GHSA-3vmp-5673-67p4.json +++ b/advisories/unreviewed/2025/01/GHSA-3vmp-5673-67p4/GHSA-3vmp-5673-67p4.json @@ -26,6 +26,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-862", "CWE-923" ], "severity": "MODERATE", diff --git a/advisories/unreviewed/2025/01/GHSA-4v2c-h5r2-9g7x/GHSA-4v2c-h5r2-9g7x.json b/advisories/unreviewed/2025/01/GHSA-4v2c-h5r2-9g7x/GHSA-4v2c-h5r2-9g7x.json new file mode 100644 index 00000000000..15d2bdbce3c --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-4v2c-h5r2-9g7x/GHSA-4v2c-h5r2-9g7x.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-4v2c-h5r2-9g7x", + "modified": "2025-01-30T15:31:38Z", + "published": "2025-01-30T15:31:38Z", + "aliases": [ + "CVE-2024-13400" + ], + "details": "The Kona Gallery Block plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the \"Kona: Instagram for Gutenberg\" Block, specifically in the \"align\" attribute, in all versions up to, and including, 1.7 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-13400" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/kona-instagram-feed-for-gutenberg" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/e90045df-deb5-41ab-a285-c6b1573ae0f6?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-30T14:15:33Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-54x3-pqpj-qp4h/GHSA-54x3-pqpj-qp4h.json b/advisories/unreviewed/2025/01/GHSA-54x3-pqpj-qp4h/GHSA-54x3-pqpj-qp4h.json index ea862e162c6..2dfd02e1629 100644 --- a/advisories/unreviewed/2025/01/GHSA-54x3-pqpj-qp4h/GHSA-54x3-pqpj-qp4h.json +++ b/advisories/unreviewed/2025/01/GHSA-54x3-pqpj-qp4h/GHSA-54x3-pqpj-qp4h.json @@ -26,7 +26,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-284" + "CWE-284", + "CWE-863" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/01/GHSA-5g3g-9c8x-wh8j/GHSA-5g3g-9c8x-wh8j.json b/advisories/unreviewed/2025/01/GHSA-5g3g-9c8x-wh8j/GHSA-5g3g-9c8x-wh8j.json new file mode 100644 index 00000000000..48ddb06795e --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-5g3g-9c8x-wh8j/GHSA-5g3g-9c8x-wh8j.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-5g3g-9c8x-wh8j", + "modified": "2025-01-30T15:31:39Z", + "published": "2025-01-30T15:31:39Z", + "aliases": [ + "CVE-2024-13715" + ], + "details": "The zStore Manager Basic plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the zstore_clear_cache() function in all versions up to, and including, 3.311. This makes it possible for authenticated attackers, with Subscriber-level access and above, to clear the plugin's cache.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-13715" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/zstore-manager-basic/trunk/zstore-manager.php#L441" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/974ffc87-369a-431e-b601-8c6679d963c3?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-862" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-30T14:15:36Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-5v5f-546h-cjwp/GHSA-5v5f-546h-cjwp.json b/advisories/unreviewed/2025/01/GHSA-5v5f-546h-cjwp/GHSA-5v5f-546h-cjwp.json new file mode 100644 index 00000000000..e19696d6a3c --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-5v5f-546h-cjwp/GHSA-5v5f-546h-cjwp.json @@ -0,0 +1,44 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-5v5f-546h-cjwp", + "modified": "2025-01-30T15:31:39Z", + "published": "2025-01-30T15:31:39Z", + "aliases": [ + "CVE-2024-13661" + ], + "details": "The Table Editor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'wptableeditor_vtabs' shortcode in all versions up to, and including, 1.5.1 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-13661" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/wp-table-editor/trunk/includes/public/shortcode.php#L333" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset?sfp_email=&sfph_mail=&reponame=&old=3228279%40wp-table-editor&new=3228279%40wp-table-editor&sfp_email=&sfph_mail=" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/3fe1f3c3-4a81-4aae-9a5e-e5889f4c69ba?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-30T14:15:35Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-5wjw-qjhm-v43h/GHSA-5wjw-qjhm-v43h.json b/advisories/unreviewed/2025/01/GHSA-5wjw-qjhm-v43h/GHSA-5wjw-qjhm-v43h.json new file mode 100644 index 00000000000..82a5c50612c --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-5wjw-qjhm-v43h/GHSA-5wjw-qjhm-v43h.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-5wjw-qjhm-v43h", + "modified": "2025-01-30T15:31:39Z", + "published": "2025-01-30T15:31:39Z", + "aliases": [ + "CVE-2024-53615" + ], + "details": "A command injection vulnerability in the video thumbnail rendering component of Karl Ward's files.gallery v0.3.0 through 0.11.0 allows remote attackers to execute arbitrary code via a crafted video file.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-53615" + }, + { + "type": "WEB", + "url": "https://github.com/beune/CVE-2024-53615" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-30T15:15:17Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-67rj-3hx7-hcvv/GHSA-67rj-3hx7-hcvv.json b/advisories/unreviewed/2025/01/GHSA-67rj-3hx7-hcvv/GHSA-67rj-3hx7-hcvv.json new file mode 100644 index 00000000000..dfe707f9ec0 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-67rj-3hx7-hcvv/GHSA-67rj-3hx7-hcvv.json @@ -0,0 +1,48 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-67rj-3hx7-hcvv", + "modified": "2025-01-30T15:31:37Z", + "published": "2025-01-30T15:31:37Z", + "aliases": [ + "CVE-2025-0869" + ], + "details": "A vulnerability was found in Cianet ONU GW24AC up to 20250127. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component Login. The manipulation of the argument browserLang leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-0869" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.294055" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.294055" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.489867" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-30T13:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-6h8q-844x-cv7w/GHSA-6h8q-844x-cv7w.json b/advisories/unreviewed/2025/01/GHSA-6h8q-844x-cv7w/GHSA-6h8q-844x-cv7w.json new file mode 100644 index 00000000000..92625ec0196 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-6h8q-844x-cv7w/GHSA-6h8q-844x-cv7w.