From 3fe78d6e7e8b532cffd705ac61f146af0b56eea1 Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Sat, 30 Mar 2024 06:32:07 +0000 Subject: [PATCH] Publish Advisories GHSA-c5q2-7r4c-mv6g GHSA-hhhv-q57g-882q GHSA-36c8-x5g7-w9x4 GHSA-38m5-hfpr-wjwh GHSA-3p53-237x-3cww GHSA-6x48-9p44-q5h2 GHSA-82q9-rjj3-2747 GHSA-gw3m-hx6j-h3r6 GHSA-rf68-6hvm-45gh GHSA-vj7r-f7rj-7598 GHSA-xxr2-6rqw-cjfr --- .../GHSA-c5q2-7r4c-mv6g.json | 6 ++- .../GHSA-hhhv-q57g-882q.json | 6 ++- .../GHSA-36c8-x5g7-w9x4.json | 6 ++- .../GHSA-38m5-hfpr-wjwh.json | 42 +++++++++++++++++ .../GHSA-3p53-237x-3cww.json | 6 ++- .../GHSA-6x48-9p44-q5h2.json | 46 +++++++++++++++++++ .../GHSA-82q9-rjj3-2747.json | 42 +++++++++++++++++ .../GHSA-gw3m-hx6j-h3r6.json | 46 +++++++++++++++++++ .../GHSA-rf68-6hvm-45gh.json | 42 +++++++++++++++++ .../GHSA-vj7r-f7rj-7598.json | 42 +++++++++++++++++ .../GHSA-xxr2-6rqw-cjfr.json | 42 +++++++++++++++++ 11 files changed, 322 insertions(+), 4 deletions(-) create mode 100644 advisories/unreviewed/2024/03/GHSA-38m5-hfpr-wjwh/GHSA-38m5-hfpr-wjwh.json create mode 100644 advisories/unreviewed/2024/03/GHSA-6x48-9p44-q5h2/GHSA-6x48-9p44-q5h2.json create mode 100644 advisories/unreviewed/2024/03/GHSA-82q9-rjj3-2747/GHSA-82q9-rjj3-2747.json create mode 100644 advisories/unreviewed/2024/03/GHSA-gw3m-hx6j-h3r6/GHSA-gw3m-hx6j-h3r6.json create mode 100644 advisories/unreviewed/2024/03/GHSA-rf68-6hvm-45gh/GHSA-rf68-6hvm-45gh.json create mode 100644 advisories/unreviewed/2024/03/GHSA-vj7r-f7rj-7598/GHSA-vj7r-f7rj-7598.json create mode 100644 advisories/unreviewed/2024/03/GHSA-xxr2-6rqw-cjfr/GHSA-xxr2-6rqw-cjfr.json diff --git a/advisories/github-reviewed/2024/03/GHSA-c5q2-7r4c-mv6g/GHSA-c5q2-7r4c-mv6g.json b/advisories/github-reviewed/2024/03/GHSA-c5q2-7r4c-mv6g/GHSA-c5q2-7r4c-mv6g.json index 13bd2ffe824..20df5969688 100644 --- a/advisories/github-reviewed/2024/03/GHSA-c5q2-7r4c-mv6g/GHSA-c5q2-7r4c-mv6g.json +++ b/advisories/github-reviewed/2024/03/GHSA-c5q2-7r4c-mv6g/GHSA-c5q2-7r4c-mv6g.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-c5q2-7r4c-mv6g", - "modified": "2024-03-30T03:30:44Z", + "modified": "2024-03-30T06:30:42Z", "published": "2024-03-07T22:54:44Z", "aliases": [ "CVE-2024-28180" @@ -106,6 +106,10 @@ "type": "WEB", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/KXKGNCRU7OTM5AHC7YIYBNOWI742PRMY" }, + { + "type": "WEB", + "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/UG5FSEYJ3GP27FZXC5YAAMMEC5XWKJHG" + }, { "type": "WEB", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/UJO2U5ACZVACNQXJ5EBRFLFW6DP5BROY" diff --git a/advisories/github-reviewed/2024/03/GHSA-hhhv-q57g-882q/GHSA-hhhv-q57g-882q.json b/advisories/github-reviewed/2024/03/GHSA-hhhv-q57g-882q/GHSA-hhhv-q57g-882q.json index ebb6dba2b6a..01cd532de94 100644 --- a/advisories/github-reviewed/2024/03/GHSA-hhhv-q57g-882q/GHSA-hhhv-q57g-882q.json +++ b/advisories/github-reviewed/2024/03/GHSA-hhhv-q57g-882q/GHSA-hhhv-q57g-882q.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-hhhv-q57g-882q", - "modified": "2024-03-30T03:30:44Z", + "modified": "2024-03-30T06:30:42Z", "published": "2024-03-07T17:40:57Z", "aliases": [ "CVE-2024-28176" @@ -130,6 +130,10 @@ "type": "WEB", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/KXKGNCRU7OTM5AHC7YIYBNOWI742PRMY" }, + { + "type": "WEB", + "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/UG5FSEYJ3GP27FZXC5YAAMMEC5XWKJHG" + }, { "type": "WEB", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/UJO2U5ACZVACNQXJ5EBRFLFW6DP5BROY" diff --git a/advisories/unreviewed/2024/03/GHSA-36c8-x5g7-w9x4/GHSA-36c8-x5g7-w9x4.json b/advisories/unreviewed/2024/03/GHSA-36c8-x5g7-w9x4/GHSA-36c8-x5g7-w9x4.json index 30143ab33f9..6ca2803704d 100644 --- a/advisories/unreviewed/2024/03/GHSA-36c8-x5g7-w9x4/GHSA-36c8-x5g7-w9x4.json +++ b/advisories/unreviewed/2024/03/GHSA-36c8-x5g7-w9x4/GHSA-36c8-x5g7-w9x4.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-36c8-x5g7-w9x4", - "modified": "2024-03-30T03:30:44Z", + "modified": "2024-03-30T06:30:42Z", "published": "2024-03-14T18:30:30Z", "aliases": [ "CVE-2023-28746" @@ -21,6 +21,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-28746" }, + { + "type": "WEB", + "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/EIUICU6CVJUIB6BPJ7P5QTPQR5VOBHFK" + }, { "type": "WEB", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/H63LGAQXPEVJOES73U4XK65I6DASOAAG" diff --git a/advisories/unreviewed/2024/03/GHSA-38m5-hfpr-wjwh/GHSA-38m5-hfpr-wjwh.json b/advisories/unreviewed/2024/03/GHSA-38m5-hfpr-wjwh/GHSA-38m5-hfpr-wjwh.json new file mode 100644 index 00000000000..43fc2ee6bec --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-38m5-hfpr-wjwh/GHSA-38m5-hfpr-wjwh.