From 2d9b13e7bcffec0d9ea9abbf5f4869acc71e342c Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Mon, 21 Apr 2025 05:09:21 +0000 Subject: [PATCH] Publish GHSA-cc8j-6phr-jv9x --- .../2023/09/GHSA-cc8j-6phr-jv9x/GHSA-cc8j-6phr-jv9x.json | 7 ++++--- 1 file changed, 4 insertions(+), 3 deletions(-) diff --git a/advisories/github-reviewed/2023/09/GHSA-cc8j-6phr-jv9x/GHSA-cc8j-6phr-jv9x.json b/advisories/github-reviewed/2023/09/GHSA-cc8j-6phr-jv9x/GHSA-cc8j-6phr-jv9x.json index 997def74d43..09aa711ff9f 100644 --- a/advisories/github-reviewed/2023/09/GHSA-cc8j-6phr-jv9x/GHSA-cc8j-6phr-jv9x.json +++ b/advisories/github-reviewed/2023/09/GHSA-cc8j-6phr-jv9x/GHSA-cc8j-6phr-jv9x.json @@ -1,13 +1,14 @@ { "schema_version": "1.4.0", "id": "GHSA-cc8j-6phr-jv9x", - "modified": "2025-04-10T14:27:17Z", + "modified": "2025-04-10T14:29:56Z", "published": "2023-09-22T00:30:29Z", + "withdrawn": "2025-04-10T14:29:56Z", "aliases": [ "CVE-2023-42261" ], - "summary": "Mobile Security Framework (MobSF) Vulnerable to Insecure Permissions", - "details": "Mobile Security Framework (MobSF) <=v3.7.8 Beta is vulnerable to Insecure Permissions.", + "summary": "Withdrawn Advisory: Mobile Security Framework (MobSF) Vulnerable to Insecure Permissions", + "details": "## Withdrawn Advisory\nThis advisory has been withdrawn because the vendor's position is that authentication is intentionally not implemented because the product is not intended for an untrusted network environment. Use cases requiring authentication could, for example, use a reverse proxy server.\n\n## Original Description\nMobile Security Framework (MobSF) <=v3.7.8 Beta is vulnerable to Insecure Permissions.", "severity": [ { "type": "CVSS_V3",