diff --git a/advisories/unreviewed/2023/06/GHSA-w423-44w8-64mh/GHSA-w423-44w8-64mh.json b/advisories/unreviewed/2023/06/GHSA-w423-44w8-64mh/GHSA-w423-44w8-64mh.json index 250a8ad50f9..f5c728ca19e 100644 --- a/advisories/unreviewed/2023/06/GHSA-w423-44w8-64mh/GHSA-w423-44w8-64mh.json +++ b/advisories/unreviewed/2023/06/GHSA-w423-44w8-64mh/GHSA-w423-44w8-64mh.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-w423-44w8-64mh", - "modified": "2023-06-27T00:30:22Z", + "modified": "2023-11-07T00:30:31Z", "published": "2023-06-16T21:30:27Z", "aliases": [ "CVE-2023-35784" @@ -29,6 +29,10 @@ "type": "WEB", "url": "https://github.com/libressl/openbsd/commit/96094ca8757b95298f49d65c813f303bd514b27b" }, + { + "type": "WEB", + "url": "https://github.com/libressl/openbsd/commit/e42d8f4b21a8a498e2eabbffe4c7b7d4ef7cec54" + }, { "type": "WEB", "url": "https://ftp.openbsd.org/pub/OpenBSD/LibreSSL/libressl-3.6.3-relnotes.txt" @@ -50,9 +54,9 @@ "cwe_ids": [ "CWE-415" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, - "nvd_published_at": null + "nvd_published_at": "2023-06-16T20:15:09Z" } } \ No newline at end of file diff --git a/advisories/unreviewed/2023/08/GHSA-7vm7-m762-pgv3/GHSA-7vm7-m762-pgv3.json b/advisories/unreviewed/2023/08/GHSA-7vm7-m762-pgv3/GHSA-7vm7-m762-pgv3.json index 3efb1f63458..d987c5a2217 100644 --- a/advisories/unreviewed/2023/08/GHSA-7vm7-m762-pgv3/GHSA-7vm7-m762-pgv3.json +++ b/advisories/unreviewed/2023/08/GHSA-7vm7-m762-pgv3/GHSA-7vm7-m762-pgv3.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-7vm7-m762-pgv3", - "modified": "2023-08-08T18:30:37Z", + "modified": "2023-11-07T00:30:31Z", "published": "2023-08-08T18:30:37Z", "aliases": [ "CVE-2023-38186" @@ -30,9 +30,9 @@ "cwe_ids": [ ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, - "nvd_published_at": null + "nvd_published_at": "2023-08-08T18:15:23Z" } } \ No newline at end of file diff --git a/advisories/unreviewed/2023/08/GHSA-f4r6-49fh-5c4m/GHSA-f4r6-49fh-5c4m.json b/advisories/unreviewed/2023/08/GHSA-f4r6-49fh-5c4m/GHSA-f4r6-49fh-5c4m.json index 55021c1b6bb..fe63a3876e3 100644 --- a/advisories/unreviewed/2023/08/GHSA-f4r6-49fh-5c4m/GHSA-f4r6-49fh-5c4m.json +++ b/advisories/unreviewed/2023/08/GHSA-f4r6-49fh-5c4m/GHSA-f4r6-49fh-5c4m.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-f4r6-49fh-5c4m", - "modified": "2023-08-08T18:30:37Z", + "modified": "2023-11-07T00:30:31Z", "published": "2023-08-08T18:30:37Z", "aliases": [ "CVE-2023-36908" @@ -30,9 +30,9 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, - "nvd_published_at": null + "nvd_published_at": "2023-08-08T18:15:16Z" } } \ No newline at end of file diff --git a/advisories/unreviewed/2023/08/GHSA-fvh3-94pw-fvcc/GHSA-fvh3-94pw-fvcc.json b/advisories/unreviewed/2023/08/GHSA-fvh3-94pw-fvcc/GHSA-fvh3-94pw-fvcc.json index f66107d8559..7080061aaa8 100644 --- a/advisories/unreviewed/2023/08/GHSA-fvh3-94pw-fvcc/GHSA-fvh3-94pw-fvcc.json +++ b/advisories/unreviewed/2023/08/GHSA-fvh3-94pw-fvcc/GHSA-fvh3-94pw-fvcc.