From 3c8af877d8201875875a400f0bd77d04ac8b3265 Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Fri, 21 Jun 2024 06:32:37 +0000 Subject: [PATCH] Publish Advisories GHSA-2p9j-vp6v-8f8m GHSA-3c3g-q64x-8mfv GHSA-3f8j-hxpw-f275 GHSA-623w-rmj9-c99m GHSA-7547-5vg4-cmwj GHSA-79xc-jx7x-797q GHSA-7r3w-w46r-49xf GHSA-8c4j-c9q8-whxc GHSA-fx33-m9m3-pm96 GHSA-grp4-qf6x-8325 GHSA-mw3g-56pg-c72p GHSA-qmh4-3pqf-jg3h GHSA-v2xm-76pq-phcf GHSA-wg6r-fxx9-4vvr GHSA-wvh4-52xx-9r94 GHSA-wxxx-873m-7796 GHSA-x26g-933q-fggm --- .../GHSA-2p9j-vp6v-8f8m.json | 35 ++++++++++++++ .../GHSA-3c3g-q64x-8mfv.json | 35 ++++++++++++++ .../GHSA-3f8j-hxpw-f275.json | 35 ++++++++++++++ .../GHSA-623w-rmj9-c99m.json | 35 ++++++++++++++ .../GHSA-7547-5vg4-cmwj.json | 35 ++++++++++++++ .../GHSA-79xc-jx7x-797q.json | 35 ++++++++++++++ .../GHSA-7r3w-w46r-49xf.json | 35 ++++++++++++++ .../GHSA-8c4j-c9q8-whxc.json | 35 ++++++++++++++ .../GHSA-fx33-m9m3-pm96.json | 35 ++++++++++++++ .../GHSA-grp4-qf6x-8325.json | 46 ++++++++++++++++++ .../GHSA-mw3g-56pg-c72p.json | 35 ++++++++++++++ .../GHSA-qmh4-3pqf-jg3h.json | 35 ++++++++++++++ .../GHSA-v2xm-76pq-phcf.json | 47 +++++++++++++++++++ .../GHSA-wg6r-fxx9-4vvr.json | 42 +++++++++++++++++ .../GHSA-wvh4-52xx-9r94.json | 35 ++++++++++++++ .../GHSA-wxxx-873m-7796.json | 35 ++++++++++++++ .../GHSA-x26g-933q-fggm.json | 42 +++++++++++++++++ 17 files changed, 632 insertions(+) create mode 100644 advisories/unreviewed/2024/06/GHSA-2p9j-vp6v-8f8m/GHSA-2p9j-vp6v-8f8m.json create mode 100644 advisories/unreviewed/2024/06/GHSA-3c3g-q64x-8mfv/GHSA-3c3g-q64x-8mfv.json create mode 100644 advisories/unreviewed/2024/06/GHSA-3f8j-hxpw-f275/GHSA-3f8j-hxpw-f275.json create mode 100644 advisories/unreviewed/2024/06/GHSA-623w-rmj9-c99m/GHSA-623w-rmj9-c99m.json create mode 100644 advisories/unreviewed/2024/06/GHSA-7547-5vg4-cmwj/GHSA-7547-5vg4-cmwj.json create mode 100644 advisories/unreviewed/2024/06/GHSA-79xc-jx7x-797q/GHSA-79xc-jx7x-797q.json create mode 100644 advisories/unreviewed/2024/06/GHSA-7r3w-w46r-49xf/GHSA-7r3w-w46r-49xf.json create mode 100644 advisories/unreviewed/2024/06/GHSA-8c4j-c9q8-whxc/GHSA-8c4j-c9q8-whxc.json create mode 100644 advisories/unreviewed/2024/06/GHSA-fx33-m9m3-pm96/GHSA-fx33-m9m3-pm96.json create mode 100644 advisories/unreviewed/2024/06/GHSA-grp4-qf6x-8325/GHSA-grp4-qf6x-8325.json create mode 100644 advisories/unreviewed/2024/06/GHSA-mw3g-56pg-c72p/GHSA-mw3g-56pg-c72p.json create mode 100644 advisories/unreviewed/2024/06/GHSA-qmh4-3pqf-jg3h/GHSA-qmh4-3pqf-jg3h.json create mode 100644 advisories/unreviewed/2024/06/GHSA-v2xm-76pq-phcf/GHSA-v2xm-76pq-phcf.json create mode 100644 advisories/unreviewed/2024/06/GHSA-wg6r-fxx9-4vvr/GHSA-wg6r-fxx9-4vvr.json create mode 100644 advisories/unreviewed/2024/06/GHSA-wvh4-52xx-9r94/GHSA-wvh4-52xx-9r94.json create mode 100644 advisories/unreviewed/2024/06/GHSA-wxxx-873m-7796/GHSA-wxxx-873m-7796.json create mode 100644 advisories/unreviewed/2024/06/GHSA-x26g-933q-fggm/GHSA-x26g-933q-fggm.json diff --git a/advisories/unreviewed/2024/06/GHSA-2p9j-vp6v-8f8m/GHSA-2p9j-vp6v-8f8m.json b/advisories/unreviewed/2024/06/GHSA-2p9j-vp6v-8f8m/GHSA-2p9j-vp6v-8f8m.json new file mode 100644 index 00000000000..3426bcd311b --- /dev/null +++ b/advisories/unreviewed/2024/06/GHSA-2p9j-vp6v-8f8m/GHSA-2p9j-vp6v-8f8m.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2p9j-vp6v-8f8m", + "modified": "2024-06-21T06:31:13Z", + "published": "2024-06-21T06:31:13Z", + "aliases": [ + "CVE-2024-4969" + ], + "details": "The Widget Bundle WordPress plugin through 2.0.0 does not have CSRF checks when logging Widgets, which could allow attackers to make logged in admin enable/disable widgets via a CSRF attack", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-4969" + }, + { + "type": "WEB", + "url": "https://wpscan.com/vulnerability/1a7ec5dc-eda4-4fed-9df9-f41d2b937fed" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-06-21T06:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/06/GHSA-3c3g-q64x-8mfv/GHSA-3c3g-q64x-8mfv.json b/advisories/unreviewed/2024/06/GHSA-3c3g-q64x-8mfv/GHSA-3c3g-q64x-8mfv.json new file mode 100644 index 00000000000..8963aec02d0 --- /dev/null +++ b/advisories/unreviewed/2024/06/GHSA-3c3g-q64x-8mfv/GHSA-3c3g-q64x-8mfv.