From 3de91ba92a3950b96cc72d700b01b2d306169986 Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Fri, 11 Oct 2024 15:35:21 +0000 Subject: [PATCH] Publish Advisories GHSA-37qc-qgx6-9xjv GHSA-3c67-5hwx-f6wx GHSA-4q3c-cj7g-jcwf GHSA-576c-3j53-r9jj GHSA-77xq-6g77-h274 GHSA-89v2-pqfv-c5r9 GHSA-8c87-gvhj-xm8m GHSA-hm3c-93pg-4cxw --- .../2024/10/GHSA-37qc-qgx6-9xjv/GHSA-37qc-qgx6-9xjv.json | 8 ++++++-- .../2024/10/GHSA-3c67-5hwx-f6wx/GHSA-3c67-5hwx-f6wx.json | 9 +++++++-- .../2024/10/GHSA-4q3c-cj7g-jcwf/GHSA-4q3c-cj7g-jcwf.json | 9 +++++++-- .../2024/10/GHSA-576c-3j53-r9jj/GHSA-576c-3j53-r9jj.json | 8 ++++++-- .../2024/10/GHSA-77xq-6g77-h274/GHSA-77xq-6g77-h274.json | 8 ++++++-- .../2024/10/GHSA-89v2-pqfv-c5r9/GHSA-89v2-pqfv-c5r9.json | 9 +++++++-- .../2024/10/GHSA-8c87-gvhj-xm8m/GHSA-8c87-gvhj-xm8m.json | 9 +++++++-- .../2024/10/GHSA-hm3c-93pg-4cxw/GHSA-hm3c-93pg-4cxw.json | 8 ++++++-- 8 files changed, 52 insertions(+), 16 deletions(-) diff --git a/advisories/github-reviewed/2024/10/GHSA-37qc-qgx6-9xjv/GHSA-37qc-qgx6-9xjv.json b/advisories/github-reviewed/2024/10/GHSA-37qc-qgx6-9xjv/GHSA-37qc-qgx6-9xjv.json index 4279798e717..90ff8d098dd 100644 --- a/advisories/github-reviewed/2024/10/GHSA-37qc-qgx6-9xjv/GHSA-37qc-qgx6-9xjv.json +++ b/advisories/github-reviewed/2024/10/GHSA-37qc-qgx6-9xjv/GHSA-37qc-qgx6-9xjv.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-37qc-qgx6-9xjv", - "modified": "2024-10-10T21:36:43Z", + "modified": "2024-10-11T15:34:14Z", "published": "2024-10-10T21:36:43Z", "aliases": [ "CVE-2024-47166" @@ -44,6 +44,10 @@ "type": "WEB", "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-37qc-qgx6-9xjv" }, + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47166" + }, { "type": "PACKAGE", "url": "https://github.com/gradio-app/gradio" @@ -56,6 +60,6 @@ "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2024-10-10T21:36:43Z", - "nvd_published_at": null + "nvd_published_at": "2024-10-10T22:15:10Z" } } \ No newline at end of file diff --git a/advisories/github-reviewed/2024/10/GHSA-3c67-5hwx-f6wx/GHSA-3c67-5hwx-f6wx.json b/advisories/github-reviewed/2024/10/GHSA-3c67-5hwx-f6wx/GHSA-3c67-5hwx-f6wx.json index c6a98e6c77a..c347bf095f3 100644 --- a/advisories/github-reviewed/2024/10/GHSA-3c67-5hwx-f6wx/GHSA-3c67-5hwx-f6wx.json +++ b/advisories/github-reviewed/2024/10/GHSA-3c67-5hwx-f6wx/GHSA-3c67-5hwx-f6wx.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-3c67-5hwx-f6wx", - "modified": "2024-10-10T21:20:06Z", + "modified": "2024-10-11T15:33:52Z", "published": "2024-10-10T21:20:06Z", "aliases": [ "CVE-2024-47084" @@ -44,6 +44,10 @@ "type": "WEB", "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-3c67-5hwx-f6wx" }, + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47084" + }, { "type": "PACKAGE", "url": "https://github.com/gradio-app/gradio" @@ -51,11 +55,12 @@ ], "database_specific": { "cwe_ids": [ + "CWE-285", "CWE-346" ], "severity": "HIGH", "github_reviewed": true, "github_reviewed_at": "2024-10-10T21:20:06Z", - "nvd_published_at": null + "nvd_published_at": "2024-10-10T22:15:10Z" } } \ No newline at end of file diff --git a/advisories/github-reviewed/2024/10/GHSA-4q3c-cj7g-jcwf/GHSA-4q3c-cj7g-jcwf.json b/advisories/github-reviewed/2024/10/GHSA-4q3c-cj7g-jcwf/GHSA-4q3c-cj7g-jcwf.json index 4b36604d8ff..95c7d5bbb7e 100644 --- a/advisories/github-reviewed/2024/10/GHSA-4q3c-cj7g-jcwf/GHSA-4q3c-cj7g-jcwf.json +++ b/advisories/github-reviewed/2024/10/GHSA-4q3c-cj7g-jcwf/GHSA-4q3c-cj7g-jcwf.