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-fvh3-94pw-fvcc", - "modified": "2023-08-08T21:30:37Z", + "modified": "2023-11-07T00:30:31Z", "published": "2023-08-08T21:30:37Z", "aliases": [ "CVE-2023-36899" @@ -30,7 +30,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2023-08-08T19:15:10Z" diff --git a/advisories/unreviewed/2023/08/GHSA-v2fp-mjm4-pj44/GHSA-v2fp-mjm4-pj44.json b/advisories/unreviewed/2023/08/GHSA-v2fp-mjm4-pj44/GHSA-v2fp-mjm4-pj44.json index 6b217840aef..f18a6143dec 100644 --- a/advisories/unreviewed/2023/08/GHSA-v2fp-mjm4-pj44/GHSA-v2fp-mjm4-pj44.json +++ b/advisories/unreviewed/2023/08/GHSA-v2fp-mjm4-pj44/GHSA-v2fp-mjm4-pj44.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-v2fp-mjm4-pj44", - "modified": "2023-08-08T18:30:37Z", + "modified": "2023-11-07T00:30:31Z", "published": "2023-08-08T18:30:37Z", "aliases": [ "CVE-2023-38169" @@ -30,9 +30,9 @@ "cwe_ids": [ ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, - "nvd_published_at": null + "nvd_published_at": "2023-08-08T18:15:22Z" } } \ No newline at end of file diff --git a/advisories/unreviewed/2023/09/GHSA-4w9h-xcp4-6v33/GHSA-4w9h-xcp4-6v33.json b/advisories/unreviewed/2023/09/GHSA-4w9h-xcp4-6v33/GHSA-4w9h-xcp4-6v33.json index 0ed8f0f28e2..dd9a998a73c 100644 --- a/advisories/unreviewed/2023/09/GHSA-4w9h-xcp4-6v33/GHSA-4w9h-xcp4-6v33.json +++ b/advisories/unreviewed/2023/09/GHSA-4w9h-xcp4-6v33/GHSA-4w9h-xcp4-6v33.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-4w9h-xcp4-6v33", - "modified": "2023-09-12T18:30:21Z", + "modified": "2023-11-07T00:30:31Z", "published": "2023-09-12T18:30:21Z", "aliases": [ "CVE-2023-36761" @@ -30,7 +30,7 @@ "cwe_ids": [ "CWE-668" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2023-09-12T17:15:11Z" diff --git a/advisories/unreviewed/2023/10/GHSA-54fp-2g66-5c89/GHSA-54fp-2g66-5c89.json b/advisories/unreviewed/2023/10/GHSA-54fp-2g66-5c89/GHSA-54fp-2g66-5c89.json index 3f0c68741dc..c9e3a0e233f 100644 --- a/advisories/unreviewed/2023/10/GHSA-54fp-2g66-5c89/GHSA-54fp-2g66-5c89.json +++ b/advisories/unreviewed/2023/10/GHSA-54fp-2g66-5c89/GHSA-54fp-2g66-5c89.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-54fp-2g66-5c89", - "modified": "2023-10-10T18:31:34Z", + "modified": "2023-11-07T00:30:31Z", "published": "2023-10-10T18:31:34Z", "aliases": [ "CVE-2023-36596" @@ -28,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-668" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2023-10-10T18:15:14Z" diff --git a/advisories/unreviewed/2023/10/GHSA-8v3h-cxg7-7jhv/GHSA-8v3h-cxg7-7jhv.json b/advisories/unreviewed/2023/10/GHSA-8v3h-cxg7-7jhv/GHSA-8v3h-cxg7-7jhv.json index 93a4e0ca864..4b75c382117 100644 --- a/advisories/unreviewed/2023/10/GHSA-8v3h-cxg7-7jhv/GHSA-8v3h-cxg7-7jhv.json +++ b/advisories/unreviewed/2023/10/GHSA-8v3h-cxg7-7jhv/GHSA-8v3h-cxg7-7jhv.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-8v3h-cxg7-7jhv", - "modified": "2023-10-10T18:31:34Z", + "modified": "2023-11-07T00:30:31Z", "published": "2023-10-10T18:31:34Z", "aliases": [ "CVE-2023-36698" @@ -30,7 +30,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2023-10-10T18:15:15Z" diff --git a/advisories/unreviewed/2023/10/GHSA-pj3v-wfg6-gcpq/GHSA-pj3v-wfg6-gcpq.json b/advisories/unreviewed/2023/10/GHSA-pj3v-wfg6-gcpq/GHSA-pj3v-wfg6-gcpq.json index 0986ecf214d..4b201f6aa07 100644 --- a/advisories/unreviewed/2023/10/GHSA-pj3v-wfg6-gcpq/GHSA-pj3v-wfg6-gcpq.json +++ b/advisories/unreviewed/2023/10/GHSA-pj3v-wfg6-gcpq/GHSA-pj3v-wfg6-gcpq.