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-3c3g-q64x-8mfv", + "modified": "2024-06-21T06:31:13Z", + "published": "2024-06-21T06:31:13Z", + "aliases": [ + "CVE-2024-4755" + ], + "details": "The Google CSE WordPress plugin through 1.0.7 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-4755" + }, + { + "type": "WEB", + "url": "https://wpscan.com/vulnerability/adc6ea6d-29d8-4ad0-b0db-2540e8b3f9a9" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-06-21T06:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/06/GHSA-3f8j-hxpw-f275/GHSA-3f8j-hxpw-f275.json b/advisories/unreviewed/2024/06/GHSA-3f8j-hxpw-f275/GHSA-3f8j-hxpw-f275.json new file mode 100644 index 00000000000..54ffa7c4ee2 --- /dev/null +++ b/advisories/unreviewed/2024/06/GHSA-3f8j-hxpw-f275/GHSA-3f8j-hxpw-f275.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-3f8j-hxpw-f275", + "modified": "2024-06-21T06:31:12Z", + "published": "2024-06-21T06:31:12Z", + "aliases": [ + "CVE-2024-4377" + ], + "details": "The DOP Shortcodes WordPress plugin through 1.2 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-4377" + }, + { + "type": "WEB", + "url": "https://wpscan.com/vulnerability/778cebec-bdbb-4538-9518-c5bd50f76961" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-06-21T06:15:11Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/06/GHSA-623w-rmj9-c99m/GHSA-623w-rmj9-c99m.json b/advisories/unreviewed/2024/06/GHSA-623w-rmj9-c99m/GHSA-623w-rmj9-c99m.json new file mode 100644 index 00000000000..cfe4c1d1e63 --- /dev/null +++ b/advisories/unreviewed/2024/06/GHSA-623w-rmj9-c99m/GHSA-623w-rmj9-c99m.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-623w-rmj9-c99m", + "modified": "2024-06-21T06:31:13Z", + "published": "2024-06-21T06:31:13Z", + "aliases": [ + "CVE-2024-4475" + ], + "details": "The WP Logs Book WordPress plugin through 1.0.1 does not have CSRF check when clearing logs, which could allow attackers to make a logged in admin clear the logs them via a CSRF attack", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-4475" + }, + { + "type": "WEB", + "url": "https://wpscan.com/vulnerability/f0c7fa00-da6e-4f07-875f-7b85759a54b3" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-06-21T06:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/06/GHSA-7547-5vg4-cmwj/GHSA-7547-5vg4-cmwj.json b/advisories/unreviewed/2024/06/GHSA-7547-5vg4-cmwj/GHSA-7547-5vg4-cmwj.json new file mode 100644 index 00000000000..8e53600eeea --- /dev/null +++ b/advisories/unreviewed/2024/06/GHSA-7547-5vg4-cmwj/GHSA-7547-5vg4-cmwj.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-7547-5vg4-cmwj", + "modified": "2024-06-21T06:31:13Z", + "published": "2024-06-21T06:31:13Z", + "aliases": [ + "CVE-2024-5448" + ], + "details": "The PayPal Pay Now, Buy Now, Donation and Cart Buttons Shortcode WordPress plugin through 1.7 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5448" + }, + { + "type": "WEB", + "url": "https://wpscan.com/vulnerability/c482fe19-b643-41ea-8194-22776b388290" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-06-21T06:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/06/GHSA-79xc-jx7x-797q/GHSA-79xc-jx7x-797q.json b/advisories/unreviewed/2024/06/GHSA-79xc-jx7x-797q/GHSA-79xc-jx7x-797q.json new file mode 100644 index 00000000000..eb75bab2660 --- /dev/null +++ b/advisories/unreviewed/2024/06/GHSA-79xc-jx7x-797q/GHSA-79xc-jx7x-797q.