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-6h8q-844x-cv7w", + "modified": "2025-01-30T15:31:38Z", + "published": "2025-01-30T15:31:38Z", + "aliases": [ + "CVE-2024-12129" + ], + "details": "The Royal Core plugin for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escalation due to a missing capability check on the 'royal_restore_backup' function in all versions up to, and including, 2.9.2. This makes it possible for authenticated attackers, with Subscriber-level access and above, to update arbitrary options on the WordPress site. This can be leveraged to update the default role for registration to administrator and enable user registration for attackers to gain administrative user access to a vulnerable site.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12129" + }, + { + "type": "WEB", + "url": "https://themeforest.net/item/hyperx-portfolio-for-freelancers-agencies/13439786" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/a6ca0a45-cbb3-419b-a2fd-7427935524d8?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-862" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-30T14:15:31Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-7g73-rmvj-m738/GHSA-7g73-rmvj-m738.json b/advisories/unreviewed/2025/01/GHSA-7g73-rmvj-m738/GHSA-7g73-rmvj-m738.json new file mode 100644 index 00000000000..df5be4baf2a --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-7g73-rmvj-m738/GHSA-7g73-rmvj-m738.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-7g73-rmvj-m738", + "modified": "2025-01-30T15:31:39Z", + "published": "2025-01-30T15:31:39Z", + "aliases": [ + "CVE-2024-13646" + ], + "details": "The Single-user-chat plugin for WordPress is vulnerable to unauthorized modification of data that can lead to a denial of service due to insufficient validation on the 'single_user_chat_update_login' function in all versions up to, and including, 0.5. This makes it possible for authenticated attackers, with subscriber-level access and above, to update option values to 'login' on the WordPress site. This may be leveraged to update an option that would create an error on the site and deny service to legitimate users or be used to set some values to true such as registration.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-13646" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/single-user-chat/trunk/single-user-chat.php#L326" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/8a4978c1-087f-4784-9691-91ca5044f60a?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-285" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-30T14:15:34Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-993x-66wg-rggv/GHSA-993x-66wg-rggv.json b/advisories/unreviewed/2025/01/GHSA-993x-66wg-rggv/GHSA-993x-66wg-rggv.json new file mode 100644 index 00000000000..850984c7a9b --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-993x-66wg-rggv/GHSA-993x-66wg-rggv.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-993x-66wg-rggv", + "modified": "2025-01-30T15:31:37Z", + "published": "2025-01-30T15:31:37Z", + "aliases": [ + "CVE-2024-10847" + ], + "details": "The Storely theme for WordPress is vulnerable to Stored Cross-Site Scripting via a malicious display name in all versions up to, and including, 16.6 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-10847" + }, + { + "type": "WEB", + "url": "https://wordpress.org/themes/storely" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/b3a3fe11-76cc-4304-91b7-b9bc61f0ff70?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-30T14:15:30Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-c859-gh8g-fhp8/GHSA-c859-gh8g-fhp8.json b/advisories/unreviewed/2025/01/GHSA-c859-gh8g-fhp8/GHSA-c859-gh8g-fhp8.json new file mode 100644 index 00000000000..499b1559986 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-c859-gh8g-fhp8/GHSA-c859-gh8g-fhp8.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-c859-gh8g-fhp8", + "modified": "2025-01-30T15:31:38Z", + "published": "2025-01-30T15:31:38Z", + "aliases": [ + "CVE-2024-12269" + ], + "details": "The Safe Ai Malware Protection for WP plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the export_db() function in all versions up to, and including, 1.0.17. This makes it possible for unauthenticated attackers to retrieve a complete dump of the site's database.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12269" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/safe-ai-malware-protection-for-wp/trunk/includes/class-mvsp-export-db.php#L7" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/5247bf43-ae02-47cb-825e-23821b78eba9?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-862" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-30T14:15:31Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-c8w7-9g9r-2466/GHSA-c8w7-9g9r-2466.json b/advisories/unreviewed/2025/01/GHSA-c8w7-9g9r-2466/GHSA-c8w7-9g9r-2466.json new file mode 100644 index 00000000000..3758ce30d87 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-c8w7-9g9r-2466/GHSA-c8w7-9g9r-2466.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-c8w7-9g9r-2466", + "modified": "2025-01-30T15:31:39Z", + "published": "2025-01-30T15:31:39Z", + "aliases": [ + "CVE-2024-8494" + ], + "details": "The Elementor Website Builder Pro plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.25.10 via the 'elementor-template' shortcode. This makes it possible for authenticated attackers, with Contributor-level access and above, to extract sensitive data including the content of Private, Pending, and Draft Templates. The vulnerability was partially patched in version 3.24.4.