From 2cdb17a74863d52639b33e867d1f4cbe2c97f450 Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Fri, 13 Dec 2024 15:52:53 +0000 Subject: [PATCH] Publish Advisories GHSA-v845-jxx5-vc9f GHSA-mcw6-3256-64gg --- .../10/GHSA-v845-jxx5-vc9f/GHSA-v845-jxx5-vc9f.json | 10 +++++++++- .../04/GHSA-mcw6-3256-64gg/GHSA-mcw6-3256-64gg.json | 9 +++++++-- 2 files changed, 16 insertions(+), 3 deletions(-) diff --git a/advisories/github-reviewed/2023/10/GHSA-v845-jxx5-vc9f/GHSA-v845-jxx5-vc9f.json b/advisories/github-reviewed/2023/10/GHSA-v845-jxx5-vc9f/GHSA-v845-jxx5-vc9f.json index 15f69f8d48d..0112caa9206 100644 --- a/advisories/github-reviewed/2023/10/GHSA-v845-jxx5-vc9f/GHSA-v845-jxx5-vc9f.json +++ b/advisories/github-reviewed/2023/10/GHSA-v845-jxx5-vc9f/GHSA-v845-jxx5-vc9f.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-v845-jxx5-vc9f", - "modified": "2024-11-18T23:14:05Z", + "modified": "2024-12-13T15:52:19Z", "published": "2023-10-02T23:27:05Z", "aliases": [ "CVE-2023-43804" @@ -98,6 +98,14 @@ { "type": "WEB", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/NDAGZXYJ7H2G3SB47M453VQVNAWKAEJJ" + }, + { + "type": "WEB", + "url": "https://security.netapp.com/advisory/ntap-20241213-0007" + }, + { + "type": "WEB", + "url": "https://www.vicarius.io/vsociety/posts/cve-2023-43804-urllib3-vulnerability-3" } ], "database_specific": { diff --git a/advisories/github-reviewed/2024/04/GHSA-mcw6-3256-64gg/GHSA-mcw6-3256-64gg.json b/advisories/github-reviewed/2024/04/GHSA-mcw6-3256-64gg/GHSA-mcw6-3256-64gg.json index 594b661701f..217fd326046 100644 --- a/advisories/github-reviewed/2024/04/GHSA-mcw6-3256-64gg/GHSA-mcw6-3256-64gg.json +++ b/advisories/github-reviewed/2024/04/GHSA-mcw6-3256-64gg/GHSA-mcw6-3256-64gg.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-mcw6-3256-64gg", - "modified": "2024-07-08T20:38:14Z", + "modified": "2024-12-13T15:51:20Z", "published": "2024-04-05T09:30:39Z", "aliases": [ "CVE-2024-28949" @@ -121,6 +121,10 @@ "type": "WEB", "url": "https://mattermost.com/security-updates" }, + { + "type": "WEB", + "url": "https://pkg.go.dev/vuln/GO-2024-2695" + }, { "type": "PACKAGE", "url": "mattermost/mattermost" @@ -128,7 +132,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-400" + "CWE-400", + "CWE-770" ], "severity": "MODERATE", "github_reviewed": true,