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-4q3c-cj7g-jcwf", - "modified": "2024-10-10T22:03:03Z", + "modified": "2024-10-11T15:34:54Z", "published": "2024-10-10T22:03:03Z", "aliases": [ "CVE-2024-47868" @@ -44,6 +44,10 @@ "type": "WEB", "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-4q3c-cj7g-jcwf" }, + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47868" + }, { "type": "PACKAGE", "url": "https://github.com/gradio-app/gradio" @@ -51,11 +55,12 @@ ], "database_specific": { "cwe_ids": [ + "CWE-200", "CWE-22" ], "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2024-10-10T22:03:03Z", - "nvd_published_at": null + "nvd_published_at": "2024-10-10T23:15:02Z" } } \ No newline at end of file diff --git a/advisories/github-reviewed/2024/10/GHSA-576c-3j53-r9jj/GHSA-576c-3j53-r9jj.json b/advisories/github-reviewed/2024/10/GHSA-576c-3j53-r9jj/GHSA-576c-3j53-r9jj.json index a061b54be08..8da30090621 100644 --- a/advisories/github-reviewed/2024/10/GHSA-576c-3j53-r9jj/GHSA-576c-3j53-r9jj.json +++ b/advisories/github-reviewed/2024/10/GHSA-576c-3j53-r9jj/GHSA-576c-3j53-r9jj.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-576c-3j53-r9jj", - "modified": "2024-10-10T22:02:36Z", + "modified": "2024-10-11T15:34:23Z", "published": "2024-10-10T22:01:44Z", "aliases": [ "CVE-2024-47167" @@ -44,6 +44,10 @@ "type": "WEB", "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-576c-3j53-r9jj" }, + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47167" + }, { "type": "PACKAGE", "url": "https://github.com/gradio-app/gradio" @@ -56,6 +60,6 @@ "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2024-10-10T22:01:44Z", - "nvd_published_at": null + "nvd_published_at": "2024-10-10T22:15:11Z" } } \ No newline at end of file diff --git a/advisories/github-reviewed/2024/10/GHSA-77xq-6g77-h274/GHSA-77xq-6g77-h274.json b/advisories/github-reviewed/2024/10/GHSA-77xq-6g77-h274/GHSA-77xq-6g77-h274.json index 7466499be87..1cba985a841 100644 --- a/advisories/github-reviewed/2024/10/GHSA-77xq-6g77-h274/GHSA-77xq-6g77-h274.json +++ b/advisories/github-reviewed/2024/10/GHSA-77xq-6g77-h274/GHSA-77xq-6g77-h274.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-77xq-6g77-h274", - "modified": "2024-10-10T21:27:47Z", + "modified": "2024-10-11T15:33:40Z", "published": "2024-10-10T21:27:47Z", "aliases": [ "CVE-2024-47164" @@ -44,6 +44,10 @@ "type": "WEB", "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-77xq-6g77-h274" }, + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47164" + }, { "type": "WEB", "url": "https://github.com/gradio-app/gradio/commit/08b51590163b306fd874f543f6fcaf23ac7d2646" @@ -60,6 +64,6 @@ "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2024-10-10T21:27:47Z", - "nvd_published_at": null + "nvd_published_at": "2024-10-10T22:15:10Z" } } \ No newline at end of file diff --git a/advisories/github-reviewed/2024/10/GHSA-89v2-pqfv-c5r9/GHSA-89v2-pqfv-c5r9.json b/advisories/github-reviewed/2024/10/GHSA-89v2-pqfv-c5r9/GHSA-89v2-pqfv-c5r9.json index b6ff0a320ab..7a2295911d6 100644 --- a/advisories/github-reviewed/2024/10/GHSA-89v2-pqfv-c5r9/GHSA-89v2-pqfv-c5r9.json +++ b/advisories/github-reviewed/2024/10/GHSA-89v2-pqfv-c5r9/GHSA-89v2-pqfv-c5r9.