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8494" + }, + { + "type": "WEB", + "url": "https://elementor.com" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/94ada60f-1e20-454e-a9d7-7849be764d81?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-200" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-30T14:15:36Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-f5c9-x837-f3vm/GHSA-f5c9-x837-f3vm.json b/advisories/unreviewed/2025/01/GHSA-f5c9-x837-f3vm/GHSA-f5c9-x837-f3vm.json new file mode 100644 index 00000000000..d6892b8f434 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-f5c9-x837-f3vm/GHSA-f5c9-x837-f3vm.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-f5c9-x837-f3vm", + "modified": "2025-01-30T15:31:37Z", + "published": "2025-01-30T15:31:37Z", + "aliases": [ + "CVE-2024-11583" + ], + "details": "The Borderless – Widgets, Elements, Templates and Toolkit for Elementor & Gutenberg plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the 'remove_zipped_font' function in all versions up to, and including, 1.5.9. This makes it possible for authenticated attackers, with Subscriber-level access and above, to delete icon fonts that were previously uploaded.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11583" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/borderless/tags/1.5.7/includes/icon-manager/icon-manager.php#L270" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/0968fe3b-2256-41e8-8cc9-e800dd7f8c27?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-862" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-30T14:15:31Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-fcrw-mphx-7cxf/GHSA-fcrw-mphx-7cxf.json b/advisories/unreviewed/2025/01/GHSA-fcrw-mphx-7cxf/GHSA-fcrw-mphx-7cxf.json new file mode 100644 index 00000000000..653a20bf7b8 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-fcrw-mphx-7cxf/GHSA-fcrw-mphx-7cxf.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-fcrw-mphx-7cxf", + "modified": "2025-01-30T15:31:39Z", + "published": "2025-01-30T15:31:39Z", + "aliases": [ + "CVE-2025-23367" + ], + "details": "A flaw was found in the Wildfly Server Role Based Access Control (RBAC) provider. When authorization to control management operations is secured using the Role Based Access Control provider, a user without the required privileges can suspend or resume the server. A user with a Monitor or Auditor role is supposed to have only read access permissions and should not be able to suspend the server. \nThe vulnerability is caused by the Suspend and Resume handlers not performing authorization checks to validate whether the current user has the required permissions to proceed with the action.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23367" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/security/cve/CVE-2025-23367" + }, + { + "type": "WEB", + "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2337620" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-284" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-30T15:15:18Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-ff3c-r3wv-56wm/GHSA-ff3c-r3wv-56wm.json b/advisories/unreviewed/2025/01/GHSA-ff3c-r3wv-56wm/GHSA-ff3c-r3wv-56wm.json index af02dffacb0..53ecd914175 100644 --- a/advisories/unreviewed/2025/01/GHSA-ff3c-r3wv-56wm/GHSA-ff3c-r3wv-56wm.json +++ b/advisories/unreviewed/2025/01/GHSA-ff3c-r3wv-56wm/GHSA-ff3c-r3wv-56wm.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-ff3c-r3wv-56wm", - "modified": "2025-01-30T12:31:18Z", + "modified": "2025-01-30T15:31:36Z", "published": "2025-01-30T12:31:18Z", "aliases": [ "CVE-2025-23007" ], "details": "A vulnerability in the NetExtender Windows client log export function allows unauthorized access to sensitive Windows system files, potentially leading to privilege escalation.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -21,9 +26,10 @@ ], "database_specific": { "cwe_ids": [ - "CWE-269" + "CWE-269", + "CWE-276" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-01-30T10:15:09Z" diff --git a/advisories/unreviewed/2025/01/GHSA-fgc5-6vqg-25q8/GHSA-fgc5-6vqg-25q8.json b/advisories/unreviewed/2025/01/GHSA-fgc5-6vqg-25q8/GHSA-fgc5-6vqg-25q8.json new file mode 100644 index 00000000000..c2caf4d354e --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-fgc5-6vqg-25q8/GHSA-fgc5-6vqg-25q8.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-fgc5-6vqg-25q8", + "modified": "2025-01-30T15:31:38Z", + "published": "2025-01-30T15:31:38Z", + "aliases": [ + "CVE-2024-12861" + ], + "details": "The W2S – Migrate WooCommerce to Shopify plugin for WordPress is vulnerable to Arbitrary File Read in all versions up to, and including, 1.2.1 via the 'viw2s_view_log' AJAX action. This makes it possible for authenticated attackers, with Subscriber-level access and above, to read the contents of arbitrary files on the server, which can contain sensitive information.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12861" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset?sfp_email=&sfph_mail=&reponame=&old=3227799%40w2s-migrate-woo-to-shopify&new=3227799%40w2s-migrate-woo-to-shopify&sfp_email=&sfph_mail=" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/8a8eeae9-572c-420a-be7d-a240c54e96ae?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-73" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-30T14:15:33Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-gg47-g59r-934m/GHSA-gg47-g59r-934m.json b/advisories/unreviewed/2025/01/GHSA-gg47-g59r-934m/GHSA-gg47-g59r-934m.json new file mode 100644 index 00000000000..11e56b1972c --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-gg47-g59r-934m/GHSA-gg47-g59r-934m.