From 30fe5423311d65cbfc3f1c7920cb31e5765c9062 Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Wed, 23 Apr 2025 14:43:06 +0000 Subject: [PATCH] Publish Advisories GHSA-7gpw-frph-fwrg GHSA-f683-35w9-28g5 GHSA-5vxx-c285-pcq4 GHSA-6p68-w45g-48j7 GHSA-g9jj-75mx-wjcx GHSA-gm2p-wf5c-w3pj --- .../GHSA-7gpw-frph-fwrg.json | 4 +- .../GHSA-f683-35w9-28g5.json | 1 + .../GHSA-5vxx-c285-pcq4.json | 8 +- .../GHSA-6p68-w45g-48j7.json | 12 ++- .../GHSA-g9jj-75mx-wjcx.json | 99 +++++++++++++++++++ .../GHSA-gm2p-wf5c-w3pj.json | 16 ++- 6 files changed, 133 insertions(+), 7 deletions(-) create mode 100644 advisories/github-reviewed/2025/04/GHSA-g9jj-75mx-wjcx/GHSA-g9jj-75mx-wjcx.json diff --git a/advisories/github-reviewed/2022/12/GHSA-7gpw-frph-fwrg/GHSA-7gpw-frph-fwrg.json b/advisories/github-reviewed/2022/12/GHSA-7gpw-frph-fwrg/GHSA-7gpw-frph-fwrg.json index fc34ca1ef84..82f8055a760 100644 --- a/advisories/github-reviewed/2022/12/GHSA-7gpw-frph-fwrg/GHSA-7gpw-frph-fwrg.json +++ b/advisories/github-reviewed/2022/12/GHSA-7gpw-frph-fwrg/GHSA-7gpw-frph-fwrg.json @@ -77,7 +77,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-284" + ], "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2023-02-08T21:57:03Z", diff --git a/advisories/github-reviewed/2022/12/GHSA-f683-35w9-28g5/GHSA-f683-35w9-28g5.json b/advisories/github-reviewed/2022/12/GHSA-f683-35w9-28g5/GHSA-f683-35w9-28g5.json index e369c16c5ca..f47bd6654e7 100644 --- a/advisories/github-reviewed/2022/12/GHSA-f683-35w9-28g5/GHSA-f683-35w9-28g5.json +++ b/advisories/github-reviewed/2022/12/GHSA-f683-35w9-28g5/GHSA-f683-35w9-28g5.json @@ -97,6 +97,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-287", "CWE-863" ], "severity": "CRITICAL", diff --git a/advisories/github-reviewed/2025/04/GHSA-5vxx-c285-pcq4/GHSA-5vxx-c285-pcq4.json b/advisories/github-reviewed/2025/04/GHSA-5vxx-c285-pcq4/GHSA-5vxx-c285-pcq4.json index ee15bf322ce..fd88c17d179 100644 --- a/advisories/github-reviewed/2025/04/GHSA-5vxx-c285-pcq4/GHSA-5vxx-c285-pcq4.json +++ b/advisories/github-reviewed/2025/04/GHSA-5vxx-c285-pcq4/GHSA-5vxx-c285-pcq4.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-5vxx-c285-pcq4", - "modified": "2025-04-21T16:17:49Z", + "modified": "2025-04-23T14:41:18Z", "published": "2025-04-21T16:17:49Z", "aliases": [ "CVE-2025-32793" @@ -78,6 +78,10 @@ "type": "WEB", "url": "https://github.com/cilium/cilium/security/advisories/GHSA-5vxx-c285-pcq4" }, + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-32793" + }, { "type": "WEB", "url": "https://github.com/cilium/cilium/pull/38592" @@ -99,6 +103,6 @@ "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2025-04-21T16:17:49Z", - "nvd_published_at": null + "nvd_published_at": "2025-04-21T16:15:54Z" } } \ No newline at end of file diff --git a/advisories/github-reviewed/2025/04/GHSA-6p68-w45g-48j7/GHSA-6p68-w45g-48j7.json b/advisories/github-reviewed/2025/04/GHSA-6p68-w45g-48j7/GHSA-6p68-w45g-48j7.json index 5f1e43a93c2..0ab7d465b8a 100644 --- a/advisories/github-reviewed/2025/04/GHSA-6p68-w45g-48j7/GHSA-6p68-w45g-48j7.json +++ b/advisories/github-reviewed/2025/04/GHSA-6p68-w45g-48j7/GHSA-6p68-w45g-48j7.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-6p68-w45g-48j7", - "modified": "2025-04-21T16:17:38Z", + "modified": "2025-04-23T14:41:04Z", "published": "2025-04-21T16:17:38Z", "aliases": [ "CVE-2025-32431" @@ -100,6 +100,14 @@ "type": "WEB", "url": "https://github.com/traefik/traefik/security/advisories/GHSA-6p68-w45g-48j7" }, + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-32431" + }, + { + "type": "WEB", + "url": "https://github.com/traefik/traefik/pull/11684" + }, { "type": "PACKAGE", "url": "https://github.com/traefik/traefik" @@ -124,6 +132,6 @@ "severity": "HIGH", "github_reviewed": true, "github_reviewed_at": "2025-04-21T16:17:38Z", - "nvd_published_at": null + "nvd_published_at": "2025-04-21T16:15:54Z" } } \ No newline at end of file diff --git a/advisories/github-reviewed/2025/04/GHSA-g9jj-75mx-wjcx/GHSA-g9jj-75mx-wjcx.json b/advisories/github-reviewed/2025/04/GHSA-g9jj-75mx-wjcx/GHSA-g9jj-75mx-wjcx.json new file mode 100644 index 00000000000..6e243bbe75f --- /dev/null +++ b/advisories/github-reviewed/2025/04/GHSA-g9jj-75mx-wjcx/GHSA-g9jj-75mx-wjcx.json @@ -0,0 +1,99 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-g9jj-75mx-wjcx", + "modified": "2025-04-23T14:41:54Z", + "published": "2025-04-23T14:41:54Z", + "aliases": [ + "CVE-2025-32968" + ], + "summary": "org.xwiki.platform:xwiki-platform-oldcore allows SQL injection in short form select requests through the script query API", + "details": "### Impact\n\nIt is possible for a user with SCRIPT right to escape from the HQL execution context and perform a blind SQL injection to execute arbitrary SQL statements on the database backend.