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-pj3v-wfg6-gcpq", - "modified": "2023-10-10T18:31:33Z", + "modified": "2023-11-07T00:30:31Z", "published": "2023-10-10T18:31:33Z", "aliases": [ "CVE-2023-36420" @@ -30,7 +30,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2023-10-10T18:15:12Z" diff --git a/advisories/unreviewed/2023/11/GHSA-3wwg-wvhq-f8q7/GHSA-3wwg-wvhq-f8q7.json b/advisories/unreviewed/2023/11/GHSA-3wwg-wvhq-f8q7/GHSA-3wwg-wvhq-f8q7.json new file mode 100644 index 00000000000..9c60996a465 --- /dev/null +++ b/advisories/unreviewed/2023/11/GHSA-3wwg-wvhq-f8q7/GHSA-3wwg-wvhq-f8q7.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-3wwg-wvhq-f8q7", + "modified": "2023-11-07T00:30:32Z", + "published": "2023-11-07T00:30:32Z", + "aliases": [ + "CVE-2023-47004" + ], + "details": "Buffer Overflow vulnerability in Redis RedisGraph v.2.x through v.2.12.8 and fixed in v.2.12.9 allows an attacker to execute arbitrary code via the code logic after valid authentication.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-47004" + }, + { + "type": "WEB", + "url": "https://github.com/RedisGraph/RedisGraph/issues/3178" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2023-11-06T22:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/11/GHSA-98mf-83qw-2xg8/GHSA-98mf-83qw-2xg8.json b/advisories/unreviewed/2023/11/GHSA-98mf-83qw-2xg8/GHSA-98mf-83qw-2xg8.json new file mode 100644 index 00000000000..bfd20ca3fcb --- /dev/null +++ b/advisories/unreviewed/2023/11/GHSA-98mf-83qw-2xg8/GHSA-98mf-83qw-2xg8.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-98mf-83qw-2xg8", + "modified": "2023-11-07T00:30:32Z", + "published": "2023-11-07T00:30:32Z", + "aliases": [ + "CVE-2023-36409" + ], + "details": "Microsoft Edge (Chromium-based) Information Disclosure Vulnerability", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-36409" + }, + { + "type": "WEB", + "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36409" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2023-11-07T00:15:07Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/11/GHSA-j6h3-42q7-8pjm/GHSA-j6h3-42q7-8pjm.json b/advisories/unreviewed/2023/11/GHSA-j6h3-42q7-8pjm/GHSA-j6h3-42q7-8pjm.json new file mode 100644 index 00000000000..bb4a9655d8f --- /dev/null +++ b/advisories/unreviewed/2023/11/GHSA-j6h3-42q7-8pjm/GHSA-j6h3-42q7-8pjm.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-j6h3-42q7-8pjm", + "modified": "2023-11-07T00:30:32Z", + "published": "2023-11-07T00:30:32Z", + "aliases": [ + "CVE-2023-36769" + ], + "details": "Microsoft OneNote Spoofing Vulnerability", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-36769" + }, + { + "type": "WEB", + "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36769" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2023-11-06T23:15:10Z" + } +} \ No newline at end of file