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-gg47-g59r-934m", + "modified": "2025-01-30T15:31:39Z", + "published": "2025-01-30T15:31:39Z", + "aliases": [ + "CVE-2024-13664" + ], + "details": "The WP Post List Table plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'wpb_post_list_table' shortcode in all versions up to, and including, 1.0.3 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-13664" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset/3227735" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/b18f6817-86db-4a72-a2e9-a9e047e05bc5?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-30T14:15:35Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-grq4-vwp9-84h4/GHSA-grq4-vwp9-84h4.json b/advisories/unreviewed/2025/01/GHSA-grq4-vwp9-84h4/GHSA-grq4-vwp9-84h4.json new file mode 100644 index 00000000000..3f68b5426fb --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-grq4-vwp9-84h4/GHSA-grq4-vwp9-84h4.json @@ -0,0 +1,52 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-grq4-vwp9-84h4", + "modified": "2025-01-30T15:31:39Z", + "published": "2025-01-30T15:31:39Z", + "aliases": [ + "CVE-2025-0871" + ], + "details": "A vulnerability classified as problematic has been found in Maybecms 1.2. This affects an unknown part of the file /mb/admin/index.php?u=article-edit of the component Add Article. The manipulation of the argument data_info[content] leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-0871" + }, + { + "type": "WEB", + "url": "https://github.com/Upgradeextension/Maybecms/blob/main/README.md" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.294057" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.294057" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.487930" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-30T15:15:18Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-hfgf-g5x7-vvfr/GHSA-hfgf-g5x7-vvfr.json b/advisories/unreviewed/2025/01/GHSA-hfgf-g5x7-vvfr/GHSA-hfgf-g5x7-vvfr.json new file mode 100644 index 00000000000..4da1029c355 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-hfgf-g5x7-vvfr/GHSA-hfgf-g5x7-vvfr.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-hfgf-g5x7-vvfr", + "modified": "2025-01-30T15:31:37Z", + "published": "2025-01-30T15:31:37Z", + "aliases": [ + "CVE-2024-10591" + ], + "details": "The MWB HubSpot for WooCommerce – CRM, Abandoned Cart, Email Marketing, Marketing Automation & Analytics plugin for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escalation due to a missing capability check on the hubwoo_save_updates() function in all versions up to, and including, 1.5.9. This makes it possible for authenticated attackers, with Contributor-level access and above, to update arbitrary options on the WordPress site. This can be leveraged to update the default role for registration to administrator and enable user registration for attackers to gain administrative user access to a vulnerable site.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-10591" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/makewebbetter-hubspot-for-woocommerce/trunk/includes/class-hubwoo-ajax-handler.php#L845" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/bd38b5f2-f13e-4433-9a8a-2f42cc1782c6?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-862" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-30T14:15:30Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-j4mf-rp8x-w2c3/GHSA-j4mf-rp8x-w2c3.json b/advisories/unreviewed/2025/01/GHSA-j4mf-rp8x-w2c3/GHSA-j4mf-rp8x-w2c3.json new file mode 100644 index 00000000000..2de59c915d4 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-j4mf-rp8x-w2c3/GHSA-j4mf-rp8x-w2c3.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-j4mf-rp8x-w2c3", + "modified": "2025-01-30T15:31:38Z", + "published": "2025-01-30T15:31:38Z", + "aliases": [ + "CVE-2024-12821" + ], + "details": "The Media Manager for UserPro plugin for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escalation due to a missing capability check on the upm_upload_media() function in all versions up to, and including, 3.12.0. This makes it possible for authenticated attackers, with Subscriber-level access and above, to update arbitrary options on the WordPress site. This can be leveraged to update the default role for registration to administrator and enable user registration for attackers to gain administrative user access to a vulnerable site.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12821" + }, + { + "type": "WEB", + "url": "https://codecanyon.net/item/media-manager-for-userpro/8664618" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/89afc78b-efd5-445e-884f-2345e08df705?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-862" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-30T14:15:32Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-j63m-2vr6-fv7m/GHSA-j63m-2vr6-fv7m.json b/advisories/unreviewed/2025/01/GHSA-j63m-2vr6-fv7m/GHSA-j63m-2vr6-fv7m.json new file mode 100644 index 00000000000..fbbd21ad836 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-j63m-2vr6-fv7m/GHSA-j63m-2vr6-fv7m.json @@ -0,0 +1,37 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-j63m-2vr6-fv7m", + "modified": "2025-01-30T15:31:39Z", + "published": "2025-01-30T15:31:39Z", + "aliases": [ + "CVE-2024-55415" + ], + "details": "DevDojo Voyager through 1.8.0 is vulnerable to path traversal at the /admin/compass.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-55415" + }, + { + "type": "WEB", + "url": "https://github.com/thedevdojo/voyager/blob/1.6/src/Http/Controllers/VoyagerCompassController.php#L213" + }, + { + "type": "WEB", + "url": "https://github.com/thedevdojo/voyager/blob/1.6/src/Http/Controllers/VoyagerCompassController.php#L44" + }, + { + "type": "WEB", + "url": "https://www.sonarsource.com/blog/the-tainted-voyage-uncovering-voyagers-vulnerabilities" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-30T15:15:17Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-mm49-4f2g-c3wf/GHSA-mm49-4f2g-c3wf.json b/advisories/unreviewed/2025/01/GHSA-mm49-4f2g-c3wf/GHSA-mm49-4f2g-c3wf.json new file mode 100644 index 00000000000..be9fe93113d --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-mm49-4f2g-c3wf/GHSA-mm49-4f2g-c3wf.json @@ -0,0 +1,37 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-mm49-4f2g-c3wf", + "modified": "2025-01-30T15:31:39Z", + "published": "2025-01-30T15:31:39Z", + "aliases": [ + "CVE-2024-55416" + ], + "details": "DevDojo Voyager through version 1.8.0 is vulnerable to reflected XSS via /admin/compass. By manipulating an authenticated user to click on a link, arbitrary Javascript can be executed.