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-79xc-jx7x-797q", + "modified": "2024-06-21T06:31:12Z", + "published": "2024-06-21T06:31:12Z", + "aliases": [ + "CVE-2024-4381" + ], + "details": "The CB (legacy) WordPress plugin through 0.9.4.18 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-4381" + }, + { + "type": "WEB", + "url": "https://wpscan.com/vulnerability/9b3cda9a-17a7-4173-93a2-d552a874fae9" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-06-21T06:15:11Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/06/GHSA-7r3w-w46r-49xf/GHSA-7r3w-w46r-49xf.json b/advisories/unreviewed/2024/06/GHSA-7r3w-w46r-49xf/GHSA-7r3w-w46r-49xf.json new file mode 100644 index 00000000000..b61a86a0029 --- /dev/null +++ b/advisories/unreviewed/2024/06/GHSA-7r3w-w46r-49xf/GHSA-7r3w-w46r-49xf.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-7r3w-w46r-49xf", + "modified": "2024-06-21T06:31:13Z", + "published": "2024-06-21T06:31:13Z", + "aliases": [ + "CVE-2024-5447" + ], + "details": "The PayPal Pay Now, Buy Now, Donation and Cart Buttons Shortcode WordPress plugin through 1.7 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5447" + }, + { + "type": "WEB", + "url": "https://wpscan.com/vulnerability/a692b869-1666-42d1-b56d-dfcccd68ab67" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-06-21T06:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/06/GHSA-8c4j-c9q8-whxc/GHSA-8c4j-c9q8-whxc.json b/advisories/unreviewed/2024/06/GHSA-8c4j-c9q8-whxc/GHSA-8c4j-c9q8-whxc.json new file mode 100644 index 00000000000..1c596ea0a90 --- /dev/null +++ b/advisories/unreviewed/2024/06/GHSA-8c4j-c9q8-whxc/GHSA-8c4j-c9q8-whxc.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-8c4j-c9q8-whxc", + "modified": "2024-06-21T06:31:13Z", + "published": "2024-06-21T06:31:13Z", + "aliases": [ + "CVE-2024-4384" + ], + "details": "The CSSable Countdown WordPress plugin through 1.5 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-4384" + }, + { + "type": "WEB", + "url": "https://wpscan.com/vulnerability/ad714196-2590-4dc9-b5b9-50808e9e0d26" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-06-21T06:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/06/GHSA-fx33-m9m3-pm96/GHSA-fx33-m9m3-pm96.json b/advisories/unreviewed/2024/06/GHSA-fx33-m9m3-pm96/GHSA-fx33-m9m3-pm96.json new file mode 100644 index 00000000000..1b833c400fe --- /dev/null +++ b/advisories/unreviewed/2024/06/GHSA-fx33-m9m3-pm96/GHSA-fx33-m9m3-pm96.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-fx33-m9m3-pm96", + "modified": "2024-06-21T06:31:13Z", + "published": "2024-06-21T06:31:13Z", + "aliases": [ + "CVE-2024-4616" + ], + "details": "The Widget Bundle WordPress plugin through 2.0.0 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against only unauthenticated users", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-4616" + }, + { + "type": "WEB", + "url": "https://wpscan.com/vulnerability/d203bf3b-aee9-4755-b429-d6bbdd940890" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-06-21T06:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/06/GHSA-grp4-qf6x-8325/GHSA-grp4-qf6x-8325.json b/advisories/unreviewed/2024/06/GHSA-grp4-qf6x-8325/GHSA-grp4-qf6x-8325.json new file mode 100644 index 00000000000..6f5457e10b5 --- /dev/null +++ b/advisories/unreviewed/2024/06/GHSA-grp4-qf6x-8325/GHSA-grp4-qf6x-8325.json @@ -0,0 +1,46 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-grp4-qf6x-8325", + "modified": "2024-06-21T06:31:12Z", + "published": "2024-06-21T06:31:12Z", + "aliases": [ + "CVE-2024-5756" + ], + "details": "The Email Subscribers by Icegram Express – Email Marketing, Newsletters, Automation for WordPress & WooCommerce plugin for WordPress is vulnerable to time-based SQL Injection via the db parameter in all versions up to, and including, 5.7.23 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5756" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/email-subscribers/trunk/lite/includes/db/class-es-db-contacts.php#L532" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset/3101638/email-subscribers/trunk/lite/includes/db/class-es-db-contacts.php" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/c5bd11c6-2f55-4eee-834a-c4e405482b9c?