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-38m5-hfpr-wjwh", + "modified": "2024-03-30T06:30:43Z", + "published": "2024-03-30T06:30:43Z", + "aliases": [ + "CVE-2024-2086" + ], + "details": "The Integrate Google Drive – Browse, Upload, Download, Embed, Play, Share, Gallery, and Manage Your Google Drive Files Into Your WordPress Site plugin for WordPress is vulnerable to unauthorized access of data, modification of data, and loss of data due to a missing capability check on multiple AJAX in all versions up to, and including, 1.3.8. This makes it possible for authenticated attackers to modify plugin settings as well as allowing full read/write/delete access to the Google Drive associated with the plugin.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-2086" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset/3051452/integrate-google-drive/tags/1.3.9/includes/class-ajax.php" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/a303c798-c206-426a-9a96-263c8c069bdb?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-30T05:15:35Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-3p53-237x-3cww/GHSA-3p53-237x-3cww.json b/advisories/unreviewed/2024/03/GHSA-3p53-237x-3cww/GHSA-3p53-237x-3cww.json index 7c9c31e7c24..640c3a151fd 100644 --- a/advisories/unreviewed/2024/03/GHSA-3p53-237x-3cww/GHSA-3p53-237x-3cww.json +++ b/advisories/unreviewed/2024/03/GHSA-3p53-237x-3cww/GHSA-3p53-237x-3cww.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-3p53-237x-3cww", - "modified": "2024-03-30T03:30:44Z", + "modified": "2024-03-30T06:30:42Z", "published": "2024-03-15T18:30:38Z", "aliases": [ "CVE-2024-2193" @@ -34,6 +34,10 @@ "type": "WEB", "url": "https://kb.cert.org/vuls/id/488902" }, + { + "type": "WEB", + "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/EIUICU6CVJUIB6BPJ7P5QTPQR5VOBHFK" + }, { "type": "WEB", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/H63LGAQXPEVJOES73U4XK65I6DASOAAG" diff --git a/advisories/unreviewed/2024/03/GHSA-6x48-9p44-q5h2/GHSA-6x48-9p44-q5h2.json b/advisories/unreviewed/2024/03/GHSA-6x48-9p44-q5h2/GHSA-6x48-9p44-q5h2.json new file mode 100644 index 00000000000..beae6d7749d --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-6x48-9p44-q5h2/GHSA-6x48-9p44-q5h2.json @@ -0,0 +1,46 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-6x48-9p44-q5h2", + "modified": "2024-03-30T06:30:43Z", + "published": "2024-03-30T06:30:43Z", + "aliases": [ + "CVE-2024-2047" + ], + "details": "The ElementsKit Elementor addons plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 3.0.6 via the render_raw function. This makes it possible for authenticated attackers, with contributor-level access and above, to include and execute arbitrary files on the server, allowing the execution of any PHP code in those files. This can be used to bypass access controls, obtain sensitive data, or achieve code execution in cases where images and other “safe” file types can be uploaded and included.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-2047" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/elementskit-lite/tags/3.0.5/widgets/testimonial/testimonial.php#L2458" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset/3054091/elementskit-lite/tags/3.0.7/widgets/testimonial/testimonial.php" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/413e6326-14c6-4734-8adc-114a7842c574?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-30T05:15:35Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-82q9-rjj3-2747/GHSA-82q9-rjj3-2747.json b/advisories/unreviewed/2024/03/GHSA-82q9-rjj3-2747/GHSA-82q9-rjj3-2747.json new file mode 100644 index 00000000000..41bca719b8e --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-82q9-rjj3-2747/GHSA-82q9-rjj3-2747.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-82q9-rjj3-2747", + "modified": "2024-03-30T06:30:42Z", + "published": "2024-03-30T06:30:42Z", + "aliases": [ + "CVE-2024-1238" + ], + "details": "The ElementsKit Elementor addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the button ID parameter in all versions up to, and including, 3.0.6 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor access or above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-1238" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset?sfp_email=&sfph_mail=&reponame=&old=3054091%40elementskit-lite&new=3054091%40elementskit-lite&sfp_email=&sfph_mail=#file18" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/cf195cca-4e07-41ff-bf26-9ad5fca3635d?