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-55416" + }, + { + "type": "WEB", + "url": "https://github.com/thedevdojo/voyager/blob/1.6/resources/views/master.blade.php#L132" + }, + { + "type": "WEB", + "url": "https://github.com/thedevdojo/voyager/blob/1.6/src/Http/Controllers/VoyagerCompassController.php#L44" + }, + { + "type": "WEB", + "url": "https://www.sonarsource.com/blog/the-tainted-voyage-uncovering-voyagers-vulnerabilities" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-30T15:15:17Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-mpf5-4599-xvw2/GHSA-mpf5-4599-xvw2.json b/advisories/unreviewed/2025/01/GHSA-mpf5-4599-xvw2/GHSA-mpf5-4599-xvw2.json new file mode 100644 index 00000000000..80eb0153b22 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-mpf5-4599-xvw2/GHSA-mpf5-4599-xvw2.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-mpf5-4599-xvw2", + "modified": "2025-01-30T15:31:39Z", + "published": "2025-01-30T15:31:39Z", + "aliases": [ + "CVE-2024-13720" + ], + "details": "The WP Image Uploader plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the gky_image_uploader_main_function() function in all versions up to, and including, 1.0.1. This makes it possible for unauthenticated attackers to delete arbitrary files on the server, which can easily lead to remote code execution when the right file is deleted (such as wp-config.php).", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-13720" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/wp-image-uploader/trunk/index.php#L85" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/4af41f69-1335-4199-bf29-c9699de50a16?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-352" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-30T14:15:36Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-p35m-2xg8-32v4/GHSA-p35m-2xg8-32v4.json b/advisories/unreviewed/2025/01/GHSA-p35m-2xg8-32v4/GHSA-p35m-2xg8-32v4.json new file mode 100644 index 00000000000..3ecbb445c6f --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-p35m-2xg8-32v4/GHSA-p35m-2xg8-32v4.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-p35m-2xg8-32v4", + "modified": "2025-01-30T15:31:38Z", + "published": "2025-01-30T15:31:38Z", + "aliases": [ + "CVE-2024-12177" + ], + "details": "The Ai Image Alt Text Generator for WP plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'page' parameter in all versions up to, and including, 1.0.2 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12177" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/ai-image-alt-text-generator-for-wp/tags/1.0.2/includes/class-boomdevs-ai-image-alt-text-generator-custom-menu.php#L218" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/902ec583-c072-4c6d-8250-ad08d7ecf239?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-30T14:15:31Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-p7c3-fj7j-p7ww/GHSA-p7c3-fj7j-p7ww.json b/advisories/unreviewed/2025/01/GHSA-p7c3-fj7j-p7ww/GHSA-p7c3-fj7j-p7ww.json new file mode 100644 index 00000000000..86f28f5d049 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-p7c3-fj7j-p7ww/GHSA-p7c3-fj7j-p7ww.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-p7c3-fj7j-p7ww", + "modified": "2025-01-30T15:31:39Z", + "published": "2025-01-30T15:31:39Z", + "aliases": [ + "CVE-2024-13671" + ], + "details": "The Music Sheet Viewer plugin for WordPress is vulnerable to Arbitrary File Read in all versions up to, and including, 4.1 via the read_score_file() function. This makes it possible for unauthenticated attackers to read the contents of arbitrary files on the server, which can contain sensitive information.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-13671" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/music-sheet-viewer/trunk/music-sheet-viewer.php#L748" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/569f1cd4-195b-41d4-85cb-f529a1eb18d4?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-22" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-30T14:15:35Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-qf88-5j88-qjqv/GHSA-qf88-5j88-qjqv.json b/advisories/unreviewed/2025/01/GHSA-qf88-5j88-qjqv/GHSA-qf88-5j88-qjqv.json new file mode 100644 index 00000000000..a0c950a8481 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-qf88-5j88-qjqv/GHSA-qf88-5j88-qjqv.json @@ -0,0 +1,48 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-qf88-5j88-qjqv", + "modified": "2025-01-30T15:31:38Z", + "published": "2025-01-30T15:31:38Z", + "aliases": [ + "CVE-2024-11600" + ], + "details": "The Borderless – Widgets, Elements, Templates and Toolkit for Elementor & Gutenberg plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 1.5.9 via the 'write_config' function. This is due to a lack of sanitization on an imported JSON file. This makes it possible for authenticated attackers, with Administrator-level access and above, to execute code on the server.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11600" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/borderless/tags/1.5.7/includes/icon-manager/icon-manager.php#L249" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/borderless/tags/1.5.7/includes/icon-manager/icon-manager.php#L333" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/borderless/tags/1.5.7/includes/icon-manager/icon-manager.php#L388" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/643b8b82-c4e1-4b81-a7e0-aee0f9270702?