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-06-21T05:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/06/GHSA-mw3g-56pg-c72p/GHSA-mw3g-56pg-c72p.json b/advisories/unreviewed/2024/06/GHSA-mw3g-56pg-c72p/GHSA-mw3g-56pg-c72p.json new file mode 100644 index 00000000000..2e5e86ab955 --- /dev/null +++ b/advisories/unreviewed/2024/06/GHSA-mw3g-56pg-c72p/GHSA-mw3g-56pg-c72p.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-mw3g-56pg-c72p", + "modified": "2024-06-21T06:31:13Z", + "published": "2024-06-21T06:31:13Z", + "aliases": [ + "CVE-2024-4474" + ], + "details": "The WP Logs Book WordPress plugin through 1.0.1 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-4474" + }, + { + "type": "WEB", + "url": "https://wpscan.com/vulnerability/71954c60-6a5b-4cac-9920-6d9b787ead9c" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-06-21T06:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/06/GHSA-qmh4-3pqf-jg3h/GHSA-qmh4-3pqf-jg3h.json b/advisories/unreviewed/2024/06/GHSA-qmh4-3pqf-jg3h/GHSA-qmh4-3pqf-jg3h.json new file mode 100644 index 00000000000..41555c6841e --- /dev/null +++ b/advisories/unreviewed/2024/06/GHSA-qmh4-3pqf-jg3h/GHSA-qmh4-3pqf-jg3h.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-qmh4-3pqf-jg3h", + "modified": "2024-06-21T06:31:13Z", + "published": "2024-06-21T06:31:12Z", + "aliases": [ + "CVE-2024-4382" + ], + "details": "The CB (legacy) WordPress plugin through 0.9.4.18 does not have CSRF checks in some bulk actions, which could allow attackers to make logged in admins perform unwanted actions, such as deleting codes, timeframes, and bookings via CSRF attacks", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-4382" + }, + { + "type": "WEB", + "url": "https://wpscan.com/vulnerability/1a67aeab-8145-4c8a-9c18-e6436fa39b63" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-06-21T06:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/06/GHSA-v2xm-76pq-phcf/GHSA-v2xm-76pq-phcf.json b/advisories/unreviewed/2024/06/GHSA-v2xm-76pq-phcf/GHSA-v2xm-76pq-phcf.json new file mode 100644 index 00000000000..16521d307e3 --- /dev/null +++ b/advisories/unreviewed/2024/06/GHSA-v2xm-76pq-phcf/GHSA-v2xm-76pq-phcf.json @@ -0,0 +1,47 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-v2xm-76pq-phcf", + "modified": "2024-06-21T06:31:12Z", + "published": "2024-06-21T06:31:12Z", + "aliases": [ + "CVE-2021-47621" + ], + "details": "ClassGraph before 4.8.112 was not resistant to XML eXternal Entity (XXE) attacks.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-47621" + }, + { + "type": "WEB", + "url": "https://github.com/classgraph/classgraph/pull/539" + }, + { + "type": "WEB", + "url": "https://github.com/classgraph/classgraph/commit/681362ad6b0b9d9abaffb2e07099ce54d7a41fa3" + }, + { + "type": "WEB", + "url": "https://docs.r3.com/en/platform/corda/4.8/enterprise/release-notes-enterprise.html" + }, + { + "type": "WEB", + "url": "https://github.com/classgraph/classgraph/releases/tag/classgraph-4.8.112" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-06-21T06:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/06/GHSA-wg6r-fxx9-4vvr/GHSA-wg6r-fxx9-4vvr.json b/advisories/unreviewed/2024/06/GHSA-wg6r-fxx9-4vvr/GHSA-wg6r-fxx9-4vvr.json new file mode 100644 index 00000000000..0943009cdf7 --- /dev/null +++ b/advisories/unreviewed/2024/06/GHSA-wg6r-fxx9-4vvr/GHSA-wg6r-fxx9-4vvr.