\n\nDepending on the used database backend, the attacker may be able to not only obtain confidential information such as password hashes from the database, but also execute UPDATE/INSERT/DELETE queries.\n\nThe vulnerability may be tested in a default installation of XWIki Standard Flavor, including using the official Docker containers.\n\nFor example, with a MySQL or MariaDB database, you can use the following script (which a user having SCRIPT right but not PROGRAMMING right) to get the content of the xwikistrings table (which contain all the short string fields stored in objects, including passwords):\n\n```\n{{velocity}}\n$services.query.hql(\"where 1<>'1\\'' union select concat(XWS_NAME, XWS_VALUE) from xwikistrings #'\").execute()\n{{/velocity}}\n```\n\n### Patches\n\nThis has been patched in 16.10.1, 16.4.6 and 15.10.16.\n\n### Workarounds\n\nThere is no known workaround, other than upgrading XWiki.\n\nThe protection added to this REST API is the same as the one used to validate complete select queries, making it more consistent. However, while the script API always had this protection for complete queries, it's important to note that it's a very strict protection and some valid, but complex, queries might suddenly require the author to have programming right.\n\n### References\n\nhttps://jira.xwiki.org/browse/XWIKI-22718\n\n### For more information\n\nIf you have any questions or comments about this advisory:\n* Open an issue in [Jira XWiki.org](https://jira.xwiki.org/)\n* Email us at [Security Mailing List](mailto:security@xwiki.org)", + "severity": [ + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N" + } + ], + "affected": [ + { + "package": { + "ecosystem": "Maven", + "name": "org.xwiki.platform:xwiki-platform-oldcore" + }, + "ranges": [ + { + "type": "ECOSYSTEM", + "events": [ + { + "introduced": "1.6-milestone-1" + }, + { + "fixed": "15.10.16" + } + ] + } + ] + }, + { + "package": { + "ecosystem": "Maven", + "name": "org.xwiki.platform:xwiki-platform-oldcore" + }, + "ranges": [ + { + "type": "ECOSYSTEM", + "events": [ + { + "introduced": "16.0.0-rc-1" + }, + { + "fixed": "16.4.6" + } + ] + } + ] + }, + { + "package": { + "ecosystem": "Maven", + "name": "org.xwiki.platform:xwiki-platform-oldcore" + }, + "ranges": [ + { + "type": "ECOSYSTEM", + "events": [ + { + "introduced": "16.5.0-rc-1" + }, + { + "fixed": "16.10.1" + } + ] + } + ] + } + ], + "references": [ + { + "type": "WEB", + "url": "https://github.com/xwiki/xwiki-platform/security/advisories/GHSA-g9jj-75mx-wjcx" + }, + { + "type": "PACKAGE", + "url": "https://github.com/xwiki/xwiki-platform" + }, + { + "type": "WEB", + "url": "https://jira.xwiki.org/browse/XWIKI-22718" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-89" + ], + "severity": "HIGH", + "github_reviewed": true, + "github_reviewed_at": "2025-04-23T14:41:54Z", + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/github-reviewed/2025/04/GHSA-gm2p-wf5c-w3pj/GHSA-gm2p-wf5c-w3pj.json b/advisories/github-reviewed/2025/04/GHSA-gm2p-wf5c-w3pj/GHSA-gm2p-wf5c-w3pj.json index 806fa9b5ef3..8d914f216fd 100644 --- a/advisories/github-reviewed/2025/04/GHSA-gm2p-wf5c-w3pj/GHSA-gm2p-wf5c-w3pj.json +++ b/advisories/github-reviewed/2025/04/GHSA-gm2p-wf5c-w3pj/GHSA-gm2p-wf5c-w3pj.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-gm2p-wf5c-w3pj", - "modified": "2025-04-21T16:19:20Z", + "modified": "2025-04-23T14:41:40Z", "published": "2025-04-21T16:19:20Z", "aliases": [ "CVE-2025-3857" @@ -12,6 +12,10 @@ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" } ], "affected": [ @@ -40,10 +44,18 @@ "type": "WEB", "url": "https://github.com/amazon-ion/ion-dotnet/security/advisories/GHSA-gm2p-wf5c-w3pj" }, + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-3857" + }, { "type": "WEB", "url": "https://github.com/amazon-ion/ion-dotnet/commit/34a4f5215eceac1bb7bf434c4f2310d64d1b703b" }, + { + "type": "WEB", + "url": "https://aws.amazon.com/security/security-bulletins/AWS-2025-009" + }, { "type": "PACKAGE", "url": "https://github.com/amazon-ion/ion-dotnet" @@ -57,6 +69,6 @@ "severity": "HIGH", "github_reviewed": true, "github_reviewed_at": "2025-04-21T16:19:20Z", - "nvd_published_at": null + "nvd_published_at": "2025-04-21T16:15:54Z" } } \ No newline at end of file