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-94" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-30T14:15:31Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-qj7x-454p-f37f/GHSA-qj7x-454p-f37f.json b/advisories/unreviewed/2025/01/GHSA-qj7x-454p-f37f/GHSA-qj7x-454p-f37f.json new file mode 100644 index 00000000000..7e21374709a --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-qj7x-454p-f37f/GHSA-qj7x-454p-f37f.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-qj7x-454p-f37f", + "modified": "2025-01-30T15:31:38Z", + "published": "2025-01-30T15:31:38Z", + "aliases": [ + "CVE-2024-13460" + ], + "details": "The WE – Testimonial Slider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Testimonial Author Names in all versions up to, and including, 1.5 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-13460" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/we-testimonial-slider" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/704a7df0-8e6b-4145-96a2-d179a6d75aac?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-30T14:15:34Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-qm65-g2fh-9p2w/GHSA-qm65-g2fh-9p2w.json b/advisories/unreviewed/2025/01/GHSA-qm65-g2fh-9p2w/GHSA-qm65-g2fh-9p2w.json new file mode 100644 index 00000000000..85f3f63e8ed --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-qm65-g2fh-9p2w/GHSA-qm65-g2fh-9p2w.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-qm65-g2fh-9p2w", + "modified": "2025-01-30T15:31:38Z", + "published": "2025-01-30T15:31:38Z", + "aliases": [ + "CVE-2024-12102" + ], + "details": "The Typer Core plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 1.9.6 via the 'elementor-template' shortcode due to insufficient restrictions on which posts can be included. This makes it possible for authenticated attackers, with Contributor-level access and above, to extract data from private or draft posts created by Elementor that they should not have access to.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12102" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/typer-core" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/de53b1d8-e38f-42c5-adfc-2b0ce8d6945b?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-639" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-30T14:15:31Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-qm93-m498-q38q/GHSA-qm93-m498-q38q.json b/advisories/unreviewed/2025/01/GHSA-qm93-m498-q38q/GHSA-qm93-m498-q38q.json new file mode 100644 index 00000000000..2a4b7fa0cca --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-qm93-m498-q38q/GHSA-qm93-m498-q38q.json @@ -0,0 +1,44 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-qm93-m498-q38q", + "modified": "2025-01-30T15:31:38Z", + "published": "2025-01-30T15:31:38Z", + "aliases": [ + "CVE-2024-13349" + ], + "details": "The Stockdio Historical Chart plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'stockdio-historical-chart' shortcode in all versions up to, and including, 2.8.18 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-13349" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/stockdio-historical-chart/trunk/stockdioplugin.php#L1155" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/stockdio-historical-chart" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/ecf476a8-e341-44d4-988c-a7fb3fb538d1?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-30T14:15:33Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-qmjp-x75f-m6mw/GHSA-qmjp-x75f-m6mw.json b/advisories/unreviewed/2025/01/GHSA-qmjp-x75f-m6mw/GHSA-qmjp-x75f-m6mw.json new file mode 100644 index 00000000000..86e4e3b1d2b --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-qmjp-x75f-m6mw/GHSA-qmjp-x75f-m6mw.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-qmjp-x75f-m6mw", + "modified": "2025-01-30T15:31:39Z", + "published": "2025-01-30T15:31:39Z", + "aliases": [ + "CVE-2024-13705" + ], + "details": "The StageShow plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of remove_query_arg without appropriate escaping on the URL in all versions up to, and including, 9.8.6. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-13705" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/stageshow/trunk/admin/stageshow_manage_seating.php#L502" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/4c5a6436-1a08-4b3d-ab85-e5f75f216ab8?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-30T14:15:36Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-qpch-p5p5-5cv9/GHSA-qpch-p5p5-5cv9.json b/advisories/unreviewed/2025/01/GHSA-qpch-p5p5-5cv9/GHSA-qpch-p5p5-5cv9.json new file mode 100644 index 00000000000..20923f8e535 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-qpch-p5p5-5cv9/GHSA-qpch-p5p5-5cv9.json @@ -0,0 +1,44 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-qpch-p5p5-5cv9", + "modified": "2025-01-30T15:31:38Z", + "published": "2025-01-30T15:31:38Z", + "aliases": [ + "CVE-2024-12444" + ], + "details": "The WP Dispensary plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'wpd_menu' shortcode in all versions up to, and including, 4.5.0 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12444" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/wp-dispensary/trunk/admin/wp-dispensary-shortcodes.php#L256" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/wp-dispensary" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/13753c4d-1b51-4db2-a69e-523857a50e55?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-30T14:15:32Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-r8mg-gjp7-q5fj/GHSA-r8mg-gjp7-q5fj.json b/advisories/unreviewed/2025/01/GHSA-r8mg-gjp7-q5fj/GHSA-r8mg-gjp7-q5fj.json new file mode 100644 index 00000000000..cc14e7d4b7b --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-r8mg-gjp7-q5fj/GHSA-r8mg-gjp7-q5fj.