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-30T05:15:34Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-gw3m-hx6j-h3r6/GHSA-gw3m-hx6j-h3r6.json b/advisories/unreviewed/2024/03/GHSA-gw3m-hx6j-h3r6/GHSA-gw3m-hx6j-h3r6.json new file mode 100644 index 00000000000..09c6a03ad2c --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-gw3m-hx6j-h3r6/GHSA-gw3m-hx6j-h3r6.json @@ -0,0 +1,46 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-gw3m-hx6j-h3r6", + "modified": "2024-03-30T06:30:42Z", + "published": "2024-03-30T06:30:42Z", + "aliases": [ + "CVE-2024-1051" + ], + "details": "The List category posts plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'catlist' shortcode in all versions up to, and including, 0.89.6 due to insufficient input sanitization and output escaping on user supplied attributes like 'title_tag'. This makes it possible for authenticated attackers with contributor-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-1051" + }, + { + "type": "WEB", + "url": "https://plugins.svn.wordpress.org/list-category-posts/trunk/include/lcp-catlistdisplayer.php" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset?sfp_email=&sfph_mail=&reponame=&old=3055332%40list-category-posts&new=3055332%40list-category-posts&sfp_email=&sfph_mail=" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/a58cba26-a57e-4170-95bb-54ea7cfdb10c?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-30T05:15:34Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-rf68-6hvm-45gh/GHSA-rf68-6hvm-45gh.json b/advisories/unreviewed/2024/03/GHSA-rf68-6hvm-45gh/GHSA-rf68-6hvm-45gh.json new file mode 100644 index 00000000000..4729d4877e2 --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-rf68-6hvm-45gh/GHSA-rf68-6hvm-45gh.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-rf68-6hvm-45gh", + "modified": "2024-03-30T06:30:43Z", + "published": "2024-03-30T06:30:43Z", + "aliases": [ + "CVE-2024-1692" + ], + "details": "The BoldGrid Easy SEO – Simple and Effective SEO plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the meta description field in all versions up to, and including, 1.6.13 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributor-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-1692" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset?sfp_email=&sfph_mail=&reponame=&old=3054618%40boldgrid-easy-seo&new=3054618%40boldgrid-easy-seo&sfp_email=&sfph_mail=" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/0a308fde-1c44-4c34-ace5-6820dc949f53?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-30T05:15:34Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-vj7r-f7rj-7598/GHSA-vj7r-f7rj-7598.json b/advisories/unreviewed/2024/03/GHSA-vj7r-f7rj-7598/GHSA-vj7r-f7rj-7598.json new file mode 100644 index 00000000000..40893eb3920 --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-vj7r-f7rj-7598/GHSA-vj7r-f7rj-7598.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-vj7r-f7rj-7598", + "modified": "2024-03-30T06:30:42Z", + "published": "2024-03-30T06:30:42Z", + "aliases": [ + "CVE-2024-0367" + ], + "details": "The Unlimited Elements For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the link field of an installed widget (e.g., 'Button Link') in all versions up to, and including, 1.5.96 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-0367" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset?sfp_email=&sfph_mail=&reponame=&old=3045122%40unlimited-elements-for-elementor&new=3045122%40unlimited-elements-for-elementor&sfp_email=&sfph_mail=" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/47853750-0bf1-4df3-9c56-c6852543cfad?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-30T05:15:34Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-xxr2-6rqw-cjfr/GHSA-xxr2-6rqw-cjfr.json b/advisories/unreviewed/2024/03/GHSA-xxr2-6rqw-cjfr/GHSA-xxr2-6rqw-cjfr.json new file mode 100644 index 00000000000..c558bd76880 --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-xxr2-6rqw-cjfr/GHSA-xxr2-6rqw-cjfr.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-xxr2-6rqw-cjfr", + "modified": "2024-03-30T06:30:43Z", + "published": "2024-03-30T06:30:43Z", + "aliases": [ + "CVE-2024-2794" + ], + "details": "The Gutenberg Block Editor Toolkit – EditorsKit plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'editorskit' shortcode in all versions up to, and including, 1.40.4 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-2794" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset?sfp_email=&sfph_mail=&reponame=&old=3055320%40block-options&new=3055320%40block-options&sfp_email=&sfph_mail=" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/814cce39-ef25-4d0f-b793-dca5c873f468?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-30T05:15:35Z" + } +} \ No newline at end of file