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-89v2-pqfv-c5r9", - "modified": "2024-10-10T21:36:36Z", + "modified": "2024-10-11T15:34:03Z", "published": "2024-10-10T21:36:36Z", "aliases": [ "CVE-2024-47165" @@ -44,6 +44,10 @@ "type": "WEB", "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-89v2-pqfv-c5r9" }, + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47165" + }, { "type": "PACKAGE", "url": "https://github.com/gradio-app/gradio" @@ -51,11 +55,12 @@ ], "database_specific": { "cwe_ids": [ + "CWE-285", "CWE-346" ], "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2024-10-10T21:36:36Z", - "nvd_published_at": null + "nvd_published_at": "2024-10-10T22:15:10Z" } } \ No newline at end of file diff --git a/advisories/github-reviewed/2024/10/GHSA-8c87-gvhj-xm8m/GHSA-8c87-gvhj-xm8m.json b/advisories/github-reviewed/2024/10/GHSA-8c87-gvhj-xm8m/GHSA-8c87-gvhj-xm8m.json index 0c4ae1398f7..542973025e2 100644 --- a/advisories/github-reviewed/2024/10/GHSA-8c87-gvhj-xm8m/GHSA-8c87-gvhj-xm8m.json +++ b/advisories/github-reviewed/2024/10/GHSA-8c87-gvhj-xm8m/GHSA-8c87-gvhj-xm8m.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-8c87-gvhj-xm8m", - "modified": "2024-10-10T22:02:52Z", + "modified": "2024-10-11T15:34:45Z", "published": "2024-10-10T22:02:52Z", "aliases": [ "CVE-2024-47867" @@ -44,6 +44,10 @@ "type": "WEB", "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-8c87-gvhj-xm8m" }, + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47867" + }, { "type": "PACKAGE", "url": "https://github.com/gradio-app/gradio" @@ -51,11 +55,12 @@ ], "database_specific": { "cwe_ids": [ + "CWE-345", "CWE-494" ], "severity": "HIGH", "github_reviewed": true, "github_reviewed_at": "2024-10-10T22:02:52Z", - "nvd_published_at": null + "nvd_published_at": "2024-10-10T23:15:02Z" } } \ No newline at end of file diff --git a/advisories/github-reviewed/2024/10/GHSA-hm3c-93pg-4cxw/GHSA-hm3c-93pg-4cxw.json b/advisories/github-reviewed/2024/10/GHSA-hm3c-93pg-4cxw/GHSA-hm3c-93pg-4cxw.json index 8610be4a992..3a704354469 100644 --- a/advisories/github-reviewed/2024/10/GHSA-hm3c-93pg-4cxw/GHSA-hm3c-93pg-4cxw.json +++ b/advisories/github-reviewed/2024/10/GHSA-hm3c-93pg-4cxw/GHSA-hm3c-93pg-4cxw.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-hm3c-93pg-4cxw", - "modified": "2024-10-10T22:02:30Z", + "modified": "2024-10-11T15:34:32Z", "published": "2024-10-10T22:02:30Z", "aliases": [ "CVE-2024-47168" @@ -44,6 +44,10 @@ "type": "WEB", "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-hm3c-93pg-4cxw" }, + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47168" + }, { "type": "PACKAGE", "url": "https://github.com/gradio-app/gradio" @@ -56,6 +60,6 @@ "severity": "LOW", "github_reviewed": true, "github_reviewed_at": "2024-10-10T22:02:30Z", - "nvd_published_at": null + "nvd_published_at": "2024-10-10T22:15:11Z" } } \ No newline at end of file