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-r8mg-gjp7-q5fj", + "modified": "2025-01-30T15:31:39Z", + "published": "2025-01-30T15:31:39Z", + "aliases": [ + "CVE-2024-13700" + ], + "details": "The Embed Swagger UI plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'wpsgui' shortcode in all versions up to, and including, 1.0.0 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-13700" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/embed-swagger-ui" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/20e2454f-f49b-413f-ae45-8b628b30a780?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-30T14:15:35Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-rv52-9m39-w8gf/GHSA-rv52-9m39-w8gf.json b/advisories/unreviewed/2025/01/GHSA-rv52-9m39-w8gf/GHSA-rv52-9m39-w8gf.json new file mode 100644 index 00000000000..8708ac7cc94 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-rv52-9m39-w8gf/GHSA-rv52-9m39-w8gf.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-rv52-9m39-w8gf", + "modified": "2025-01-30T15:31:39Z", + "published": "2025-01-30T15:31:39Z", + "aliases": [ + "CVE-2024-13707" + ], + "details": "The WP Image Uploader plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.0.1. This is due to missing or incorrect nonce validation on the gky_image_uploader_main_function() function. This makes it possible for unauthenticated attackers to delete arbitrary files via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-13707" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/wp-image-uploader/trunk/index.php#L85" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/646a9885-8e0e-42a9-a113-0688c9f6dc93?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-352" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-30T14:15:36Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-v3v8-4cr7-2w3g/GHSA-v3v8-4cr7-2w3g.json b/advisories/unreviewed/2025/01/GHSA-v3v8-4cr7-2w3g/GHSA-v3v8-4cr7-2w3g.json new file mode 100644 index 00000000000..f320438d62c --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-v3v8-4cr7-2w3g/GHSA-v3v8-4cr7-2w3g.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-v3v8-4cr7-2w3g", + "modified": "2025-01-30T15:31:38Z", + "published": "2025-01-30T15:31:38Z", + "aliases": [ + "CVE-2024-12822" + ], + "details": "The Media Manager for UserPro plugin for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escalation due to a missing capability check on the add_capto_img() function in all versions up to, and including, 3.11.0. This makes it possible for unauthenticated attackers to update arbitrary options on the WordPress site. This can be leveraged to update the default role for registration to administrator and enable user registration for attackers to gain administrative user access to a vulnerable site.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12822" + }, + { + "type": "WEB", + "url": "https://codecanyon.net/item/media-manager-for-userpro/8664618" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/a57b2afa-b943-419f-9819-d7b6835c4d10?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-862" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-30T14:15:33Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-v4f5-fhv2-ffvh/GHSA-v4f5-fhv2-ffvh.json b/advisories/unreviewed/2025/01/GHSA-v4f5-fhv2-ffvh/GHSA-v4f5-fhv2-ffvh.json new file mode 100644 index 00000000000..e1069b02a88 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-v4f5-fhv2-ffvh/GHSA-v4f5-fhv2-ffvh.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-v4f5-fhv2-ffvh", + "modified": "2025-01-30T15:31:38Z", + "published": "2025-01-30T15:31:38Z", + "aliases": [ + "CVE-2024-12299" + ], + "details": "The System Dashboard plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the Filename parameter in all versions up to, and including, 2.8.15 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick an administrative user into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12299" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/system-dashboard/tags/2.8.15/admin/class-system-dashboard-admin.php#L2323" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/993670b7-a3ea-497d-ad46-881bd47b9346?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-30T14:15:32Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-v77j-58w9-v6v7/GHSA-v77j-58w9-v6v7.json b/advisories/unreviewed/2025/01/GHSA-v77j-58w9-v6v7/GHSA-v77j-58w9-v6v7.json new file mode 100644 index 00000000000..b370817067f --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-v77j-58w9-v6v7/GHSA-v77j-58w9-v6v7.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-v77j-58w9-v6v7", + "modified": "2025-01-30T15:31:39Z", + "published": "2025-01-30T15:31:39Z", + "aliases": [ + "CVE-2024-13670" + ], + "details": "The Music Sheet Viewer plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'pn_msv' shortcode in all versions up to, and including, 4.1 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-13670" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/music-sheet-viewer/trunk/music-sheet-viewer.php#L395" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/8ec4eb8a-7b03-4392-9137-4f17622bfe54?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-30T14:15:35Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-vf37-49r4-5wh4/GHSA-vf37-49r4-5wh4.json b/advisories/unreviewed/2025/01/GHSA-vf37-49r4-5wh4/GHSA-vf37-49r4-5wh4.json new file mode 100644 index 00000000000..6979dfacc00 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-vf37-49r4-5wh4/GHSA-vf37-49r4-5wh4.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-vf37-49r4-5wh4", + "modified": "2025-01-30T15:31:39Z", + "published": "2025-01-30T15:31:39Z", + "aliases": [ + "CVE-2024-13596" + ], + "details": "The WordPress Survey & Poll – Quiz, Survey and Poll Plugin for WordPress plugin for WordPress is vulnerable to SQL Injection via the 'id' attribute of the 'survey' shortcode in all versions up to, and including, 1.7.5 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers, with Contributor-level access and above, to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-13596" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/wp-survey-and-poll/trunk/wordpress-survey-and-poll.php#L1457" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/996cb291-692d-4892-a3ab-ffad960ba732?