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-wg6r-fxx9-4vvr", + "modified": "2024-06-21T06:31:12Z", + "published": "2024-06-21T06:31:12Z", + "aliases": [ + "CVE-2024-5455" + ], + "details": "The Plus Addons for Elementor Page Builder plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 5.5.4 via the 'magazine_style' parameter within the Dynamic Smart Showcase widget. This makes it possible for authenticated attackers, with Contributor-level access and above, to include and execute arbitrary files on the server, allowing the execution of any PHP code in those files. This can be used to bypass access controls, obtain sensitive data, or achieve code execution in cases where images and other “safe” file types can be uploaded and included.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5455" + }, + { + "type": "WEB", + "url": "https://roadmap.theplusaddons.com/updates" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/8699142d-4ddd-4ca1-9886-9b2d905a36cd?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-06-21T04:15:11Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/06/GHSA-wvh4-52xx-9r94/GHSA-wvh4-52xx-9r94.json b/advisories/unreviewed/2024/06/GHSA-wvh4-52xx-9r94/GHSA-wvh4-52xx-9r94.json new file mode 100644 index 00000000000..bf4616b34f6 --- /dev/null +++ b/advisories/unreviewed/2024/06/GHSA-wvh4-52xx-9r94/GHSA-wvh4-52xx-9r94.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-wvh4-52xx-9r94", + "modified": "2024-06-21T06:31:13Z", + "published": "2024-06-21T06:31:13Z", + "aliases": [ + "CVE-2024-4477" + ], + "details": "The WP Logs Book WordPress plugin through 1.0.1 does not sanitise and escape some of its log data before outputting them back in an admin dashboard, leading to an Unauthenticated Stored Cross-Site Scripting", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-4477" + }, + { + "type": "WEB", + "url": "https://wpscan.com/vulnerability/ab551552-944c-4e2a-9355-7011cbe553b0" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-06-21T06:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/06/GHSA-wxxx-873m-7796/GHSA-wxxx-873m-7796.json b/advisories/unreviewed/2024/06/GHSA-wxxx-873m-7796/GHSA-wxxx-873m-7796.json new file mode 100644 index 00000000000..77f31669dac --- /dev/null +++ b/advisories/unreviewed/2024/06/GHSA-wxxx-873m-7796/GHSA-wxxx-873m-7796.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-wxxx-873m-7796", + "modified": "2024-06-21T06:31:13Z", + "published": "2024-06-21T06:31:13Z", + "aliases": [ + "CVE-2024-4970" + ], + "details": "The Widget Bundle WordPress plugin through 2.0.0 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-4970" + }, + { + "type": "WEB", + "url": "https://wpscan.com/vulnerability/4a9fc352-7ec2-4992-9cda-7bdca4f42788" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-06-21T06:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/06/GHSA-x26g-933q-fggm/GHSA-x26g-933q-fggm.json b/advisories/unreviewed/2024/06/GHSA-x26g-933q-fggm/GHSA-x26g-933q-fggm.json new file mode 100644 index 00000000000..d0c8508a31b --- /dev/null +++ b/advisories/unreviewed/2024/06/GHSA-x26g-933q-fggm/GHSA-x26g-933q-fggm.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-x26g-933q-fggm", + "modified": "2024-06-21T06:31:12Z", + "published": "2024-06-21T06:31:12Z", + "aliases": [ + "CVE-2024-3961" + ], + "details": "The ConvertKit – Email Newsletter, Email Marketing, Subscribers and Landing Pages plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the tag_subscriber function in all versions up to, and including, 2.4.9. This makes it possible for unauthenticated attackers to subscribe users to tags. Financial damages may occur to site owners if their API quota is exceeded.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-3961" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset?sfp_email=&sfph_mail=&reponame=&new=3104932%40convertkit%2Ftrunk&old=3085997%40convertkit%2Ftrunk&sfp_email=&sfph_mail=" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/79d828b8-aea2-4705-ae23-ac70133a6c3e?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-06-21T04:15:11Z" + } +} \ No newline at end of file