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-89" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-30T14:15:34Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-vf69-hcwp-rxc8/GHSA-vf69-hcwp-rxc8.json b/advisories/unreviewed/2025/01/GHSA-vf69-hcwp-rxc8/GHSA-vf69-hcwp-rxc8.json index 238cc7b967a..069eaad1a0a 100644 --- a/advisories/unreviewed/2025/01/GHSA-vf69-hcwp-rxc8/GHSA-vf69-hcwp-rxc8.json +++ b/advisories/unreviewed/2025/01/GHSA-vf69-hcwp-rxc8/GHSA-vf69-hcwp-rxc8.json @@ -26,7 +26,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-284" + "CWE-284", + "CWE-863" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/01/GHSA-wq6j-h853-fwf7/GHSA-wq6j-h853-fwf7.json b/advisories/unreviewed/2025/01/GHSA-wq6j-h853-fwf7/GHSA-wq6j-h853-fwf7.json index f364ae48a37..b48e42e13d0 100644 --- a/advisories/unreviewed/2025/01/GHSA-wq6j-h853-fwf7/GHSA-wq6j-h853-fwf7.json +++ b/advisories/unreviewed/2025/01/GHSA-wq6j-h853-fwf7/GHSA-wq6j-h853-fwf7.json @@ -26,7 +26,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-284" + "CWE-284", + "CWE-863" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/01/GHSA-wrf2-7gmj-mf6g/GHSA-wrf2-7gmj-mf6g.json b/advisories/unreviewed/2025/01/GHSA-wrf2-7gmj-mf6g/GHSA-wrf2-7gmj-mf6g.json new file mode 100644 index 00000000000..ad8d43c57b4 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-wrf2-7gmj-mf6g/GHSA-wrf2-7gmj-mf6g.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-wrf2-7gmj-mf6g", + "modified": "2025-01-30T15:31:38Z", + "published": "2025-01-30T15:31:38Z", + "aliases": [ + "CVE-2024-12451" + ], + "details": "The HTML5 chat plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'HTML5CHAT' shortcode in all versions up to, and including, 1.04 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12451" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/html5-chat/trunk/index.php#L159" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/98de0a50-8464-4ea6-bf55-add9aab2d716?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-30T14:15:32Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-x379-p5q2-7954/GHSA-x379-p5q2-7954.json b/advisories/unreviewed/2025/01/GHSA-x379-p5q2-7954/GHSA-x379-p5q2-7954.json new file mode 100644 index 00000000000..ebbd4a8bd1c --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-x379-p5q2-7954/GHSA-x379-p5q2-7954.json @@ -0,0 +1,34 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-x379-p5q2-7954", + "modified": "2025-01-30T15:31:39Z", + "published": "2025-01-30T15:31:39Z", + "aliases": [ + "CVE-2025-22218" + ], + "details": "VMware Aria Operations for Logs contains an information disclosure vulnerability. A malicious actor with View Only Admin permissions may be able to read the credentials of a VMware product integrated with VMware Aria Operations for Logs", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-22218" + }, + { + "type": "WEB", + "url": "https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/25329" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-30T15:15:18Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-xr94-h88h-jc73/GHSA-xr94-h88h-jc73.json b/advisories/unreviewed/2025/01/GHSA-xr94-h88h-jc73/GHSA-xr94-h88h-jc73.json new file mode 100644 index 00000000000..80c7adca6fd --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-xr94-h88h-jc73/GHSA-xr94-h88h-jc73.json @@ -0,0 +1,52 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-xr94-h88h-jc73", + "modified": "2025-01-30T15:31:37Z", + "published": "2025-01-30T15:31:37Z", + "aliases": [ + "CVE-2025-0870" + ], + "details": "A vulnerability was found in Axiomatic Bento4 up to 1.6.0-641. It has been rated as critical. Affected by this issue is the function AP4_DataBuffer::GetData in the library Ap4DataBuffer.h. The manipulation leads to heap-based buffer overflow. The attack may be launched remotely. The complexity of an attack is rather high. The exploitation is known to be difficult. The exploit has been disclosed to the public and may be used. This product is using a rolling release to provide continious delivery. Therefore, no version details for affected nor updated releases are available.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-0870" + }, + { + "type": "WEB", + "url": "https://github.com/axiomatic-systems/Bento4/issues/980" + }, + { + "type": "WEB", + "url": "https://github.com/user-attachments/files/16929290/Bug2.zip" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.294056" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.294056" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-119" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-30T13:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-xw2h-r4wj-4fj6/GHSA-xw2h-r4wj-4fj6.json b/advisories/unreviewed/2025/01/GHSA-xw2h-r4wj-4fj6/GHSA-xw2h-r4wj-4fj6.json new file mode 100644 index 00000000000..ba4b7b686fa --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-xw2h-r4wj-4fj6/GHSA-xw2h-r4wj-4fj6.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-xw2h-r4wj-4fj6", + "modified": "2025-01-30T15:31:38Z", + "published": "2025-01-30T15:31:38Z", + "aliases": [ + "CVE-2024-13512" + ], + "details": "The Wonder FontAwesome plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 0.8. This is due to missing or incorrect nonce validation on one of its functions. This makes it possible for unauthenticated attackers to update settings and inject malicious web scripts via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-13512" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/wonder-fontawesome" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/494f5c9f-ef5b-48d8-8f3a-27e5ed4bea5e?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-352" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-30T14:15:34Z" + } +} \ No newline at end of file